A critical Windows 11 vulnerability (CVE-2025-24076) allows attackers to escalate privileges from a low-privileged user to administrator rights in 300 milliseconds by exploiting a DLL hijacking technique in the system’s camera functionality. Discovered in September 2024 and disclosed in April 2025, it underscores the need for stringent file access controls. Microsoft issued a patch in March 2025.

Millions of UK healthcare worker records exposed in massive software breach
A UK-based software firm, Logezy, had millions of healthcare workers’ sensitive data exposed online due to an unsecured, non-password-protected database. Found by security researcher Jeremiah