A new security baseline has been released for Windows 10 21H2. It brings protection and prevention against PrintNightmare, ransomware attacks, and more. Windows 11 also received the package earlier.
Windows configuration tool that enables you to modify your existing install or an image yet to be deployed, remove Windows components, configure and integrate, speed up the Windows deployment process.
Chaining a misconfiguration in IE11/Edge Legacy with an argument injection in a Windows 10/11 default URI handler and a bypass for a previous Electron patch, we developed a drive-by RCE exploit for Windows 10. The main vulnerability in the ms-officecmd URI handler has not been patched yet and can also be triggered through other browsers (requires confirmation of an inconspicuous dialog) and desktop applications that allow URI opening.