Cybersecuritynews
Microsoft Patches Zero-Day Vulnerability in Windows RasMan Service
First seen 11 Feb 2026, 16:28 UTC
•

•27.3
Export
Article Content
Browse articles
Microsoft has addressed a zero-day vulnerability in the Windows Remote Access Connection Manager (RasMan) service, identified as CVE-2026-21525. This flaw, which allowed attackers to cause denial-of-service conditions on unpatched systems, was actively exploited prior to its disclosure. The vulnerability is linked to a NULL pointer dereference issue.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-02-10
CVE-2026-21525 published
2026-02-10
CVE-2026-21525 added to CISA KEV (active exploitation)
2026-02-11
Microsoft announces patch for CVE-2026-21525
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
APT28 Exploits MSHTML Zero-Day Vulnerability in Windows