Microsoft has acknowledged that the security updates released in July have caused disruptions in Remote Desktop connections for organizations using the legacy RPC over HTTP protocol via the Remote Desktop Gateway. This issue manifests as intermittent interruptions in Remote Desktop connectivity, with logon sessions being lost approximately every 30 minutes, necessitating frequent reconnections. The problem has been reported extensively by Windows administrators, who observed that the RD Gateway service crashes at regular intervals following the update installation. One administrator noted significant operational disruptions, stating, "We serve over 500 users and experienced considerable time and financial losses today. Removing the update resolved our crashes completely." Another administrator reported frequent disconnections and service restarts on their 2019 server after applying the patch. The issue is identified as a TSGateway service termination problem, generating an 0xc0000005 exception code logged as Event 1000 in the system event log. The affected Windows Server versions and their corresponding updates are: - Windows Server 2022 (KB5040437) - Windows Server 2019 (KB5040430) - Windows Server 2016 (KB5040434) - Windows Server 2012 R2 (KB5040456) - Windows Server 2012 (KB5040485) Microsoft is working on a permanent solution and has suggested two temporary workarounds. The first involves using firewall software to block connections over pipe and port \pipe\RpcProxy\3388 through the RD Gateway. The second workaround requires adjusting the RDGClientTransport registry key in the Windows Registry Editor by setting the 'Value Data' to '0x0'. Users should ensure they back up the registry before making any modifications.
Tata Electronics has confirmed that it recently experienced a cybersecurity incident, affecting portions of its information technology environment. According to the company, the is...
Phishing attacks continue to evolve, incorporating advanced techniques such as multi-stage redirects, dynamically loaded content, embedded iframes, and browser-executed scripts. Th...
India based automotive manufacturer Bajaj Auto has disclosed a ransomware incident that impacted its corporate IT environment and the systems of its technology subsidiary, Bajaj Au...