Microsoft adds Windows protections for malicious Remote Desktop files
2026-04-15T01:23:44Z•fca6ef35e2553cc4f745d1144c8267e03956a0878f3f0bb0d1c16b3d9285b2ba
basic-fitbrowser-malwarechrome-extensionscrypto-theftdata-breachextortionforged-certificatekb5082052kb5082200kb5083769krakenledger-livemacosmicrosoftoauth2-token-theftpatch-tuesdayrdpremote-desktoprockstarsalesforceshinyhunters-wikiell-kit?ssl-tlswindowswolfsslzero-day
What happened
A batch of high-impact security stories: Microsoft rolled out new Windows protections against malicious Remote Desktop (.rdp) files and published April 2026 Patch Tuesday updates (167 flaws, including 2 zero-days) plus extended and cumulative Windows updates (KB5082200, KB5083769, KB5082052). Multiple breaches and extortion incidents were reported—Kraken extorted after an insider breach, McGraw‑Hill confirmed data exposure via a Salesforce misconfiguration, Basic‑Fit and Rockstar data leaks occurred, and an App Store macOS fake Ledger Live app stole ~$9.5M. Over 100 malicious Chrome Web Store
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- fca6ef35e2553cc4f745d1144c8267e03956a0878f3f0bb0d1c16b3d9285b2ba
- Enrichment time
- 2026-04-15T01:23:44Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.