Microsoft adds Windows protections for malicious Remote Desktop files

2026-04-15T01:23:44Zfca6ef35e2553cc4f745d1144c8267e03956a0878f3f0bb0d1c16b3d9285b2ba
basic-fitbrowser-malwarechrome-extensionscrypto-theftdata-breachextortionforged-certificatekb5082052kb5082200kb5083769krakenledger-livemacosmicrosoftoauth2-token-theftpatch-tuesdayrdpremote-desktoprockstarsalesforceshinyhunters-wikiell-kit?ssl-tlswindowswolfsslzero-day

What happened

A batch of high-impact security stories: Microsoft rolled out new Windows protections against malicious Remote Desktop (.rdp) files and published April 2026 Patch Tuesday updates (167 flaws, including 2 zero-days) plus extended and cumulative Windows updates (KB5082200, KB5083769, KB5082052). Multiple breaches and extortion incidents were reported—Kraken extorted after an insider breach, McGraw‑Hill confirmed data exposure via a Salesforce misconfiguration, Basic‑Fit and Rockstar data leaks occurred, and an App Store macOS fake Ledger Live app stole ~$9.5M. Over 100 malicious Chrome Web Store

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
fca6ef35e2553cc4f745d1144c8267e03956a0878f3f0bb0d1c16b3d9285b2ba
Enrichment time
2026-04-15T01:23:44Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.