Microsoft ships largest Patch Tuesday on record, with one bug under active attack

2026-06-10T14:51:55Z4501d697bff0d0803a630f5297a7b6dc7b5db5173fb582fb59c045f8de4bb94f
active exploitai-driven vulnerability discoverybinding operational directivechild safetycisacontent moderationdevice controlsespionageindustry lobbyingmicrosoftpatch tuesdayromance scamrussian militarysalt typhoonsiribclonetelecomsuk policyvulnerabilitieszero-day

What happened

A batch of security and policy developments: Microsoft issued its largest Patch Tuesday ever, addressing a surge in discovered flaws driven in part by AI tools and including at least one bug confirmed under active exploitation. The UK scaled back proposed telecoms security measures tied to the Salt Typhoon campaign after industry pushback. CISA will change how it triages vulnerabilities via a new binding operational directive, elevating some flaws while deprioritizing others. Separately, Russian-focused espionage actors (dubbed SiribClone) have been using romance-scam lures against service人员,

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
therecord_media
Record identifier
4501d697bff0d0803a630f5297a7b6dc7b5db5173fb582fb59c045f8de4bb94f
Enrichment time
2026-06-10T14:51:55Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.