Find notable cyber news and cases, enriched with sources, timelines, and signals.

Microsoft Windows April 2026 protections for malicious .rdp files

Security Tool/Service
First reported
Last updated
Happening score
H score 28
1 unique sources, 1 articles

Summary

Hide ▲

Microsoft shipped April 2026 cumulative updates for Windows 10 and Windows 11 that add warnings and disable risky shared resources by default when users open .rdp files, reducing phishing-driven credential theft and file exposure.

Related Happenings

Microsoft RDP file security guidance

Advisory/Mitigation
H score28 First: 14.07.2026 21:49 Last: 14.07.2026 21:49 Sources 1

About this happening: Microsoft issued RDP mitigation guidance that restricts which .rdp files users can open and recommends migrating trusted publishers to SHA-256 thumbprints, reducing ph...

KongTuke Microsoft Teams initial access campaign

Campaign
H score42 First: 14.05.2026 15:12 Last: 14.05.2026 15:12 Sources 1

About this happening: The KongTuke campaign now uses Microsoft Teams social engineering to gain persistent access to corporate networks, shortening initial compromise to under five minute...

Microsoft May 2026 Patch Tuesday release

Security Patch Release
H score44 First: 13.05.2026 13:36 Last: 13.05.2026 13:36 Sources 1

About this happening: Microsoft's May 13, 2026 Patch Tuesday release fixed 138 vulnerabilities across its product portfolio, including Windows, Azure, and Edge. None of the flaws we...

Latest development: 01.06.2026 15:30

Belgium's Centre for Cybersecurity warned that CVE-2026-41089 in Windows Netlogon is being actively exploited in the wild after Microsoft patched the stack-based buffer overflow during the May 2026 Patch Tuesday. The flaw affects all currently supported Windows Server versions, including Windows Server 2025, and can let an unauthenticated attacker gain remote code execution on targeted domain controllers.

Windows 10 KB5087544 extended security update

Security Patch Release
H score15 First: 12.05.2026 21:58 Last: 12.05.2026 21:58 Sources 1

About this happening: Microsoft released Windows 10 KB5087544 for Windows 10 ESU/LTSC systems, addressing May 2026 Patch Tuesday vulnerabilities and a Remote Desktop warnings issue....

Microsoft Windows 11 mandatory Patch Tuesday updates (KB5089549, KB5087420)

Security Patch Release
H score26 First: 12.05.2026 21:09 Last: 12.05.2026 21:09 Sources 1

About this happening: Microsoft released mandatory Windows 11 cumulative updates for KB5089549 and KB5087420, delivering the May 2026 Patch Tuesday fixes for 120 vulnerabilities acr...

Timeline

  1. 15.04.2026 01:23 2 articles · 3mo ago

    Microsoft adds protections for .rdp files

    Mitigation Patch Update

    Microsoft released new Windows protections for Remote Desktop connection (.rdp) files in the April 2026 cumulative updates for Windows 10 KB5082200 and Windows 11 KB5083769 and KB5082052, warning users about phishing abuse and disabling risky shared resources by default. When a user opens an .rdp file for the first time after installing the update, Windows shows a one-time educational prompt; later opens display a security dialog that shows whether the file is signed by a verified publisher, the remote system's address, and local resource redirections such as drives, clipboard, or devices, with every option disabled by default. The protections apply only to connections initiated by opening .rdp files, not the Windows Remote Desktop client, and administrators can temporarily disable them by changing RedirectionWarningDialogVersion under HKLM\Software\Policies\Microsoft\Windows NT\Terminal Services\Client.

    Show sources