Microsoft Plugs Nearly 400 Security Holes
Microsoft addresses nearly 400 security vulnerabilities in its August 2026 Patch Tuesday update, including an active zero-day exploit.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
The brief
Microsoft has released a series of security updates as part of its August 2026 Patch Tuesday cycle. A primary focus of this update is the resolution of a zero-day vulnerability affecting the WinSock driver, which the coverage explicitly states is currently under exploit. Additionally, the update includes a fix for a vulnerability in SAP that has been categorized as having maximum severity. CSO Online emphasizes the critical nature of these specific vulnerabilities, particularly the WinSock driver hole.
The report highlights that because the zero-day is actively being exploited, the urgency for system administrators to apply these patches is high. The coverage focuses on the diversity of the holes plugged, ranging from driver-level flaws to high-severity enterprise software issues like the one found within SAP. This reporting underscores the ongoing struggle to secure complex operating system drivers and third-party integrations. To understand the context of these updates, it is necessary to recognize the Patch Tuesday tradition where Microsoft systematically releases security fixes on a predictable monthly schedule.
The presence of a zero-day vulnerability means the flaw was discovered by attackers or researchers before the vendor was aware of it, leaving a window of time where systems were exposed. The inclusion of a maximum severity SAP vulnerability indicates that the risks extend beyond the core Windows kernel and into critical business applications used for enterprise resource planning. Looking forward, users and organizations must monitor the implementation of these August 2026 patches to mitigate the risk of the WinSock driver exploit. The coverage indicates that the maximum severity SAP vulnerability also requires immediate attention.
Synthesized by PULSE from the headlines below under a strict no-invention contract. ✓ fact-checked: unsupported claims removed (86% supported) Updated 2h ago.
Quick answers
What is the most urgent vulnerability in the August 2026 update?
The most urgent is a zero-day WinSock driver hole that is currently under exploit.
How many security holes did Microsoft address in this cycle?
Microsoft plugged nearly 400 security holes.
Which other major vulnerability was mentioned?
A maximum severity vulnerability in SAP was also addressed.
Coverage (1)
Topics
Related trends
DEF CON crowd suspected in fake-hotspot attack on Delta flight
Security researchers attending DEF CON are suspected of launching a fake-hotspot attack targeting a Delta flight.
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
Microsoft has released a massive security update addressing 421 CVEs, including a Windows driver zero-day currently being exploited by attackers.
Delta investigating after someone set up fake Wi-Fi network mid-flight
Delta Air Lines and federal authorities are investigating the deployment of an unauthorized, fake Wi-Fi network during a flight to Atlanta.
Xbox Elite 3 prototype pad leaks with tiny built-in screen
A leaked prototype of the Xbox Elite Series 3 controller has surfaced online, featuring a built-in LCD screen and a replaceable battery.
Microsoft reportedly raises Windows 11 license price significantly more than expected
Reports indicate Microsoft is significantly increasing Windows 11 license prices, potentially driving up the overall cost of personal computers.
Oracle has drawn up plans for a new round of layoffs this month, sources say
Oracle is reportedly planning further workforce reductions this month as AI integration reshapes the company's operational structure.