DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Microsoft Patch Tuesday 2023 Wrapped

DigitalCIO Bureau by DigitalCIO Bureau
December 14, 2023
in Tech News
0
Microsoft Patch Tuesday 2023 Wrapped
75
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

To commemorate the 20th anniversary of Microsoft Patch Tuesday, Tenable Research published its annual reflection on Patch Tuesday releases in 2023, delving into significant trends and insights.

Throughout 2023, Microsoft addressed a total of 909 Common Vulnerabilities and Exposures (CVEs), representing a marginal decrease of 0.87% compared to the 917 CVEs patched in 2022. The trajectory of Patch Tuesday releases has exhibited a consistent upward pattern since 2017, reaching its zenith in 2020 with 1,245 CVEs addressed.

July emerged as the pinnacle month for Patch Tuesday in 2023, witnessing Microsoft’s resolution of 130 CVEs. Notably, only two months surpassed the 100 mark in terms of CVEs patched (July and October), while four months recorded fewer than 60 CVEs addressed (May, September, November, December).

Patch Tuesday 2023 by severity
In 2023, most vulnerabilities were rated as important, accounting for 90% of all CVEs patched, followed by critical at 9.6%. These figures are relatively consistent with 2022 figures, when Microsoft patched 831 important CVEs, which accounted for 90.2% while critical vulnerabilities accounted for 85 CVEs or 9.2%. Further analysis reveals that most vulnerabilities patched by Microsoft fell into the Remote Code Execution (RCE) category, accounting for 36%, followed by  Elevation of Privilege (EoP) vulnerabilities at 26%. Information Disclosure vulnerabilities accounted for 12.5% of vulnerabilities patched.

Patch Tuesday 2023 zero-day vulnerabilities
Throughout the year, Microsoft addressed 23 zero-day vulnerabilities in its Patch Tuesday releases, with a noteworthy 52.2% attributed to EoP flaws. EoP vulnerabilities, often exploited by advanced persistent threat (APT) actors and determined cybercriminals, serve as a means to escalate privileges in the aftermath of a compromise.

Among the prominent zero-day vulnerabilities unveiled in the Patch Tuesday releases of 2023 is CVE-2023-23397, an EoP vulnerability in Microsoft Outlook that has been exploited by the Russian APT group APT28, also known as Forest Blizzard. Despite receiving a patch in March, ongoing observations by Unit 42 researchers reveal a campaign exploiting this flaw as recently as October 2023.

“Despite the routine monthly cadence of Patch Tuesday, the persistence of known vulnerabilities necessitates continuous organisational efforts. The year’s Patch Tuesday remained eventful, marked by the presence of multiple zero-day flaws and critical vulnerabilities spanning various Microsoft products. This underscores the ongoing challenges in maintaining robust cybersecurity despite regular patch releases,” said Satnam Narang, senior staff research engineer, Tenable.

Tags: Tenable
Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

IBM and OpenAI Introduce Frontier AI to Cyber Defense to Help Enterprises Match Machine-Speed Threats

by DigitalCIO Bureau
June 23, 2026
0
IBM and OpenAI Introduce Frontier AI to Cyber Defense to Help Enterprises Match Machine-Speed Threats

IBM has announced its participation in the OpenAI Daybreak Cyber Partner Program, integrating advanced frontier AI capabilities into its security operations to help enterprises respond to machine-speed threats....

Read moreDetails

Randstad Digital releases list of top 10 high-demand AI tech jobs overcoming the enterprise integration gap

by DigitalCIO Bureau
June 23, 2026
0
Randstad Digital releases list of top 10 high-demand AI tech jobs overcoming the enterprise integration gap

New Randstad Digital data reveals a structural shift in tech hiring. As enterprises move from AI experimentation to implementation, AI-augmented developer roles have surged 597%, creating a premium...

Read moreDetails

SUSE Appoints Marshal Correia as General Manager for India and South Asia

by DigitalCIO Bureau
June 22, 2026
0
SUSE Appoints Marshal Correia as General Manager for India and South Asia

SUSE has announced the appointment of Marshal Correia as General Manager for India and South Asia. The move underscores SUSE’s commitment to strengthening its presence in one of...

Read moreDetails

Accenture to Bolster Critical Infrastructure Security with End-to-End Cybersecurity Platform Amid Rising AI-Driven Threats and Geopolitical Risks

by DigitalCIO Bureau
June 22, 2026
0
Accenture to Bolster Critical Infrastructure Security with End-to-End Cybersecurity Platform Amid Rising AI-Driven Threats and Geopolitical Risks

Agrees to acquire a majority stake in Dragos, a leading operational technology cybersecurity platform Also agrees to acquire runZero, a top asset intelligence and exposure assessment firm, and...

Read moreDetails

HCLTech unveils AI Innovation Zone showcasing Enterprise Solutions powered by Intel

by DigitalCIO Bureau
June 19, 2026
0
HCLTech unveils AI Innovation Zone showcasing Enterprise Solutions powered by Intel

HCLTech announced the launch of an AI Innovation Zone in Chennai, aimed at helping enterprises innovate and deploy Intel-based AI products alongside HCLTech’s AI solutions, speeding up the...

Read moreDetails
Next Post
Global Digital Transformation Spending to Reach $3.9tn by 2027

Indian small business owners strongly embrace digital transformation: GoDaddy

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Rob Newell Joins New Relic as Senior VP and MD of Asia-Pacific and Japan

Rob Newell Joins New Relic as Senior VP and MD of Asia-Pacific and Japan

July 31, 2025
L&T Technology Services Launches NVIDIA-Powered AI Lung Digital Twin Platform for Advanced Respiratory Diagnostics

L&T Technology Services Launches NVIDIA-Powered AI Lung Digital Twin Platform for Advanced Respiratory Diagnostics

March 16, 2026

Cognizant to acquire Zenith Technologies for IoT strength

June 19, 2019

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Accenture Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare CrowdStrike Cybersecurity Digital Transformation E-books Enterprises Fortinet Gartner Generative AI Google Cloud HCLTech IBM India Infographics Infosys Internet of Things (IoT) Kaspersky NTT DATA NVIDIA Palo Alto Networks Panel Discussion ServiceNow Sophos Strategic Partnership Tata Consultancy Services TCS Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?