GKRootWire
Security ICE Signs $2M Deal for Zero-Click Phone Hacking ToolSecurity Attackers Exploit Critical Elementor Pro Bug to Hijack WordPress SitesAI ChatGPT Goes Down, Serves 404 Errors to UsersAI ChatGPT and Codex Suffer Widespread OutageAI Google DeepMind's WeatherNext 3 Sharpens AI Weather ForecastingAI Google's New AI Weather Model Sharpens Storm ForecastsSecurity ICE Signs $2M Deal for Zero-Click Phone Hacking ToolSecurity Attackers Exploit Critical Elementor Pro Bug to Hijack WordPress SitesAI ChatGPT Goes Down, Serves 404 Errors to UsersAI ChatGPT and Codex Suffer Widespread OutageAI Google DeepMind's WeatherNext 3 Sharpens AI Weather ForecastingAI Google's New AI Weather Model Sharpens Storm Forecasts
Cloud & Sysadmin

Microsoft Ships First Windows 10 Extended Security Update as KB5120249

The patch delivers security fixes for 22H2 and 21H2 machines now enrolled in the paid Extended Security Updates program.

Microsoft has pushed out KB5120249, the latest cumulative update for Windows 10, targeting both the 22H2 and 21H2 releases. Since mainstream support for Windows 10 ended, updates like this one are only available to devices enrolled in Microsoft's Extended Security Updates (ESU) program, which keeps older machines patched for a fee (or through alternate enrollment options) rather than free public rollout.

The update focuses on closing security vulnerabilities and squashing lingering bugs rather than introducing new features, which is typical for ESU-era patches. Microsoft has not published a lengthy list of headline changes, reflecting the more conservative, security-first approach it's taking with Windows 10 now that the OS is in its wind-down phase.

Users who paid for or otherwise qualify for ESU coverage should see KB5120249 delivered automatically through Windows Update, though as with any cumulative update, some users have reported needing to manually check for updates or restart to get it installed.

Why it matters: This update is a reminder that Windows 10 support hasn't fully ended, it's just gated behind ESU enrollment now, so unpatched systems outside that program are increasingly exposed to unaddressed vulnerabilities. IT admins managing mixed Windows 10/11 fleets should confirm ESU enrollment status before assuming devices are still receiving these fixes automatically.

Sources: BleepingComputer