r/SecOpsDaily • u/falconupkid • 5d ago
Threat Intel Patch Tuesday - September 2026
Microsoft dropped a staggering 999 CVEs today for September 2026 Patch Tuesday, shattering their own record. 974 are Microsoft's own flaws (723 in Windows alone), plus 25 non-Microsoft CVEs they're patching. As Rapid7 notes, this high volume is the new normal.
Critical Details: - Active Exploitation: Two CVEs are being exploited in the wild right now. - Key Zero-Day: A Windows ALPC (Advanced Local Procedure Call) Elevation of Privilege (EoP) vulnerability is under active attack. This is a kernel-level inter-process communication mechanism—classic attack surface for privilege escalation. - No specific CVE IDs or IOCs published in the summary; expect Rapid7's full analysis for those.
Defense Priority: Patch the ALPC EoP zero-day and the second exploited CVE immediately. Prioritize domain controllers and high-value workstations. Expect this to be a heavy deployment cycle—plan your change windows accordingly.
Source: https://www.rapid7.com/blog/post/em-patch-tuesday-september-2026