Microsoft, Apple, Qualcomm, and Drupal released security updates in early November 2025 to address multiple vulnerabilities across their product lines. Microsoft issued updates for the Edge browser and prepared for the final security update for Windows 11 23H2 Professional, while also launching the first Extended Security Updates (ESU) for Windows 10 22H2. Apple released patches for iOS and iPadOS versions prior to 18.7.2, and Qualcomm published its monthly security bulletin covering vulnerabilities in its products. Drupal addressed moderately critical vulnerabilities in the Email TFA and Simple Multi Step Form modules, urging administrators to update or apply mitigations.
In addition to these updates, Microsoft announced the end of security support for several products, including older versions of Office and Exchange Server, with guidance for organizations on migration and continued support options. Reports highlighted the ongoing exploitation of new vulnerabilities, such as a critical remote code execution flaw in Microsoft WSUS (CVE-2025-59287), and noted the addition of numerous vulnerabilities to known exploited vulnerability lists. Security agencies like CISA and NSA issued recommendations for protecting end-of-life Exchange servers, emphasizing the importance of timely patching and migration to supported platforms.

See which actors are running it and whether you're in range.
5 events from the most recent confirmed update back to the earliest known activity.
On November 5, 2025, Apple released a security update for iOS and iPadOS, addressing vulnerabilities affecting versions prior to 18.7.2.
Following Microsoft's Exchange Server end-of-support changes, CISA, NSA, and other agencies released joint recommendations to help organizations secure end-of-life Exchange servers while migrating to cloud infrastructure.
During the October 2025 Patch Tuesday cycle, Microsoft fixed CVE-2025-59287 in Windows Server Update Service. The flaw was reported as actively exploited, and proof-of-concept code was publicly available.
As part of the October 2025 patch cycle, Microsoft ended security support for several older Office and Exchange Server versions and delivered final updates for Windows 11 23H2 Pro, while some other editions retained support for another year.
In October 2025, Microsoft released a large Patch Tuesday update addressing many vulnerabilities, especially in Windows 10 and Windows 11, as it moved to patch products nearing end of life.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Correlate live exploitation activity against the software you actually run, and see where you're exposed.
6 references tracked. Mallory keeps watching after this page renders.
helpnetsecurity.com
Open sourcecyber.gc.ca
Open sourcecyber.gc.ca
Open sourcecyber.gc.ca
Open sourcecyber.gc.ca
Open sourcevulncheck.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.