• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechCybersecurity

Google Just Warned of an ‘Actively Exploited’ Microsoft Windows Bug

Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
November 1, 2016, 1:52 AM ET
37 shot in Chicago over weekend as homicides climb nearly 200 above this time last year
A shattered passenger side window is illuminated by a patrol vehicle's lights at a crime scene in the 1000 block of West Belmont Avenue early Saturday, Oct. 22, 2016, in Chicago, Ill. Two men were shot and taken to area hospitals. (John J. Kim/Chicago Tribune/TNS via Getty Images)John J. Kim—Chicago Tribune TNS via Getty Images

Google disclosed the existence of a zero-day vulnerability, meaning a generally unknown flaw, in Microsoft Windows software on Monday.

Hackers already knew about the vulnerability and were using it to compromise people’s machines, Google (GOOG) said in a post on its security blog. No fix is available yet.

“We are today disclosing the existence of a remaining critical vulnerability in Windows for which no advisory or fix has yet been released,” wrote Neel Mehta and Billy Leonard, two security engineers at Google. “This vulnerability is particularly serious because we know it is being actively exploited.”

Get Data Sheet, Fortune’s technology newsletter.

Google notified Microsoft (MSFT) of the problem on Oct. 21, Mehta and Leonard said. Citing Google’s bug disclosure policy, which grants software vendors seven days of lead-time to develop and push patches, the pair said they were disclosing the vulnerability “to protect users.”

Normally, Google would wait 60 days before making such bugs public. But when attackers are actively exploiting a vulnerability, that timeframe drops to a week.

The bug affects the Windows kernel, the deepest and most privileged part of the operating system, and can be used to escape security sandboxes, or tools designed to isolate malicious code. For the technically inclined: “It can be triggered via the win32k.sys system call NtSetWindowLongPtr() for the index GWLP_ID on a window handle with GWL_STYLE set to WS_CHILD,” Google said.

For more on computer bugs, watch Fortune’s video:

Google Chrome, the company’s popular web browser, prevents attackers from exploiting the issue on machines running Windows 10 by blocking certain system calls, the company noted. (You can read more about that here.)

Google also found a zero-day flaw in Adobe (ADBE) Flash software, which Adobe resolved in an update on Oct. 26. (You can read more about that vulnerability here.)

Google plans to nix support for Adobe Flash from Chrome this year. In its place, Google said it plans to use HTML5, a markup language that enables multimedia to display online.

“We believe in coordinated vulnerability disclosure, and today’s disclosure by Google could put customers at potential risk,” Microsoft said in a statement. “Windows is the only platform with a customer commitment to investigate reported security issues and proactively update impacted devices as soon as possible. We recommend customers use Windows 10 and the Microsoft Edge browser for the best protection.”

About the Author
Robert Hackett
By Robert Hackett
Instagram iconLinkedIn iconTwitter icon
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
Fortune Secondary Logo
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

Electrician apprentices at work.
Future of WorkCareers
A dire electrician shortage is a ‘life-or-death’ threat to the AI data center boom—and an opportunity for Gen Z
By Preston ForeMarch 2, 2026
59 minutes ago
A veiled Iranian woman holds her cellphone displaying a portrait of Iran's Supreme Leader, Ayatollah Ali Khamenei,
CybersecuritySecurity
Cyber retaliation from Iran is a problem for U.S. companies — ‘It’s in the hands of a 19-year-old hacker in a Telegram room,’ ex-NSA operative says
By Amanda GerutMarch 1, 2026
11 hours ago
Two girls look at a white laptop placed on a desk.
AIEducation
American schools weren’t broken until Silicon Valley used a lie to convince them they were—now reading and math scores are plummeting
By Sasha RogelbergMarch 1, 2026
13 hours ago
Big TechSocial Media
YouTube’s cofounder and former tech boss doesn’t want his kids to watch short videos, warning short-form content ‘equates to shorter attention spans’
By Marco Quiroz-GutierrezMarch 1, 2026
17 hours ago
Slack cofounder Stewart Butterfield
SuccessProductivity
Slack cofounder says workers and CEOs can get stuck doing ‘fake’ work like pre-meetings and slide shows
By Emma BurleighMarch 1, 2026
17 hours ago
heitmann
CommentaryEntrepreneurship
Here’s how to build something that lasts, from the founder of a $300 million bootstrapped company that’s been growing for 28 years straight
By Tim HeitmannMarch 1, 2026
23 hours ago

Most Popular

placeholder alt text
Economy
Your grandparents are the reason the U.S. isn't in a recession right now. That won't last forever
By Eleanor PringleMarch 1, 2026
23 hours ago
placeholder alt text
Success
MacKenzie Scott's close relationship with Toni Morrison long before Amazon put her on the path give more than $1 billion to HBCUs
By Sasha RogelbergMarch 1, 2026
16 hours ago
placeholder alt text
Middle East
As Iran attacks Dubai, the tax-free haven for the global elite could see 'catastrophic' fallout — 'this can also send shockwaves globally'
By Jason MaMarch 1, 2026
15 hours ago
placeholder alt text
Personal Finance
Trump's universal 401(k) architect on why lower-income people distrust retirement accounts: 'they want to know what the catch is'
By Jacqueline MunisFebruary 28, 2026
2 days ago
placeholder alt text
Health
Gen Z men are eating ‘boy kibble,’ the human equivalent to dog food, to load up on protein cheaply
By Jake AngeloMarch 1, 2026
20 hours ago
placeholder alt text
Middle East
U.S. military gives Iran a taste of its own medicine with cheap copycat Shahed drones, while concern shifts to munitions supply in extended conflict
By Jason MaMarch 1, 2026
13 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.