Win7 users should be extra careful. Microsoft 12 update contains a digital certificate trust list patch

  

Today Microsoft has pushed the December routine security update, in addition to the update patch announced in the security bulletin, it also includes a digital certificate trust list update. patch. Microsoft said the Xboxlive.com website's SSL/TLS digital certificate private key was leaked. The certificate can be used to initiate a man-in-the-middle attack, but the leaked private key cannot be used to sign other certificates and codes, nor can it be used to spoof other domain names. .

Microsoft has not yet discovered the attack using this private key, but in order to ensure the security of the user's computer, Microsoft has pushed a special patch to update the digital certificate trust list in the system. This event affects all versions of Windows.

Users using Microsoft's latest version of Win10 and Win8.1/Win8 systems do not need to do anything, and the system automatically updates the digital certificate trust list. For Win7/Vista/Windows Server 2008/Windows Server 2008 R2 users, you need to make sure that the KB2677070 update is installed on your system, and the digital certificate trust list in the system will be automatically updated after the update is installed.

Related recommendation:

win10/win7/win8.1 December first security update released Fix 14 important bugs

Copyright © Windows knowledge All Rights Reserved