Find notable cyber news and cases, enriched with sources, timelines, and signals.

Microsoft Windows 11 localhost HTTP/2 breakage

Service Disruption
First reported
Last updated
Happening score
H score 0
1 unique sources, 1 articles

Summary

Hide ▲

The October Windows 11 updates broke localhost HTTP/2 connections, preventing local services from completing requests and disrupting debugging and authentication workflows. The issue affects Windows 11 systems that installed KB5066835 and also KB5065789 preview builds. Reported fallout includes Visual Studio debugging, SSMS Entra ID authentication, and Duo Desktop. The main workaround described is to uninstall the updates and restart Windows.

Related Happenings

Microsoft Windows Server 2016 domain controller discovery failure after KB5087537

Service Disruption
First: 26.05.2026 10:41 Last: 26.05.2026 10:41 Sources 1

About this happening: Microsoft confirmed a **known issue** in **Windows Server 2016** after **KB5087537** that can prevent **domain controller discovery**, disrupting administrative operations and app...

Windows cldflt.sys MiniPlasma privilege escalation zero-day privilege-escalation flaw

Vulnerability
First: 18.05.2026 07:59 Last: 18.05.2026 07:59 Sources 1

About this happening: **MiniPlasma** is a **Windows privilege-escalation zero-day** in **cldflt.sys** that can give attackers **SYSTEM** privileges on **fully patched Windows systems**. The flaw affect...

Windows cldflt.sys privilege escalation (CVE-2020-17103)

Vulnerability
First: 18.05.2026 01:30 Last: 18.05.2026 01:30 Sources 1

About this happening: A public **MiniPlasma** proof-of-concept has renewed concern around the **Windows cldflt.sys Cloud Filter driver** because it can elevate a **standard user** to **SYSTEM** on **fu...

Microsoft Windows Autopatch fix for EU restricted driver update deployment bug

Security Tool/Service
First: 13.05.2026 17:36 Last: 13.05.2026 17:36 Sources 1

About this happening: **Microsoft** fixed a **Windows Autopatch** service bug that let **restricted driver updates** reach some managed devices in the **EU**, bypassing admin approval controls and crea...

Windows DNS heap-based buffer overflow remote code execution flaw (CVE-2026-41096)

Vulnerability
First: 13.05.2026 13:36 Last: 13.05.2026 13:36 Sources 1

About this happening: Microsoft patched **CVE-2026-41096**, a **heap-based buffer overflow** in **Windows DNS** that could let an unauthorized attacker execute code remotely on vulnerable Windows syste...

Timeline

  1. 17.10.2025 01:25 2 articles · 7mo ago

    Windows 11 update breakage disrupts localhost HTTP/2 connections

    Initial Disclosure

    Microsoft's October Windows 11 update set is reported to have broken localhost HTTP/2 connectivity on systems that installed KB5066835 and the September KB5065789 preview update, causing requests to 127.0.0.1 to fail with ERR_CONNECTION_RESET or ERR_HTTP2_PROTOCOL_ERROR and disrupting Visual Studio debugging, SSMS Entra ID authentication, and Duo Desktop; suggested workarounds include registry changes, a Microsoft Defender intelligence update, or uninstalling KB5066835 and KB5065789 and restarting Windows.

    Show sources