Indian Government Issues High-Risk Cybersecurity Alert for Millions of Microsoft Users

CERT-In alert

Millions of Microsoft users across India have been issued a serious cybersecurity warning by the Indian government. On 18 August 2025, the Indian Computer Emergency Response Team (CERT-In) published a high-risk security advisory, highlighting multiple critical vulnerabilities in Microsoft products that could leave individuals, businesses, and even government agencies exposed to cyberattacks.

Which Microsoft Products Are at Risk?

According to CERT-In, these vulnerabilities are so severe that they could affect every type of user—from everyday individuals using Word or Excel to large enterprises relying on mission-critical platforms. The affected products include:

  • Windows

  • Microsoft Office

  • SQL Server

  • Dynamics 365

  • System Centre

  • Azure Cloud Services

  • Even older versions under Extended Security Updates (ESU)

This means the risk extends far beyond personal users, putting corporates, cloud-driven businesses, and government bodies at equal risk.

What Can Cybercriminals Do With These Vulnerabilities?

CERT-In has warned that cybercriminals exploiting these vulnerabilities could:

  • Gain elevated system privileges to bypass security controls.

  • Steal sensitive data including documents, emails, and login credentials.

  • Execute remote code to take full control of systems.

  • Launch DoS attacks, crashing servers and applications.

  • Manipulate system settings, compromising data integrity.

Such exploits could lead to data breaches, customer information theft, financial fraud, corporate network takeovers, and even shutdown of critical public services.

Microsoft’s Response

Microsoft has already rolled out several security updates and patches to address these vulnerabilities. Users are strongly advised to install the latest updates immediately.

Additionally, organizations have been urged to adopt stronger security measures, including:

  • Implementing layered security protocols,

  • Monitoring abnormal system activity,

  • Enforcing strict access control policies.

Cyber experts warn that delaying updates provides hackers with an open window to exploit systems. In a country like India—where digital services and cloud platforms are rapidly expanding—the risks are even higher.

The Bigger Lesson: Cybersecurity Cannot Be Ignored

This latest alert serves as a powerful reminder: cybersecurity complacency can be costly. As hackers evolve with new techniques, organizations and individuals must go beyond reactive measures. The focus should be on proactive strategies, resilience-building, and continuous vigilance.

In today’s digital era, staying ahead of cyber threats is not optional—it’s a necessity.

এই মুহূর্তে

Apple Delays Smart Glasses Launch, Prioritizing Privacy Over Speed After Meta’s Setbacks

Flipkart Set to Challenge Zomato, Swiggy with New Food Delivery Venture

Anthropic Secures Major AI Chip Deal with Samsung, SK Hynix Amid Custom Chip Race

Apple Demands Cheaper iPhone 18 Pro Max OLED Displays as RAM Costs Soar