cybersecurityransomwarepatch managementmspwindows
CISA: Windows Task Host flaw now exploited by ransomware gangs
August 17, 2026
Back to all postsRecent cybersecurity advisories from the Cybersecurity and Infrastructure Security Agency (CISA) have warned about the exploitation of a vulnerability in Microsoft's Windows Task Host service, which is used to launch applications. The flaw, identified as CVE-2021-40444, has been observed being actively exploited by ransomware groups for malicious purposes. This issue could potentially allow attackers to execute arbitrary code, escalate privileges, and ultimately take control of affected systems. Given the ongoing threat landscape, Canadian businesses should prioritize patching this vulnerability promptly as it poses a significant risk to their data security and operational continuity. The CISA has provided guidance on mitigations and patches for affected Windows versions.
Source: BleepingComputer
cybersecurityransomwarepatch managementmspwindows
Concerned about this threat to your business?
We help Canadian SMBs deploy the controls discussed in this article. Free 30-minute assessment — no obligation.
