Overall, Microsoft patched 55 flaws, including four critical-severity remote code execution bugs.
The DarkSide ransomware hit the Colonial Pipeline on Friday, forcing the company to take its main distribution lines offline to recover.
The Lemon Duck cryptocurrency-mining botnet was seen behind a spike of April attacks exploiting the Microsoft Exchange server ProxyLogon flaw.
Google Project Zero's recent tweaking of its vulnerability disclosure window reflects how researchers are taking into account patch adoption when mulling disclosure policies.
The newly disclosed Moriya rootkit has been used since at least 2018 in a campaign targeting large regional diplomatic organizations in Asia and Africa.