Skip to content

JOBUZO

  • News
  • Indonesia
  • Toggle search form
ExpressVPN patches Windows bug that exposed remote desktop traffic

ExpressVPN patches Windows bug that exposed remote desktop traffic

Posted on 23 July 2025 By jobuzo

ExpressVPN has released a new patch for its Windows app to close a vulnerability that can leave remote desktop traffic unprotected. If you use ExpressVPN on Windows, download version 12.101.0.45 as soon as possible, especially if you use Remote Desktop Protocol (RDP) or any other traffic through TCP port 3389.

ExpressVPN announced both the vulnerability and the fix in a blog post earlier this week. According to that post, an independent researcher going by Adam-X sent in a tip on April 25 to claim a reward from ExpressVPN’s bug bounty program. Adam-X noticed that some internal debug code which left traffic on TCP port 3389 unprotected had mistakenly shipped to customers. ExpressVPN released the patch about five days later in version 12.101.0.45 for Windows.

As ExpressVPN points out in its announcement of the patch, it’s unlikely that the vulnerability was actually exploited. Any hypothetical hacker would not only have to be aware of the flaw, but would then have to trick their target into sending a web request over RDP or other traffic that uses port 3389. Even if all the dominos fell, the hacker could only see their target’s real IP address, not any of the actual data they transmitted.

Even if the danger was small, it’s nice to see ExpressVPN responding proactively to flaws in its product — bug bounties are great, but a security product should protect its users with as many safeguards as possible. In addition to closing this vulnerability, they’re also adding automated tests that check for debug code accidentally left in production builds. This, plus a successful independent privacy audit earlier in 2025, gives the strong impression of a provider that’s on top of things.

If you buy something through a link in this article, we may earn commission.

ExpressVPN patches Windows bug that exposed remote desktop traffic


News

Post navigation

Previous Post: Open source X rival Mastodon begins raising funds with new in-app donation feature
Next Post: FDA’s New Drug Approval AI Is Generating Fake Studies: Report

Related Posts

300hp Carbon Fiber and Only 200 Units: The Toyota GR Yaris MORIZO RR 300hp Carbon Fiber and Only 200 Units: The Toyota GR Yaris MORIZO RR News
Why Sister Wives' Meri Brown Says Kody Brown and Robyn Brown Still Owe Her Money Why Sister Wives’ Meri Brown Says Kody Brown and Robyn Brown Still Owe Her Money News
Drunk policeman in Philippines threatens store customers with gun, assaults woman Drunk policeman in Philippines threatens store customers with gun, assaults woman News

Latest

  • Sherpa believed to be dead crawls back to Everest Base Camp after nearly a week missing
  • Australian cockroach kingpin caught with 100,000 illegal insects in record bug bust
  • Charli XCX, Joe Alwyn & More Celebs at Dua Lipa, Callum Turner’s Lavish Italian Wedding Party
  • What does Washington’s latest AI chip guidance mean for Chinese tech firms?
  • What is behind EU’s new migration push?
  • India’s ‘Cockroach Janta Party’ founder returns to face off against Modi govt in Delhi streets, with its 22 million Instagram followers
  • ‘Live in the real world’: Iranian FM reacts to Trump’s willingness to meet Supreme Leader Mojtaba Khamenei
  • Senate passes $70 bil immigration bill after rejecting efforts to permanently ban Trump’s settlement fund
  • US military says drones and missiles launched by Iran were intercepted
  • S’porean linked to Cambodia scam syndicate arrested in M’sia & deported to S’pore, will be charged

Copyright © 2025 JOBUZO. Disclaimers | Privacy Policies

Powered by PressBook Masonry Blogs