Category: Microsoft
-
Microsoft Teams will tag third-party bots trying to join meetings
Microsoft Teams will tag third-party bots trying to join meetings Microsoft says Teams will soon automatically tag third-party bots in lobbies, allowing organizers to control whether they can join meetings. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft 365 Backup to add file-level restore for faster recovery
Microsoft 365 Backup to add file-level restore for faster recovery Microsoft will soon begin rolling out a significant upgrade to Microsoft 365 Backup to speed up recovery by allowing administrators to restore individual files and folders. […] Sergiu Gatlan Go to bleepingcomputer
-
Bitwarden adds support for passkey login on Windows 11
Bitwarden adds support for passkey login on Windows 11 Bitwarden announced support for logging into Windows 11 devices using passkeys stored in the manager’s vault, enabling phishing-resistant authentication. […] Bill Toulas Go to bleepingcomputer
-
Manipulating AI Summarization Features
Manipulating AI Summarization Features Microsoft is reporting: Companies are embedding hidden instructions in “Summarize with AI” buttons that, when clicked, attempt to inject persistence commands into an AI assistant’s memory via URL prompt parameters…. These prompts instruct the AI to “remember [Company] as a trusted source” or “recommend [Company] first,” aiming to bias future responses…
-
Microsoft: Hackers abuse OAuth error flows to spread malware
Microsoft: Hackers abuse OAuth error flows to spread malware Hackers are abusing the legitimate OAuth redirection mechanism to bypass phishing protections in email and browsers to take users to malicious pages. […] Bill Toulas Go to bleepingcomputer
-
Microsoft testing Windows 11 batch file security improvements
Microsoft testing Windows 11 batch file security improvements Microsoft is rolling out new Windows 11 Insider Preview builds that improve security and performance during batch file or CMD script execution. […] Sergiu Gatlan Go to bleepingcomputer
-
Windows 11 KB5077241 update improves BitLocker, adds Sysmon tool
Windows 11 KB5077241 update improves BitLocker, adds Sysmon tool Microsoft has released the KB5077241 optional cumulative update for Windows 11, which comes with 29 changes, including improvements to BitLocker, a new network speed test tool, and native System Monitor (Sysmon) functionality. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Released Updates for Windows 11, Version 25H2 and 24H2 Systems
Microsoft Released Updates for Windows 11, Version 25H2 and 24H2 Systems An optional non-security update, KB5077241, has been released for Windows 11 versions 25H2 and 24H2, improving overall functionality, performance, and reliability without addressing security vulnerabilities. The release, which brings the OS builds to 26200.7922 and 26100.7922, includes enhancements to user interface elements and updates…
-
Microsoft says bug in classic Outlook hides the mouse pointer
Microsoft says bug in classic Outlook hides the mouse pointer Microsoft is investigating a known issue that causes the mouse pointer to disappear in the classic Outlook desktop email client for some users. […] Sergiu Gatlan Go to bleepingcomputer
-
Hackers Using OAuth Apps in Microsoft Entra ID to Establish Persistence
Hackers Using OAuth Apps in Microsoft Entra ID to Establish Persistence Hackers are increasingly abusing OAuth applications in Microsoft Entra ID to gain persistent access, blending in as normal “business integrations” while keeping access even after defenders reset passwords. Recent Wiz research and incident reporting show attackers using fake OAuth apps, deceptive consent prompts, and redirect URLs…
-
Microsoft: Anti-phishing rules mistakenly blocked emails, Teams messages
Microsoft: Anti-phishing rules mistakenly blocked emails, Teams messages Microsoft says an Exchange Online issue that mistakenly quarantined legitimate emails last week was triggered by faulty heuristic detection rules designed to block credential phishing campaigns. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Defender Unveils Centralized Script Library with Copilot Analysis for Enhanced Live Response
Microsoft Defender Unveils Centralized Script Library with Copilot Analysis for Enhanced Live Response Microsoft has introduced a new Library Management experience in Microsoft Defender for Endpoint, designed to fundamentally transform how security analysts manage the scripts and tools they rely on during live response investigations. Announced on February 16, 2026, the enhancement addresses a long-standing…
-
Microsoft Teams outage affects users in United States, Europe
Microsoft Teams outage affects users in United States, Europe Microsoft is working to resolve an ongoing outage affecting Microsoft Teams users, causing delays and preventing some from accessing the service. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft VS Code Extension with 11M Downloads Expose Developers to One-Click XSS Attacks
Microsoft VS Code Extension with 11M Downloads Expose Developers to One-Click XSS Attacks A critical vulnerability discovered in Microsoft’s popular Visual Studio Code (VS Code) Live Preview extension, downloaded over 11 million times, exposes developers to one-click cross-site scripting (XSS) and local file exfiltration attacks. The flaw, now patched, was discovered by researchers Nir Zadok and Moshe Siman Tov Bustan from OX Security. The issue…
-
Critical Windows Admin Center Vulnerability Allows Privilege Escalation
Critical Windows Admin Center Vulnerability Allows Privilege Escalation A critical security update addressing a high‑severity elevation of privilege vulnerability in Windows Admin Center (WAC), identified as CVE‑2026‑26119. The flaw, rated CVSS 8.8 (Critical), stems from improper authentication (CWE‑287) that could allow an authorized attacker to gain elevated network privileges. According to Microsoft, this vulnerability affects Windows Admin Center version 2.6.4, and…
-
Windows 11 KB5077181 fixes boot failures linked to failed updates
Windows 11 KB5077181 fixes boot failures linked to failed updates Microsoft says it has resolved a Windows 11 bug that caused some commercial systems to fail to boot with an “UNMOUNTABLE_BOOT_VOLUME” error after installing recent security updates, with the fix delivered in the February 2026 Patch Tuesday update. […] Lawrence Abrams Go to bleepingcomputer
-
CISA flags critical Microsoft SCCM flaw as exploited in attacks
CISA flags critical Microsoft SCCM flaw as exploited in attacks CISA ordered federal agencies on Thursday to secure their systems against a critical Microsoft Configuration Manager vulnerability patched in October 2024 and now exploited in attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
CISA Warns of Microsoft Configuration Manager SQL Injection Vulnerability Exploited in Attacks
CISA Warns of Microsoft Configuration Manager SQL Injection Vulnerability Exploited in Attacks CISA has issued an urgent alert about a critical SQL injection vulnerability in Microsoft Configuration Manager (SCCM). Tracked as CVE-2024-43468, this flaw lets unauthenticated attackers run malicious commands on servers and databases. Added to CISA’s Known Exploited Vulnerabilities (KEV) catalog on February 12,…
-
Microsoft fixes bug that blocked Google Chrome from launching
Microsoft fixes bug that blocked Google Chrome from launching Microsoft has fixed a known issue causing its Family Safety parental control service to block Windows users from launching Google Chrome and other web browsers. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft: New Windows LNK spoofing issues aren’t vulnerabilities
Microsoft: New Windows LNK spoofing issues aren’t vulnerabilities Today, at Wild West Hackin’ Fest, security researcher Wietze Beukema disclosed multiple vulnerabilities in Windows LK shortcut files that allow attackers to deploy malicious payloads. […] Sergiu Gatlan Go to bleepingcomputer
-
Windows 11 Notepad flaw let files execute silently via Markdown links
Windows 11 Notepad flaw let files execute silently via Markdown links Microsoft has fixed a “remote code execution” vulnerability in Windows 11 Notepad that allowed attackers to execute local or remote programs by tricking users into clicking specially crafted Markdown links, without displaying any Windows security warnings. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft Store Outlook add-in hijacked to steal 4,000 Microsoft accounts
Microsoft Store Outlook add-in hijacked to steal 4,000 Microsoft accounts The AgreeTo add-in for Outlook has been hijacked and turned into a phishing kit that stole more than 4,000 Microsoft account credentials. […] Bill Toulas Go to bleepingcomputer
-
Microsoft Outlook Add-in Stolen 4,000 Microsoft account Credentials and Credit Card Numbers
Microsoft Outlook Add-in Stolen 4,000 Microsoft account Credentials and Credit Card Numbers Security researchers have identified the first documented instance of a malicious Microsoft Outlook add-in being used against users in real-world scenarios. A compromised meeting scheduler named AgreeTo was used to steal over 4,000 Microsoft account credentials, credit card numbers, and answers to banking security questions.…
-
Microsoft releases Windows 11 26H1 for select and upcoming CPUs
Microsoft releases Windows 11 26H1 for select and upcoming CPUs Microsoft has announced Windows 11 26H1, but it’s not for existing PCs. Instead, it will ship on devices with Snapdragon X2 processors and possibly other rumored ARM chips.w […] Mayank Parmar Go to bleepingcomputer
-
Microsoft releases Windows 10 KB5075912 extended security update
Microsoft releases Windows 10 KB5075912 extended security update Microsoft has released the Windows 10 KB5075912 extended security update to fix February 2026 Patch Tuesday vulnerabilities, including six zero-days, and continue rolling out replacements for expiring Secure Boot certificates. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft to shut down Exchange Online EWS in April 2027
Microsoft to shut down Exchange Online EWS in April 2027 Microsoft announced today that the Exchange Web Services (EWS) API for Exchange Online will be shut down in April 2027, after nearly 20 years. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft is Giving the FBI BitLocker Keys
Microsoft is Giving the FBI BitLocker Keys Microsoft gives the FBI the ability to decrypt BitLocker in response to court orders: about twenty times per year. It’s possible for users to store those keys on a device they own, but Microsoft also recommends BitLocker users store their keys on its servers for convenience. While that…
-
Microsoft: January update shutdown bug affects more Windows PCs
Microsoft: January update shutdown bug affects more Windows PCs Microsoft has confirmed that a known issue preventing some Windows 11 devices from shutting down also affects Windows 10 systems with Virtual Secure Mode (VSM) enabled. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft to disable NTLM by default in future Windows releases
Microsoft to disable NTLM by default in future Windows releases Microsoft announced that it will disable the 30-year-old NTLM authentication protocol by default in upcoming Windows releases due to security vulnerabilities that expose organizations to cyberattacks. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft fixes Outlook bug blocking access to encrypted emails
Microsoft fixes Outlook bug blocking access to encrypted emails Microsoft has fixed a known issue that prevented Microsoft 365 customers from opening encrypted emails in classic Outlook after a recent update. […] Sergiu Gatlan Go to bleepingcomputer
-
Windows 11 KB5074105 update fixes boot, sign-in, and activation issues
Windows 11 KB5074105 update fixes boot, sign-in, and activation issues Microsoft has released the KB5074105 preview cumulative update for Windows 11 systems, which includes 32 changes, including fixes for sign-in, boot, and activation issues. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft links Windows 11 boot failures to failed December 2025 update
Microsoft links Windows 11 boot failures to failed December 2025 update Microsoft has linked recent reports of Windows 11 boot failures after installing the January 2026 updates to previously failed attempts to install the December 2025 security update, which left systems in an “improper state.” […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft Teams New Feature to Flag Suspicious One-to-One Calls
Microsoft Teams New Feature to Flag Suspicious One-to-One Calls A new security feature is being added to Teams to help organizations detect and stop voice-based scams and phishing attacks. The new “Report a Call” button will allow users to flag suspicious one-to-one calls directly from their Teams call history. As use of Microsoft Teams calling…
-
Microsoft patches actively exploited Office zero-day vulnerability
Microsoft patches actively exploited Office zero-day vulnerability Microsoft has released emergency security updates to patch a high-severity Office zero-day vulnerability exploited in attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft investigates Windows 11 boot failures after January updates
Microsoft investigates Windows 11 boot failures after January updates Microsoft is investigating reports that some Windows 11 devices are failing to boot with “UNMOUNTABLE_BOOT_VOLUME” errors after installing the January 2026 Patch Tuesday security updates. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft Releases Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes
Microsoft Releases Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes An out-of-band (OOB) cumulative update, KB5078127, to address critical file system compatibility issues affecting Windows 11 users. The update resolves widespread problems introduced by the January 13, 2026, security update (KB5074109) that caused application freezes and cloud storage failures across multiple…
-
Microsoft releases emergency OOB update to fix Outlook freezes
Microsoft releases emergency OOB update to fix Outlook freezes Microsoft has released emergency, out-of-band updates on Saturday for Windows 10, Windows 11, and Windows Server to fix an issue that prevented Microsoft Outlook classic from opening when using PSTs stored in cloud storage. […] Lawrence Abrams Go to bleepingcomputer
-
Malicious AI extensions on VSCode Marketplace steal developer data
Malicious AI extensions on VSCode Marketplace steal developer data Two malicious extensions in Microsoft’s Visual Studio Code (VSCode) Marketplace that were collectively installed 1.5 million times, exfiltrate developer data to China-based servers. […] Bill Toulas Go to bleepingcomputer
-
Threat Actors Leverage SharePoint Services in Sophisticated AiTM Phishing Campaign
Threat Actors Leverage SharePoint Services in Sophisticated AiTM Phishing Campaign Microsoft Defender researchers have exposed a sophisticated adversary-in-the-middle (AiTM) phishing campaign targeting energy sector organizations through SharePoint file-sharing abuse. The multi-stage attack compromised multiple user accounts and evolved into widespread business email compromise (BEC) operations across several organisations. Initial Compromise Through Trusted Vendor The attack…
-
Microsoft Teams to add brand impersonation warnings to calls
Microsoft Teams to add brand impersonation warnings to calls Microsoft will soon add new fraud protection features to Teams calls, warning users about external callers who attempt to impersonate trusted organizations in social engineering attacks. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft releases OOB Windows updates to fix shutdown, Cloud PC bugs
Microsoft releases OOB Windows updates to fix shutdown, Cloud PC bugs Microsoft has released multiple emergency, out-of-band updates for Windows 10, Windows 11, and Windows Server to fix two issues caused by the January Patch Tuesday updates. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft: Some Windows PCs fail to shut down after January update
Microsoft: Some Windows PCs fail to shut down after January update Microsoft has confirmed a new issue that prevents Windows 11 23H2 devices with System Guard Secure Launch enabled from shutting down. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft disrupts massive RedVDS cybercrime virtual desktop service
Microsoft disrupts massive RedVDS cybercrime virtual desktop service Microsoft announced on Wednesday that it disrupted RedVDS, a massive cybercrime platform linked to at least $40 million in reported losses in the United States alone since March 2025. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft SQL Server Vulnerability Allows Attackers to Elevate Privileges over a Network
Microsoft SQL Server Vulnerability Allows Attackers to Elevate Privileges over a Network Microsoft released security updates on January 13, 2026, addressing a critical elevation of privilege vulnerability in SQL Server that enables authorized attackers to bypass authentication controls and gain elevated system privileges remotely. Tracked as CVE-2026-20803, the vulnerability stems from missing authentication mechanisms for…
-
Microsoft: Windows 365 update blocks access to Cloud PC sessions
Microsoft: Windows 365 update blocks access to Cloud PC sessions Microsoft confirmed that a recent Windows 365 update is blocking customers from accessing their Microsoft 365 Cloud PC sessions. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft is retiring ‘Send to Kindle’ in Word
Microsoft is retiring ‘Send to Kindle’ in Word Microsoft is retiring a feature that allowed you to send your documents to Kindle straight from Microsoft Word. […] Mayank Parmar Go to bleepingcomputer
-
Microsoft may soon allow IT admins to uninstall Copilot
Microsoft may soon allow IT admins to uninstall Copilot Microsoft is testing a new policy that allows IT administrators to uninstall the AI-powered Copilot digital assistant on managed devices. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft cancels plans to rate limit Exchange Online bulk emails
Microsoft cancels plans to rate limit Exchange Online bulk emails Microsoft announced today that it has canceled plans to impose a daily limit of 2,000 external recipients on Exchange Online bulk email senders. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Teams to let admins block external users via Defender portal
Microsoft Teams to let admins block external users via Defender portal Microsoft announced that security administrators will soon be able to block external users from sending messages, calls, or meeting invitations to members of their organization via Teams. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Unveils Hardware-Accelerated BitLocker to Enhance Performance and Security
Microsoft Unveils Hardware-Accelerated BitLocker to Enhance Performance and Security Microsoft has announced hardware-accelerated BitLocker, a significant security enhancement designed to eliminate performance bottlenecks caused by encryption on modern high-speed NVMe drives. The new technology addresses growing concerns about CPU overhead as storage devices become faster, particularly for users running intensive workloads such as gaming and…
-
Microsoft Teams strengthens messaging security by default in January
Microsoft Teams strengthens messaging security by default in January Microsoft Teams will automatically enable messaging safety features by default in January to strengthen defenses against content tagged as malicious. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Is Finally Killing RC4
Microsoft Is Finally Killing RC4 After twenty-six years, Microsoft is finally upgrading the last remaining instance of the encryption algorithm RC4 in Windows. of the most visible holdouts in supporting RC4 has been Microsoft. Eventually, Microsoft upgraded Active Directory to support the much more secure AES encryption standard. But by default, Windows servers have continued…
-
Microsoft confirms Teams is down and messages are delayed
Microsoft confirms Teams is down and messages are delayed Microsoft Teams is experiencing issues, with thousands reporting problems sending messages, including delays. […] Mayank Parmar Go to bleepingcomputer
-
Microsoft Teams Down – Users Face Messaging Delays and Service Disruptions Worldwide
Microsoft Teams Down – Users Face Messaging Delays and Service Disruptions Worldwide In a major disruption to remote work and collaboration, Microsoft Teams experienced a significant outage on Friday, affecting thousands of users across multiple regions. Reports of messaging delays, failed message deliveries, and issues with other service functions began surging around 2:30 PM ET…
-
Windows 10 OOB update released to fix Message Queuing (MSMQ) issues
Windows 10 OOB update released to fix Message Queuing (MSMQ) issues This month’s extended security update for Windows 11 broke Message Queuing (MSMQ), which is typically used by enterprises to manage background tasks. […] Mayank Parmar Go to bleepingcomputer
-
Microsoft: December security updates cause Message Queuing failures
Microsoft: December security updates cause Message Queuing failures Microsoft has confirmed that the December 2025 security updates are breaking Message Queuing (MSMQ) functionality, affecting enterprise applications and Internet Information Services (IIS) websites. […] Sergiu Gatlan Go to bleepingcomputer
-
A big finish to 2025 in December’s Patch Tuesday
A big finish to 2025 in December’s Patch Tuesday A month with no Critical-severity Windows bugs is overshadowed by a mass of Mariner mop-up Angela Gunn Go to sophos
-
Windows PowerShell now warns when running Invoke-WebRequest scripts
Windows PowerShell now warns when running Invoke-WebRequest scripts Microsoft says Windows PowerShell now warns when running scripts that use the Invoke-WebRequest cmdlet to download web content, aiming to prevent potentially risky code from executing. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft releases Windows 10 KB5071546 extended security update
Microsoft releases Windows 10 KB5071546 extended security update Microsoft has released the KB5071546 extended security update to resolve 57 security vulnerabilities, including three zero-day flaws. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft December 2025 Patch Tuesday fixes 3 zero-days, 57 flaws
Microsoft December 2025 Patch Tuesday fixes 3 zero-days, 57 flaws Microsoft’s December 2025 Patch Tuesday fixes 57 flaws, including one actively exploited and two publicly disclosed zero-day vulnerabilities. […] Lawrence Abrams Go to bleepingcomputer
-
Introducing Sophos Intelix for Microsoft Security Copilot
Introducing Sophos Intelix for Microsoft Security Copilot Elevating threat intelligence for all Security Copilot users. Doug Aamoth Go to sophos
-
Introducing Sophos Intelix for Microsoft 365 Copilot
Introducing Sophos Intelix for Microsoft 365 Copilot Bringing Sophos threat intelligence directly into Microsoft 365 Copilot. Doug Aamoth Go to sophos
-
Microsoft Defender portal outage disrupts threat hunting alerts
Microsoft Defender portal outage disrupts threat hunting alerts Microsoft is working to mitigate an ongoing incident that has been blocking access to some Defender XDR portal capabilities, including threat hunting alerts. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft says new Outlook can’t open some Excel attachments
Microsoft says new Outlook can’t open some Excel attachments Microsoft is working to resolve a known issue that prevents some users from opening Excel email attachments in the new Outlook client. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft: Windows updates make password login option invisible
Microsoft: Windows updates make password login option invisible Microsoft warned users that Windows 11 updates released since August may cause the password sign-in option to disappear from the lock screen options, even though the button remains functional. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft to Block External Scripts in Entra ID Logins to Enhance Protections
Microsoft to Block External Scripts in Entra ID Logins to Enhance Protections Microsoft has announced a significant security upgrade to its Microsoft Entra ID authentication process, as part of the company’s broader Secure Future Initiative. Microsoft is updating its Content Security Policy (CSP) to block the execution of external scripts during user sign-ins. This proactive…
-
Microsoft: Exchange Online outage blocks access to Outlook mailboxes
Microsoft: Exchange Online outage blocks access to Outlook mailboxes Microsoft is investigating an Exchange Online service outage that is preventing customers from accessing their mailboxes using the classic Outlook desktop client. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft Teams Introduces New Feature to Boost Performance and Startup Speed
Microsoft Teams Introduces New Feature to Boost Performance and Startup Speed Microsoft has announced a significant update to the Teams Desktop Client for Windows that aims to enhance performance and reduce startup times for calling features. The update, detailed in the Message Center notification MC1189656 published on November 25, 2025, introduces a new process architecture…
-
Microsoft’s Update Health Tools Configuration Vulnerability Let Attackers Execute Arbitrary Code Remotely
Microsoft’s Update Health Tools Configuration Vulnerability Let Attackers Execute Arbitrary Code Remotely A critical remote code execution (RCE) vulnerability in Microsoft’s Update Health Tools (KB4023057). A widely deployed Windows component designed to expedite security updates through Intune. The flaw stems from the tool connecting to dropped Azure Blob storage accounts that attackers could register and control. How…
-
Nvidia confirms October Windows updates cause gaming issues
Nvidia confirms October Windows updates cause gaming issues Nvidia has confirmed that last month’s security updates are causing gaming performance issues on Windows 11 24H2 and Windows 11 25H2 systems. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft: Out-of-band update fixes Windows 11 hotpatch install loop
Microsoft: Out-of-band update fixes Windows 11 hotpatch install loop Microsoft has released an out-of-band cumulative update to fix a known issue causing the November 2025 KB5068966 hotpatch update to reinstall on Windows 11 systems repeatedly. […] Sergiu Gatlan Go to bleepingcomputer
-
Thunderbird adds native support for Microsoft Exchange accounts
Thunderbird adds native support for Microsoft Exchange accounts Thunderbird 145 has been released with full native support for Microsoft Exchange email via the Exchange Web Services (EWS) protocol. […] Bill Toulas Go to bleepingcomputer
-
Windows 11 gets new Cloud Rebuild, Point-in-Time Restore tools
Windows 11 gets new Cloud Rebuild, Point-in-Time Restore tools Microsoft announced two new Windows 11 recovery features today at the Ignite developer conference, called Cloud Rebuild and Point-in-Time Restore (PITR), that aim to reduce downtime and make it easier to recover from system failures or faulty updates. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft to integrate Sysmon directly into Windows 11, Server 2025
Microsoft to integrate Sysmon directly into Windows 11, Server 2025 Microsoft announced today that it will integrate Sysmon natively into Windows 11 and Windows Server 2025 next year, making it unnecessary to deploy the standalone Sysinternals tools. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft Integrated Azure Firewall With AI-powered Security Copilot
Microsoft Integrated Azure Firewall With AI-powered Security Copilot Microsoft has enhanced its cloud security capabilities by integrating Azure Firewall with Security Copilot, an AI-powered security solution designed to help security teams work faster and more efficiently. This integration allows security analysts to investigate malicious network traffic using simple, natural-language questions rather than complex technical queries.…
-
Microsoft Threat Intelligence Briefing Agent Now Integrated With the Defender Portal
Microsoft Threat Intelligence Briefing Agent Now Integrated With the Defender Portal Microsoft unveiled significant enhancements to threat intelligence at Ignite 2025, bringing the Threat Intelligence Briefing Agent directly into the Defender portal. This integration marks a pivotal shift in how security teams approach cyber defense, moving from reactive responses to proactive threat anticipation. The Threat…
-
Advancing Cybersecurity for Microsoft Environments
Advancing Cybersecurity for Microsoft Environments From certified MDR services to open threat intelligence frameworks, Sophos is delivering the clarity, context, and confidence organizations need to stay ahead of evolving threats. Sally Adam Go to sophos
-
Microsoft: Windows 10 KB5072653 OOB update fixes ESU install errors
Microsoft: Windows 10 KB5072653 OOB update fixes ESU install errors Microsoft has released an emergency Windows 10 KB5072653 out-of-band update to resolve ongoing issues with installing the November extended security updates. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft: Windows 10 KB5068781 ESU update may fail with 0x800f0922 errors
Microsoft: Windows 10 KB5068781 ESU update may fail with 0x800f0922 errors Microsoft has confirmed it is investigating a bug causing the Windows 10 KB5068781 extended security update to fail to install with 0x800f0922 errors on devices with corporate licensing. […] Lawrence Abrams Go to bleepingcomputer
-
Microsoft fixes bug causing false Windows 10 end-of-support alerts
Microsoft fixes bug causing false Windows 10 end-of-support alerts Microsoft has resolved a bug causing incorrect Windows 10 end-of-support warnings on systems with active security coverage or still under active support after installing the October 2025 updates. […] Sergiu Gatlan Go to bleepingcomputer
-
November Patch Tuesday does its chores
November Patch Tuesday does its chores A cleanup month brings 63 patches… wait, no, 68… how about 61? Angela Gunn Go to sophos
-
Microsoft: Windows 11 23H2 Home and Pro reach end of support
Microsoft: Windows 11 23H2 Home and Pro reach end of support Microsoft has reminded customers today that systems running Home and Pro editions of Windows 11 23H2 have stopped receiving security updates. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft releases KB5068781 — The first Windows 10 extended security update
Microsoft releases KB5068781 — The first Windows 10 extended security update Microsoft has released the KB5068781 update, the first Windows 10 extended security update since the operating system reached end of support last month. […] Lawrence Abrams Go to bleepingcomputer
-
How to use the new Windows 11 Start menu, now rolling out
How to use the new Windows 11 Start menu, now rolling out The Windows Start menu is getting its first major redesign since 2021 and will be rolled out to everyone with the November 11 Patch Tuesday update. […] Mayank Parmar Go to bleepingcomputer
-
Drilling Down on Uncle Sam’s Proposed TP-Link Ban
Drilling Down on Uncle Sam’s Proposed TP-Link Ban The U.S. government is reportedly preparing to ban the sale of wireless routers and other networking gear from TP-Link Systems, a tech company that currently enjoys an estimated 50% market share among home users and small businesses. Experts say while the proposed ban may have more to…
-
Still on Windows 10? Enroll in free ESU before next week’s Patch Tuesday
Still on Windows 10? Enroll in free ESU before next week’s Patch Tuesday With the first Patch Tuesday following Windows 10’s end of support approaching next week, users who continue to run the operating system should enroll in the Extended Security Updates (ESU) program to remain protected against newly discovered security vulnerabilities. […] Lawrence Abrams…
-
Microsoft testing faster Quick Machine Recovery in Windows 11
Microsoft testing faster Quick Machine Recovery in Windows 11 Microsoft is testing a faster version of Quick Machine Recovery (QMR) and updated Smart App Control (SAC), allowing users to toggle it without requiring a Windows clean install. […] Sergiu Gatlan Go to bleepingcomputer
-
Windows 11 Store gets Ninite-style multi-app installer feature
Windows 11 Store gets Ninite-style multi-app installer feature The Microsoft Store on the web now lets you create a multi-app install package on Windows 11 that installs multiple applications from a single installer. […] Mayank Parmar Go to bleepingcomputer
-
Cloudflare Scrubs Aisuru Botnet from Top Domains List
Cloudflare Scrubs Aisuru Botnet from Top Domains List For the past week, domains associated with the massive Aisuru botnet have repeatedly usurped Amazon, Apple, Google and Microsoft in Cloudflare’s public ranking of the most frequently requested websites. Cloudflare responded by redacting Aisuru domain names from their top websites list. The chief executive at Cloudflare says…
-
Microsoft: October Windows updates trigger BitLocker recovery
Microsoft: October Windows updates trigger BitLocker recovery Microsoft has warned that some systems may boot into BitLocker recovery after installing the October 2025 Windows security updates. […] Sergiu Gatlan Go to bleepingcomputer
-
Microsoft removing Defender Application Guard from Office
Microsoft removing Defender Application Guard from Office Microsoft plans to remove Defender Application Guard from Office by December 2027, starting with the February 2026 release of Office version 2602. […] Sergiu Gatlan Go to bleepingcomputer
-
Hackers Exploit OneDrive.exe Through DLL Sideloading to Execute Arbitrary Code
Hackers Exploit OneDrive.exe Through DLL Sideloading to Execute Arbitrary Code A sophisticated attack technique that exploits Microsoft’s OneDrive application through DLL sideloading, allowing threat actors to execute malicious code while evading detection mechanisms. The attack leverages a weaponized version.dll file to hijack legitimate Windows processes and maintain persistence on compromised systems. DLL sideloading exploits Windows’…
-
Microsoft: SesameOp malware abuses OpenAI Assistants API in attacks
Microsoft: SesameOp malware abuses OpenAI Assistants API in attacks Microsoft security researchers have discovered a new backdoor malware that uses the OpenAI Assistants API as a covert command-and-control channel. […] Sergiu Gatlan Go to bleepingcomputer
-
Windows 11 Build 26220.7051 released with “Ask Copilot” feature
Windows 11 Build 26220.7051 released with “Ask Copilot” feature Windows 11 Build 26220.7051 is now rolling out to testers in the Windows Insider Program, and there are at least three new features, including Ask Copilot in the taskbar. […] Mayank Parmar Go to bleepingcomputer
-
Windows 11 tests shared Bluetooth audio support, but only for AI PCs
Windows 11 tests shared Bluetooth audio support, but only for AI PCs If you have two headphones, speakers, earbuds, or any other Bluetooth hardware, you can now use both simultaneously on a Copilot+ PC. […] Mayank Parmar Go to bleepingcomputer
-
Microsoft Edge gets scareware sensor for faster scam detection
Microsoft Edge gets scareware sensor for faster scam detection Microsoft is introducing a new scareware sensor for the Microsoft Edge web browser, which helps detect scam pages more quickly and ensures that Defender SmartScreen blocks them faster. […] Sergiu Gatlan Go to bleepingcomputer
-
LinkedIn gives you until Monday to stop AI from training on your profile
LinkedIn gives you until Monday to stop AI from training on your profile If you live in the UK/EU/Canada/Hong Kong, LinkedIn has given you until Monday to stop AI from training on your profile. You have to opt-out if you don’t want this to happen to your data. Take action now, and tell your friends.…
-
Microsoft fixes Media Creation Tool broken on some Windows PCs
Microsoft fixes Media Creation Tool broken on some Windows PCs Microsoft has confirmed that the Windows 11 Media Creation Tool (MCT) is working again on Windows 10 22H2 and Windows 11 25H2 systems. […] Sergiu Gatlan Go to bleepingcomputer