Security


Colorful Copper Wires Graphic

Windows Autopatch's Impact on IT

Microsoft's patch automation tool has been out for almost a year now. How has enterprises' security processes changed since then?

Microsoft Bolstering Sentinel with Workspace Manager and Hunts Previews

Microsoft this week announced some Microsoft Sentinel enhancements that are either available as a public preview release or will be coming soon.

Microsoft To Include App Governance in Defender for Cloud Apps Subscriptions

Microsoft is planning to include its App Governance add-on as part of the Microsoft Defender for Cloud Apps service "at no additional cost," starting in June.

Microsoft Security Nomenclature Switches to Bad Weather Naming Scheme

Microsoft announced this week that it has scrapped its security threat nomenclature for a new weather-themed one.

Windows 365 Cloud PCs Now Encrypted at Rest

Microsoft now encrypts new Windows 365 Cloud PCs at rest, starting this month, according to a Friday announcement.

Microsoft Offers Guidance on Secure Boot Bypasses by BlackLotus Malware

Microsoft this week offered guidance on how organizations can investigate the possible presence of so-called "BlackLotus" bootkits, which are capable of exploiting Unified Extensible Firmware Interface (UEFI)-based Windows systems.

Microsoft Releases Windows Local Administrator Password Solution

Microsoft on Tuesday announced the roll out of a new "Windows Local Administrator Password Solution" (LAPS).

Old Stone Wall Graphic

Microsoft Targets 97 Flaws in April Security Update

Tuesday saw the release of this month's Microsoft security update -- featuring fixes for 97 flaws, including one zero-day exploit.

Microsoft Details Attack Methods Using Azure AD Connect

Microsoft explained last week how purported nation-state attackers were able to "manipulate the Azure Active Directory (Azure AD) Connect agent," and then destroy a victim's Azure environment.

Microsoft and Fortra Clamp Down on Cobalt Strike Use for Ransomware Attacks

Microsoft and Fortra are using licensing agreements and copyright laws to thwart ransomware attacks, according to a Thursday Microsoft announcement.

Microsoft Bringing AI-Powered Copilot to OneNote App

Microsoft indicated this week that Microsoft 365 Copilot will be coming to its OneNote note-taking application.

Microsoft Mostly Fixes Azure Active Directory 'BingBang' App Misconfigurations

Microsoft on Wednesday confirmed that it has addressed a so-called "BingBang" security issue that affected "small number of our internal applications" due to Azure Active Directory authorization misconfigurations.

AI-Powered Microsoft Security Copilot Revealed

Microsoft on Tuesday announced a new predictive language chat tool for security experts called Microsoft Security Copilot.

CISA Releases Untitled Goose Tool for Tracking Microsoft Azure and Microsoft 365 Security Incidents

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) this week announced the release of a publicly available and free post-incident hunting tool for organizations using Microsoft Azure, Azure Active Directory and Microsoft 365 applications.

Azure Firewall Basic Commercially Released

Microsoft this week announced that Azure Firewall Basic is now at the "general availability" commercial-release stage.

Microsoft March 2023 Patch Tuesday: 2 Zero-Day Flaws Fixed

Microsoft on Tuesday released 80 targeted fixes for its monthly security update, including fixes for two flaws that are currently being exploited.

Microsoft 365 Defender Real-Time Custom Detection Rules Previewed

Microsoft 365 Defender users are getting a public preview of the ability to set custom detection rules for near real-time security events, according to a Monday announcement.

Microsoft and Mitre Collaborating on AI and Machine Learning Security Tools

Microsoft and Mitre Corp. last week outlined their collaborative efforts to shore up the security of machine learning models and artificial intelligence (AI) platforms.

3 Zero Day Flaw Fixes for Microsoft's February Security Patch

Microsoft's February security update comes packed for three important fixes aimed at addressing currently exploitable vulnerabilities across the company's product and services.

Swirl

'What Does It Actually Excel At?' A Conversation with an AI Expert About ChatGPT

To hear one applied AI specialist explain it, the reason there are so many questions around ChatGPT is that it makes us ask questions about ourselves.

Subscribe on YouTube