Security


Microsoft Releases Safe Links for Teams and Other Security Solutions

Microsoft is continuing to advance its cloud-based security services with a couple of previews announced this week, plus a product release.

Kaseya Using Universal Key to Unlock REvil-Encrypted Customer Data

Kaseya announced this week that it is using a "universal decryptor key" for customers that were affected by a REvil ransomware attack reported on July 2.

Microsoft Issues Security Advisory on 'SeriousSAM' Elevation of Privilege Flaw in Windows Client Systems

Microsoft on Tuesday issued a security advisory about an elevation-of-privilege vulnerability (CVE-2021-36934) present in Windows 10 client operating systems.

Microsoft Buys CloudKnox Security to Boost Azure Active Directory Service

Microsoft on Wednesday announced the acquisition of CloudKnox Security, a maker of "cloud infrastructure entitlement management" solutions for organizations using various cloud services.

White House Says China's APT40 Responsible for Exchange Hacks, Ransomware Attacks

The Biden administration released a statement on Monday naming the People's Republic of China as responsible for widespread cyberattacks that notably targeted Exchange Server users.

Microsoft Suggests Disabling Windows Print Spooler After New Bug Discovered

Microsoft is investigating a new vulnerability in the Windows print spooler service and is recommending that IT pros disable it, if possible, as an interim measure, although doing so eliminates the ability to print.

Microsoft Delivers Hefty July Patch Bundle for 117 Vulnerabilities

The July security patch tally seems like a rerun of the hefty bundles that were seen last year.

Microsoft Buying RiskIQ To Boost Cloud Security Solutions

Microsoft announced on Monday that it is acquiring RiskIQ, a San Francisco-based provider of software-as-a-service security solutions for organizations.

Microsoft Clarifies Its 'PrintNightmare' Patch Advice

Microsoft on Thursday issued "clarified guidance" for organizations addressing a zero-day Windows printer spooler vulnerability dubbed "PrintNightmare."

Microsoft Issues Out-of-Band 'PrintNightmare' Windows Print Spooler Patch

Microsoft on Tuesday announced the release of an "out-of-band" fix for a Windows print spooler vulnerability dubbed "PrintNightmare."

REvil Ransomware Attacks Used Zero-Day Vulnerability in Kaseya's IT Management Software

A ransomware attack leveraging a zero-day vulnerability in Kaseya's VSA management solution may have affected about 60 managed service providers (MSPs) and almost 1,500 of their business customers.

Microsoft Defender for Endpoint Touted in Netgear Router Flaw Discovery

Microsoft on Wednesday described its discovery of a side-channel attack on Netgear DGN-2200v1 wireless home DSL routers that enabled authentication bypass.

Microsoft's June Windows Print Spool Patch Doesn't Block Remote Code Execution Attacks

An "Important"-rated Windows print spool vulnerability (CVE-2021-1675), addressed by Microsoft via its June 8 security patch bundle, has emerged more recently as being subject to active attacks.

June Windows Security Patch Blocked for Some Configuration Manager WSUS Users

Microsoft warned users of Microsoft Endpoint Configuration Manager in conjunction with Windows Server Update Services about a "known issue" that blocks the installation of a June Windows security patch.

Microsoft Defender for Endpoint Can Now Detect Unmanaged Devices

Microsoft on Tuesday announced the commercial release of an unmanaged device detection feature when using the Microsoft Defender for Endpoint product.

Microsoft Adds Stop-Gap Tool, but Still Plans To End Exchange Online Basic Authentication

Microsoft on Wednesday announced another update on its plans to end the use of Basic Authentication with the Exchange Online e-mail messaging service.

Microsoft Defender for Endpoint Gets Jailbreak Protections and More

Microsoft Defender for Endpoint got several improvements at the "general availability" commercial-release stage, according to a Monday announcement by Microsoft.

Microsoft Defender for Endpoint Gets VPN Tunnel Support for Android Devices

Microsoft announced a couple of "general availability" milestones on Monday for organizations using Microsoft Defender for Endpoint to protect Android devices.

Exchange Server June Update Getting Delayed To Bolster Security

Microsoft on Friday announced a coming delay in delivering this month's Exchange Server cumulative update (CU), which is being done to improve the security of those e-mail messaging products.

Microsoft Previews Azure Firewall Threat Tracking in Azure Sentinel

Microsoft this week announced a preview of Azure Firewall integration in its Azure Sentinel security information and event management (SIEM) solution.

Subscribe on YouTube