Security


Supply Chain Attack Hits Microsoft GitHub Repos, AI Coding Tools

GitHub disabled 73 Microsoft repositories on June 5 after a malicious commit landed in an Azure project, in what researchers described as a supply chain attack aimed at developer workstations and AI coding environments.

Active Directory Basics Are Anything but Basic

Microsoft MVP Derek Melber explains why real AD knowledge depends on understanding how Group Policy, replication and DNS behave in production.

Microsoft 365 Android Coding Error Put Account Tokens at Risk

A coding error in several Microsoft 365 Android apps could have allowed a malicious app on the same device to silently obtain account tokens and act as the signed-in user, according to new research from Enclave.

White House AI Order Focuses on Security Without New Regulatory Clampdown

President Donald Trump signed a new executive order Tuesday that aims to keep the United States ahead in AI while giving the federal government a limited role in reviewing the security risks tied to the most advanced models.

Microsoft Uses Build 2026 To Put AI Agents at the Center of Windows

Microsoft used Build 2026 to position Windows as a platform for building and running AI agents, expanding its developer focus beyond AI-assisted apps and into agents that can act across local devices, cloud environments and enterprise systems.

FBI Urges Microsoft 365 Defenders To Watch for Kali365 Phishing Attacks

The FBI is warning orgs about Kali365, a phishing-as-a-service kit that can help attackers get around multifactor authentication protections in Microsoft 365 environments by stealing access tokens instead of passwords.

Shards

Microsoft Disrupts Fox Tempest Malware-Signing Service Used in Ransomware Attacks

Microsoft has disrupted a cybercrime service that allegedly helped ransomware operators and other attackers make malware appear as verified software, the company said last week.

Microsoft Open Sources AI Safety Tools for Agent Development

Microsoft released RAMPART and Clarity as open-source projects intended to help developers test AI agents earlier in the software lifecycle and turn red-team findings into repeatable engineering checks.

Cybersecurity Concerns Push SMBs To Increase Spending

More than half of small and midsize businesses rank cybersecurity and data protection among their top priorities, with many planning to increase security spending as AI adoption adds new risks, according to a new IDC survey commissioned by Sage.

Microsoft Pushes Agentic AI Security with New Multi-Model Defense System

A new agentic AI security multi-model defense system built by Microsoft's Autonomous Code Security team helped researchers find 16 new vulnerabilities across the Windows networking and authentication stack.

No Zero-Days, but Plenty to Patch in Microsoft May Update

Microsoft's May Patch Tuesday release broke a long zero-day streak, arriving without any vulnerabilities listed as exploited or publicly disclosed.

Using LLMs in SecOps Without Handing AI the Keys

TechMentor speaker Heather Wilde Renze says LLMs can help security teams move faster, but data boundaries, review loops and access controls need to come first.

Microsoft Agent 365 Goes Live as Company Unveils E7 Suite

Microsoft on Friday announced the general availability of Agent 365, its control plane for governing and securing AI agents across enterprise environments, alongside the release of Microsoft 365 E7.

Why Modern Windows Credential Security Requires a New Defender Mindset

Dashmeet Kaur Ajmani discusses how Windows now isolates key credential material, why legacy authentication assumptions can create risk and what teams should watch for when hardening production environments.

Microsoft Uncovers Hackers Posing as IT Helpdesk Staff

Microsoft issued a report warning users about a popular attack method that involves a "human-operated" attack playbook, in which hackers impersonate IT helpdesk staff using Microsoft Teams to gain access to company systems and steal data.

Microsoft Issues Second Biggest Patch Tuesday Ever in April

Microsoft this week released one of the largest Patch Tuesday bundles in its history, delivering fixes for 163 new Microsoft CVEs in a month that includes three zero-days and eight Critical-rated vulnerabilities.

Microsoft Flags Fast-Moving Ransomware, Router-Based Espionage Threats

Microsoft is warning organizations about two active cybersecurity threats: a fast-moving ransomware campaign and a Russian espionage operation that abuses small office and home office routers to monitor victims' network traffic.

Red Petal Closeup Graphic

Hackers Use AI to Bypass Passwords in Large Scale Phishing Attack

Microsoft this week says it has uncovered a large-scale, sophisticated AI-driven phishing campaign that uses automation and legitimate authentication processes to compromise accounts more effectively than traditional phishing attacks.

Microsoft, RSA Make Dual Authentication Moves at RSAC 2026

Two of the bigger authentication announcements to come out of the RSA Conference this week both point in the same direction: organizations need a more flexible, unified approach to identity security, especially as AI agents start acting alongside human workers.

Rubrik Ties Microsoft Defender to Identity Recovery to Cut Response Times to Hours

Rubrik unveiled a new integration with Microsoft Defender at RSAC 2026, linking real-time identity threat detection with automated rollback and recovery capabilities.

Subscribe on YouTube