Microsoft

Microsoft Investigating Microsoft 365 Copilot Access Issues Under Incident CP1470554

Microsoft is investigating a Microsoft 365 Copilot disruption in which users may be unable to open the assistant or encounter…

5 days ago

New Windows Defender ShieldCrash 0-Day Bypasses Microsoft Patch to Read Files as SYSTEM

A newly published ShieldCrash proof of concept from researcher MSNightmare claims that Microsoft Defender remains vulnerable to an arbitrary file-read…

7 days ago

Microsoft to Retire Manifest V2 Extensions and Switch to V3 for Improved Security and Performance

Microsoft will retire support for Manifest V2 browser extensions in Microsoft Edge by early 2027, requiring users, enterprises, and developers…

1 week ago

Microsoft to Expand Memory Integrity Protection Across Windows Devices

Microsoft will begin expanding memory integrity protection across eligible Windows devices in October 2026, automatically enabling a stronger kernel-level security…

2 weeks ago

Public PoC Released for Microsoft Exchange Server Pre-auth RCE Vulnerability

A public proof-of-concept exploit has been released for CVE-2026-62911, a Microsoft Exchange Server vulnerability linked to an authentication capture-and-replay weakness.…

2 weeks ago

Critical Microsoft Flaw Lets Hackers Remotely Control Android Devices Without a Login

A critical vulnerability in Microsoft’s open-source UFO automation framework, tracked as CVE-2026-73296 with a CVSS score of 9.4, could allow…

2 weeks ago

CISA Warns of Microsoft SQL Server RCE Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency has added a Microsoft SQL Server remote code execution vulnerability, tracked as CVE-2019-1068,…

3 weeks ago

Microsoft Expands Mailbox Storage From 50 GB to 100 GB for Users

Microsoft has started expanding primary mailbox storage for Microsoft 365 Business Basic, Business Standard, and Business Premium users. Eligible users…

4 weeks ago

CISA Adds Microsoft Internet Key Exchange RCE Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency has added a critical Microsoft Internet Key Exchange vulnerability, tracked as CVE-2026-33824, to…

4 weeks ago

CISA Adds Microsoft SharePoint Weak Authentication Vulnerability to KEV List

CISA added a critical Microsoft SharePoint authentication flaw to its KEV catalog after CVE-2026-55040 was confirmed in active exploitation, urging…

4 weeks ago