Microsoft has released a PowerShell script to help Windows users and admins update bootable media so it utilizes the new "Windows UEFI CA 2023" certificate before the mitigations of the BlackLotus UEFI bootkit are enforced later this year. [more]
Microsoft 365 just increased its yearly subscription price from $69.99 to $99.99, and that's a bill you have to pay every year. [more]
Microsoft announced it is killing off its Privacy Protection VPN feature in the Microsoft Defender app at the end of the month to focus on other features. [more]
Microsoft says it improved the contrast of text rendered in all Chromium-based web browsers on Windows, making it more readable on some displays. [more]
While the pair will keep their tight-knit relationship alive through at least 2030, [more]
Microsoft has reminded Windows administrators that driver synchronization in Windows Server Update Services (WSUS) will be deprecated on April 18, 90 days from now. [more]
The largest distributed denial-of-service (DDoS) attack to date peaked at 5.6 terabits per second and came from a Mirai-based botnet with 13,000 compromised devices. [more]
Microsoft has reminded admins that Exchange 2016 and Exchange 2019 will reach the end of extended support in October and shared guidance for those who need to decommission outdated servers. [more]
Microsoft has shared a temporary fix for a known issue that causes classic Outlook to crash when writing, replying to, or forwarding an email. [more]
Microsoft is warning that the January 2025 Windows 11 and Windows 10 cumulative updates may fail if Citrix Session Recording Agent (SRA) version 2411 is installed on the device. [more]
A deceptive proof-of-concept (PoC) exploit for CVE-2024-49113 (aka "LDAPNightmare") on GitHub infects users with infostealer malware that exfiltrates sensitive data to an external FTP server. [more]
Microsoft will force install the new Outlook email client on Windows 10 systems starting with next month's security update. [more]
Scammers stole $494 million worth of cryptocurrency in wallet drainer attacks last year that targeted more than 300,000 wallet addresses. [more]
Microsoft is investigating a known issue triggering "Product Deactivated" errors for customers using Microsoft 365 Office apps. [more]
The U.S. government is considering banning TP-Link routers starting next year if ongoing investigations find that their use in cyberattacks poses a national security risk. [more]
Juniper Networks has warned customers of Mirai malware attacks targeting and infecting Session Smart routers using default credentials. [more]
Microsoft is now blocking Windows 11 24H2 upgrades on systems with Auto HDR enabled due to a compatibility issue that causes game freezes. [more]
A phishing campaign targeting automotive, chemical, and industrial manufacturing companies in Germany and the UK is abusing HubSpot to steal Microsoft Azure account credentials. [more]
Malicious Visual Studio Code extensions were discovered on the VSCode marketplace, and they download heavily obfuscated PowerShell payloads to target developers and cryptocurrency projects in supply chain attacks. [more]
CISA has issued this year's first binding operational directive (BOD 25-01), ordering federal civilian agencies to secure their cloud environments. [more]
CISA has warned U.S. federal agencies to secure their systems against ongoing attacks targeting a high-severity Windows kernel vulnerability. [more]
Microsoft has brought down the eligibility rules surrounding Windows 11 before severing support for the world's most popular OS, Windows 10. [more]
Today is Microsoft's December 2024 Patch Tuesday, which includes security updates for 71 flaws, including one actively exploited zero-day vulnerability. [more]
Anna Jaques Hospital has confirmed on its website that a ransomware attack it suffered almost precisely a year ago, on December 25, 2023, has exposed sensitive health data for over 310,000 patients. [more]
Microsoft made it abundantly clear this week that Windows 10 users won't be able to upgrade to Windows 11 unless their systems come with TPM 2.0 support, stating it's a "non-negotiable" requirement. [more]
South Korean police have arrested a CEO and five employees for manufacturing over 240,000 satellite receivers pre-loaded or later updated to include DDoS attack functionality at a purchaser's request. [more]
A novel phishing attack abuses Microsoft's Word file recovery feature by sending corrupted Word documents as email attachments, allowing them to bypass security software due to their damaged state but still be recoverable by the application. [more]
Free unofficial security patches have been released through the 0patch platform to address a zero-day vulnerability introduced over two years ago in the Windows Mark of the Web (MotW) security mechanism. [more]
Microsoft has re-released the November 2024 security updates for Exchange Server after pulling them earlier this month due to email delivery issues on servers using custom mail flow rules. [more]
Microsoft is working on fixing an ongoing and widespread Microsoft 365 outage that is impacting multiple services and features, including Exchange Online, Microsoft Teams, and SharePoint Online. [more]
Microsoft has released the November 2024 preview cumulative update for Windows 11 24H2, with 14 improvements and fixes for multiple issues, including some affecting File Explorer, the Clipboard history, and secondary displays. [more]
Microsoft has pulled the November 2024 Exchange security updates released during this month's Patch Tuesday because of email delivery issues on servers using custom mail flow rules. [more]
Microsoft has confirmed that last month's Windows security updates are breaking SSH connections on some Windows 11 22H2 and 23H2 systems. [more]
No easy rollback or official downgrade path is available [more]
A new phishing campaign dubbed 'CRON#TRAP' infects Windows with a Linux virtual machine that contains a built-in backdoor to give stealthy access to corporate networks. [more]
Microsoft is again delaying the rollout of its AI-powered Windows Recall feature after announcing in August that it will be available for Insiders with Copilot+ PCs in October. [more]
Windows 10, still the most popular desktop operating system, is less than one year from its end of mainstream support. [more]
qBittorrent has addressed a remote code execution flaw caused by the failure to validate SSL/TLS certificates in the application's DownloadManager, a component that manages downloads throughout the app. [more]
Microsoft says it will improve security across Entra tenants where security defaults are enabled by making multifactor authentication (MFA) registration mandatory. [more]
Microsoft is warning of Windows crashing with the blue screen of death on some ASUS laptop models when trying to upgrade to the latest version of the operating system, Windows 11 version 24H2. [more]
Cisco fixed a denial of service flaw in its Cisco ASA and Firepower Threat Defense (FTD) software, which was discovered during large-scale brute force attacks against Cisco VPN devices in April. [more]
Do you want your data to stay private and never leave your device? [more]
If you’re tired of paying monthly for software that you depend on, you can get a Microsoft Office lifetime license. [more]
Microsoft is warning enterprise customers that, for almost a month, a bug caused critical logs to be partially lost, putting at risk companies that rely on this data to detect unauthorized activity. [more]
Microsoft has officially deprecated the Point-to-Point Tunneling Protocol (PPTP) and Layer 2 Tunneling Protocol (L2TP) in future versions of Windows Server, recommending admins switch to different protocols that offer increased security. [more]
Microsoft has fixed a known issue that was causing Word to delete some Windows users' documents instead of saving them. [more]
Microsoft is investigating an Outlook bug that is causing desktop app crashes, high system resource usage, and preventing users from logging into their accounts. [more]
A recently disclosed vulnerability in the Common Unix Printing System (CUPS) open-source printing system can be exploited by threat actors to launch distributed denial-of-service (DDoS) attacks with a 600x amplification factor. [more]
Microsoft is blocking Windows 24H2 upgrades on systems with incompatible Intel Smart Sound Technology (SST) audio drivers due to blue screen of death (BSOD) issues. [more]
Microsoft has released Office 2024 for small businesses and consumers who want a standalone version without a Microsoft 365 subscription. [more]
A widespread Verizon outage is causing iPhones and Android devices to enter SOS mode, preventing them from making mobile calls unless they use WiFi calling. [more]
Microsoft has announced security and privacy upgrades to its AI-powered Windows Recall feature, which can now be removed, and it has stronger default protection for user data and tighter access controls. [more]
Modern AI data centers consume enormous amounts of power, and it looks like they will get even more power-hungry in the coming years as companies like Google, Microsoft, Meta, and OpenAI strive towards artificial general intelligence (AGI). Oracle has already outlined plans to use... [more]
Microsoft is testing a new feature in the Edge browser called the "extension performance detector," which warns you when browser extensions cause performance issues on web pages you visit. [more]
Apple's servers have stopped signing the 18.0 update for M4 iPad Pros for now. [more]
A recently fixed "Windows MSHTML spoofing vulnerability" tracked under CVE-2024-43461 is now marked as previously exploited after it was used in attacks by the Void Banshee APT hacking group. [more]
Here's how to prepare your device for the installation [more]
After discontinuing its app for the third-generation Apple TV, Netflix has just confirmed that it will soon end support for some old iPhones and iPads. [more]
Microsoft announced that Windows 11 installs will reach the end of support next month, on October 8, and will be force-upgraded to Windows 11 23H2. [more]
After Office 2024 launches in October, Microsoft will disable ActiveX controls by default in Word, Excel, PowerPoint, and Visio client apps. [more]
Microsoft is investigating an Exchange Online false positive issue causing emails containing images to be wrongly tagged as malicious and sent to quarantine. [more]
Microsoft has reworded its support document to reassure Control Panel fans. [more]
Microsoft has provided a workaround to temporarily fix a known issue that is blocking Linux from booting on dual-boot systems with Secure Boot enabled. [more]
Microsoft announced today that it will start rolling out its AI-powered Windows Recall feature to Insiders with Copilot+ PCs in October. [more]
Microsoft has launched a new unified Teams application that allows Windows and Mac users to switch between personal, work, and education accounts without installing multiple apps. [more]
According to user reports following this month's Patch Tuesday, the August 2024 Windows updates are breaking dual boot on Linux systems with Secure Boot enabled. [more]
A clever disinformation campaign engages several Microsoft Azure and OVH cloud subdomains as well as Google search to promote malware and spam sites. [more]
Good times for slightly older CPUs are coming to an end. [more]
Microsoft is improving Copilot integration in the Edge browser with AI-powered smart keywords. This will allow the AI to generate important keywords from the PDF and then help you analyze each topic. [more]
Microsoft is planning to remove the 32GB size limit for FAT32 partitions in Windows 11. While FAT supports volumes up to 2TB, Windows has had a 32GB arbitrary limit in place for nearly 30 years. [more]
A design flaw in Windows Smart App Control and SmartScreen that enables attackers to launch programs without triggering security warnings has been under exploitation since at least 2018. [more]
Microsoft has mitigated an Azure outage that lasted more than two hours and took down multiple services for customers across North and Latin America. [more]
iOS 18 beta 5 has been released (there is no new 8.1 beta yet, a week after launch) and Apple has made a change many have wanted since beta 1. [more]
Microsoft Outlook can be turned into a C2 beacon to execute code remotely, as demonstrated by a new red team post-exploitation framework named "Specula," released today by cybersecurity firm TrustedSec. [more]
OpenAI might need another round of funding to remain afloat. [more]
Earlier this year Reddit announced it was making changes to its API that prohibited any scraping of its data without payment. [more]
Earlier this month, Microsoft made a surprise announcement that it would be retiring the Office 365 connectors feature from Microsoft Teams. [more]
The reason why Windows is not more secure is due to a December 2009 agreement with the EU. This was stated by a Microsoft spokesperson in an interview with The Wall Street Journal. [more]
Apple has updated the version numbers for the developer test versions of the new OSes and launched the public test versions (including macOS 15) so that you no longer need a developer account. [more]
Kode probably reveals what everyone is hoping for: all of this year's iPhone models get an A18 chip. [more]
Bloomberg's Mark Gurman points out that it takes a very long time for Apple to upgrade the design and the physical layout of its popular product series, and does not think it will get much better. [more]
RCS between iPhone and Android is finally working, at least in certain regions. [more]
Microsoft has recently confirmed the existence of CVE-2024-30078, which is a new Wi-Fi takeover attack that could allow malicious users to inject malware onto a Windows PC or laptop remotely. This vulnerability wasn't originally publicly disclosed and is now patched with an up-to-date... [more]
USB C is all well and good, but… [more]
This month's Patch Tuesday release included 49 updates, but no major zero-day flaws. [more]
Microsoft Azure will be an important part of the iPhone this summer. [more]
A group of Israeli researchers explored the security of the Visual Studio Code marketplace and managed to "infect" over 100 organizations by trojanizing a copy of the popular 'Dracula Official theme to include risky code. Further research into the VSCode Marketplace found thousands of... [more]
[b]Brave browser experienced its most significant growth month ever in May 2024, now used by more than 78.95 million monthly users, up 7.3%.[/b] [more]
The Austrian privacy group, NOYB (“None of Your Business”) accuses Microsoft of tracking school children. [more]
Statcounter's latest findings for May 2024 revealed an increase in Windows 11 users after a couple of months of steady decline. The report also contains information about desktop and mobile browsers, showing what apps customers prefer to browse the internet. According to the May 2024... [more]
Apple's "Project Greymatter" is the company's AI project to integrate AI into iOS 18. Now we know even more. [more]
The Phone Link app in Windows 11 is getting a useful feature soon. [more]
If you still use a Windows admin account for daily use, that might not be such a problem soon. [more]
Microsoft has updated the official Edge documentation on the Microsoft Learn website to warn users about compatibility changes that will soon be made to the browser. Starting with version 126, Microsoft Edge will require a processor with the SSE3 instruction set and newer. Computers... [more]
Apple has launched iOS 17.5 over two months after the last medium-sized update [more]
31TB and 32TB hard disk drives were demonstrated. [more]
Adios, CCleaner? Microsoft has added helpful new features to its free PC Manager. [more]
Microsoft has confirmed that last month's Windows Server security updates may also cause domain controller reboots after the Local Security Authority Subsystem Service (LSASS) process crashes. [more]
Bug fixes and updates for Windows 10 will end on October 14 next year. It is also possible that consumers will be able to pay for support after this date, but prices have not been confirmed. [more]
Late last week, Microsoft announced that after a series of high-profile data breaches that involved its services, it had decided it would now be "making security our top priority at Microsoft, above all else." Today, as part of the annual RSA Conference in San Fransisco, the company... [more]
Siri is not the best service from Apple, to put it mildly, but this time it has gone too far. [more]
Microsoft acknowledges there is a bug with Windows 11 and certain types of VPN connections. [more]
Microsoft Edge 125 is now on its final testing leg before public release in the Stable Channel. [more]
European Commission regulators are officially noncommittal on the antitrust action, but a Reuters report indicates Microsoft-OpenAI deals are unlikely to trigger a review. [more]
From the beginning, in full screen, encourages users of Windows 10 to upgrade to Windows 11, even machines that are not supported. [more]
Microsoft has introduced its Copilot button on keyboards, now Logitech is following up with a dedicated button on the mouse "Signature AI Edition Mouse" (an M750) which is only sold in the US and the UK - it's not the one that's exciting anyway. [more]
When Microsoft revealed in January that foreign government hackers had once again breached its systems, the news prompted another round of recriminations about the security posture of the world’s largest tech company. [more]
In connection with the launch of Windows 11 Insider Preview Build 22635.3495 in the beta channel, Microsoft has revealed "recommendations" in the start menu. [more]
TOKYO, April 9 (Reuters) - Microsoft (MSFT.O), opens new tab said on Tuesday it would invest $2.9 billion over two years to expand its cloud and AI infrastructure in Japan, the latest in a series of overseas expansions by large tech firms to support the development of artificial... [more]
Businesses will pay $61 per device for the first year, but no details yet on costs for individual customers. [more]
Mikhail Parakhin, who was responsible for Windows and Web Experiences, is stepping down a week after Microsoft revealed its consolidated client AI strategy. [more]
If Microsoft is to have a chance with ARM machines this time, they must get developers on board and be able to offer games. [more]
GamesIndustry.biz CEO Chris Dring believes that the situation is very bad with Xbox as a hardware platform. The chains are said to have already asked for fewer consoles. [more]
Microsoft vet Dave Plummer says he wrote the Format tool 30 years ago as a temporary solution. [more]
Microsoft continues to add new features to the Windows Notepad, today announcing a preview release with built-in spellchecking and an autocorrect feature. [more]