Skip to main content

Tag: microsoft

702 articles

Rows of servers and equipment in a data center, some partially disassembled.

Microsoft Disrupts Malware-Signing Service Used in Ransomware Attacks

Microsoft swooped in to shut down a notorious malware-signing service, seizing the website signspace.cloud and taking down hundreds of virtual machines used to fuel ransomware attacks. This bold move, dubbed OpFauxSign, crippled a key operation run by the threat actor Fox Tempest, which had been using Microsoft's own system against them since May 2025.

Analyst 207
Windows laptop on a clean surface with a blurred background and a note beside it.

Microsoft Mitigates YellowKey BitLocker Bypass Exploit with New Guidance

Microsoft has stepped in to squash a newly revealed BitLocker bypass exploit, dubbed YellowKey, by releasing crucial guidance to protect users from potential attacks. This security move comes after a researcher demonstrated how the exploit could spawn a shell with unrestricted access to sensitive data.

Analyst 207
Windows laptop screen on a desk in a modern office with a blurred interface displayed.

Microsoft Discloses Mitigations for YellowKey Windows Zero-Day Vulnerability

Microsoft has issued urgent guidance to mitigate a newly publicized Windows zero-day vulnerability, dubbed YellowKey, which could allow attackers to bypass security features. The tech giant is working on a fix, but in the meantime, it's urging users to follow its interim guidance to stay protected.

Analyst 207
Law enforcement officials in a secure facility render code-signing credentials invalid.

Microsoft Disrupts Cybercrime Service Selling Code-Signing Certificates to Ransomware Gangs

Microsoft has disrupted a notorious cybercrime operation, dubbed Fox Tempest, that sold code-signing certificates to ransomware gangs, allowing them to disguise malware as legitimate Windows software. The operation, which created over 580 fake Microsoft accounts, has been linked to two individuals, John Doe 1 and John Doe 2, who allegedly traded in real, Microsoft-issued code-signing credentials.

Analyst 207
Brightly-lit server rack in a cybersecurity operations center against a mid-tone background.

Microsoft Disrupts Malware-Signing Service Used by Ransomware Gangs

Microsoft cracked down on a notorious malware-signing service used by ransomware gangs, disrupting the operations of Fox Tempest, a financially motivated group that generated millions of dollars in profits by selling trust to cybercriminals. The group had created over 1,000 code-signing certificates and hundreds of Azure tenants to support its industrial-scale scheme.

Analyst 207
Law enforcement operation room with a large, dismantled computer setup symbolizing disrupted malware signing service.

Microsoft Disrupts Malware Signing Service Used by Ransomware Groups

Microsoft cracked down on a sophisticated malware signing service run by a group called Fox Tempest, which helped ransomware gangs disguise their malicious programs as legitimate software. This service was like a master forgery operation, creating counterfeit digital signatures that even experts struggled to spot.

Analyst 207
Windows 11 laptop on a neutral surface with a blurred office background and an abstract on-screen display.

Microsoft Revamps Windows 11 Driver Strategy to Bolster Quality

Microsoft is shaking up its Windows 11 driver strategy with a new Driver Quality Initiative, aiming to elevate the quality of drivers and ensure customers enjoy reliable, secure, and high-performance devices. By targeting key areas, Microsoft hopes to transform the driver experience and prevent frustrating device problems.

Analyst 207
Dimly lit computer room with servers, networking equipment, and a Windows update screen on a single out-of-focus computer.

Microsoft Disables Windows Updates in Restricted Networks

If you've installed the January 2026 optional non-security preview updates on a restricted Windows network, you might face update failures - a frustrating issue that could leave your system vulnerable. Specifically, affected devices may still download February's security update, but then get stuck, unable to receive crucial updates from March onwards.

Analyst 207
Windows 11 desktop with taskbar at top, modern setup, blurred home office background.

Microsoft Enhances Windows 11 with Customizable Taskbar, Start Menu

Get ready to take control of your Windows 11 experience with the latest update, featuring a customizable taskbar that can be moved to the top, sides, or bottom of your screen. You can also resize it to use smaller buttons, giving you more vertical space for your favorite apps.

Analyst 207
Laptop on cluttered desk with nearly full hard drive indicator and blank screen.

Microsoft Windows 11 Update Fails to Install Due to EFI Space Issue

Struggling with a frustrating update fail? The latest Windows 11 security update may not install on your device due to a sneaky space issue on the EFI System Partition, causing error code 0x800f0922 and an automatic rollback.

Analyst 207
Windows laptop on a clean surface with a blank screen, conveying vulnerability.

Windows Zero-Day Exploit MiniPlasma Exposes SYSTEM Vulnerability

A security researcher has uncovered a Windows zero-day exploit, dubbed MiniPlasma, that can grant SYSTEM privileges on fully patched systems, revealing a vulnerability that was originally reported to Microsoft in 2020 but left unpatched. The researcher released a proof-of-concept exploit on GitHub, highlighting the issue with the Cloud Filter driver.

Analyst 207
Researchers collaborate in a modern lab with AI equipment and large display screens showing code visualizations.

Microsoft Unveils 100-Agent AI System for Advanced Bug Hunting

Microsoft has just unveiled MDASH, a game-changing AI system that leverages 100 specialized agents to supercharge bug hunting and vulnerability discovery. This cutting-edge technology combines multiple AI models to outperform traditional single-model approaches, giving enterprises a powerful new defense against cyber threats.

Analyst 207
Windows computer screen displays system update information in a clean workspace setting.

Microsoft Introduces Automated Windows Driver Rollback Feature

Microsoft's new Cloud-Initiated Driver Recovery feature lets them swiftly roll back faulty Windows drivers, so you don't have to - no more manual uninstalls or waiting for an updated driver from the hardware partner. This means your device can quickly get back on track with a reliable driver.

Analyst 207
Rack-mounted servers and network equipment in a dimly lit server room.

Microsoft Warns of Severe Zero-Day Flaw in On-Prem Exchange Servers

Microsoft just sounded the alarm on a severe zero-day flaw in on-prem Exchange servers, warning that a high-severity vulnerability could let attackers send malicious code to victims via specially crafted emails. This flaw, tracked as CVE-2026-42897, has already been automatically mitigated if the EM Service is enabled, which it is by default.

Analyst 207
USB drive plugged into a laptop on a cluttered desk in a dimly lit home office with blurred screen.

Anonymous Researcher Exposes New Microsoft Zero-Days

A shocking new discovery by an anonymous researcher has revealed not one, but two fresh Windows zero-days, just days after Microsoft's monthly Patch Tuesday. Meet YellowKey, a sneaky BitLocker bypass that can be launched from a USB drive, giving attackers unrestricted access to a protected machine - if they can get their hands on it.

Analyst 207
Windows 11 laptop screen on a cluttered desk showing BitLocker recovery key prompt.

Microsoft Fixes BitLocker Issue on Windows 11

Microsoft has fixed a frustrating issue with BitLocker on Windows 11, where devices with certain Group Policy configurations were prompted to enter their BitLocker recovery key after installing a recent update. The fix is available in update KB5089549 for Windows 11 25H2.

Analyst 207
Laptop screen shows Windows Update progress with driver update message.

Microsoft Fixes Autopatch Bug Deploying Restricted Drivers

Microsoft fixed a Windows Autopatch bug that caused a small number of EU devices to receive restricted driver updates despite administrative policies in place to block them. The issue affected specific Windows 11 versions, including 23H2, 24H2, and 25H2.

Analyst 207
Researcher analyzes bug on laptop screen at lab bench surrounded by tech equipment.

Microsoft's AI System Uncovers 16 Windows Flaws in Patch Tuesday Release

Microsoft's cutting-edge AI system, MDASH, has successfully uncovered 16 critical Windows flaws in the latest Patch Tuesday release by leveraging a team of over 100 specialized AI agents. This innovative approach combines multiple AI models to detect and prove exploitable bugs, showcasing its potential to revolutionize cybersecurity.

Analyst 207
Rows of computer servers in a brightly-lit data center or network operations center.

Microsoft Patches 138 Vulnerabilities, Including Critical DNS and Netlogon Flaws

Microsoft just patched a critical DNS flaw that could let hackers execute code on your network, along with 137 other vulnerabilities - so make sure to update ASAP! The update also includes a mandatory rollout of updated Secure Boot certificates to keep your system secure.

Analyst 207
Software engineer working on laptop with code on screen in modern office with large window.

Microsoft Patch Tuesday Disrupts 120 Vulnerabilities with AI-Driven Insights

Microsoft's May Patch Tuesday update tackles a whopping 120 vulnerabilities, including 17 critical flaws that could leave your systems exposed to remote code execution, elevation of privilege, and information disclosure attacks. Prioritize patching now to safeguard your domain controllers and prevent potentially disastrous breaches.

Analyst 207
Generic server setup with multiple monitors and equipment racks in a brightly-lit tech environment.

Microsoft Patch Tuesday Exposes 137 Vulnerabilities, Including 30 Critical Flaws

Microsoft just dropped a massive Patch Tuesday update, fixing 137 vulnerabilities - including 30 critical flaws and 14 high-severity bugs scoring 9.0 or higher on the CVSS scale. This surge in patches, partly driven by AI-powered bug detection, is expected to continue, making it crucial to stay on top of updates.

Analyst 207
Rows of computer servers and networking equipment in a bright, clean server room setting.

Microsoft Patch Tuesday Discloses 137 Vulnerabilities, Warns of Critical Flaws

Microsoft's May Patch Tuesday update is a must-address, with 137 vulnerabilities patched, including 13 critical flaws that could leave your systems exposed. The good news? None are known to be under active attack - yet.

Analyst 207
Brightly-lit laboratory with rows of computer workstations and technical equipment.

AI-Powered Bug Hunts Disrupt Software Giants' Patch Cycles

Microsoft just dropped a massive batch of software updates to fix 118 security vulnerabilities, including 16 critical flaws that could let hackers take control of your system. For the first time in nearly two years, none of these patches are for emergency zero-day flaws that were already being exploited.

Analyst 207
Satya Nadella sits in a courtroom with a neutral expression, hands on the witness stand edge.

Nadella Defends $13B OpenAI Investment in Musk's Trial

Microsoft CEO Satya Nadella took the stand to defend his company's whopping $13 billion investment in OpenAI, revealing that Elon Musk never expressed concerns about the deal. Nadella framed the investment as a strategic move to drive returns, with Microsoft viewing it as a chance to get in on the ground floor.

Analyst 207