Microsoft Previews New Windows Feature to Limit Admin Privileges

October 10, 2024 at 03:24PM Microsoft’s new Administrator Protection feature in Windows aims to strengthen security by limiting local administrator privileges. It transforms privilege elevation into a “just-in-time” event, utilizing a temporary shadow account that disappears post-task, making it harder for attackers to exploit administrative access. This enhances overall system security and monitoring capabilities. ### … Read more

Microsoft cleans up hot mess of Patch Tuesday preview

October 9, 2024 at 11:19AM Microsoft has resolved issues related to the Windows 11 Patch Tuesday preview (KB5043145), which previously caused multiple restarts and device connectivity failures. The latest update includes critical security fixes. However, Windows 11 22H2 users will no longer receive updates, with other editions approaching end-of-support dates as well. ### Meeting Takeaways: … Read more

Microsoft: Windows 11 22H2 Home and Pro reached end of servicing

October 8, 2024 at 05:17PM Multiple editions of Windows 11 22H2 and 21H2 have reached their end of servicing, including Home, Pro, Pro Education, Pro for Workstations, and SE editions released on September 20, 2022. The last security update for these editions will be in October 2024. Windows 11 2024 Update is rolling out, and … Read more

Microsoft Releases October 2024 Security Updates

October 8, 2024 at 03:29PM Microsoft released security updates to address vulnerabilities in multiple products. CISA advises users and administrators to review and apply necessary updates from the Microsoft Security Update Guide for October to mitigate potential cyber threats. Based on the meeting notes, the key takeaway is that Microsoft has released security updates to … Read more

Microsoft ends development of Windows Server Update Services (WSUS)

September 20, 2024 at 04:49PM Microsoft has announced the deprecation of Windows Server Update Services (WSUS), with plans to maintain current functionality and continue publishing updates. New features and development for WSUS will cease, and businesses are encouraged to transition to cloud-based solutions for client and server updates. NTLM authentication has also been officially deprecated, … Read more

Microsoft Issues Patches for 79 Flaws, Including 3 Actively Exploited Windows Flaws

September 11, 2024 at 03:45AM Microsoft disclosed three new security flaws impacting the Windows platform, with 79 vulnerabilities addressed in the September 2024 Patch Tuesday update. Seven are rated Critical, 71 Important, and one Moderate. Exploited vulnerabilities include CVE-2024-38014, CVE-2024-38217, and CVE-2024-38226. Additional security updates were released by various vendors to address vulnerabilities. Based on … Read more

July Windows Server updates break Remote Desktop connections

July 26, 2024 at 01:24PM July’s security updates for Windows servers have caused disruptions in remote desktop connections using the legacy RPC over HTTP protocol in the Remote Desktop Gateway. When the legacy protocol is used, logon sessions are lost every 30 minutes, impacting users’ connectivity. Microsoft is working on a fix and has provided … Read more

New Windows Server KB5039227 and KB5039217 updates fix LSASS crashes

June 11, 2024 at 03:32PM Microsoft released Windows Server 2022 KB5039227 and Windows Server 2019 KB5039217 updates as part of June 2024 Patch Tuesday, fixing 51 vulnerabilities. The latter resolves LSASS process crashes and memory leaks, with no known issues, while the former fixes additional bugs including SMB over QUIC issues and Outlook search problems, … Read more

Microsoft Copilot fixed worldwide after 24 hour outage

May 24, 2024 at 02:05PM After a 24-hour outage, Microsoft’s Bing, Copilot, and Copilot in Windows services are now back online worldwide without an identified cause. Primarily impacting Asia and Europe, the outage displayed error messages and affected DuckDuckGo, leading to widespread disruption. Microsoft progressively restored services and confirmed full recovery as of 1:30 PM … Read more

Microsoft Warns of Active Zero-Day Exploitation, Patches 60 Windows Vulnerabilities

May 14, 2024 at 03:43PM Microsoft released security updates addressing 60 vulnerabilities, including an actively exploited zero-day bug called CVE-2024-30051 with a severity score of 7.8/10. They also warned of CVE-2024-30040 allowing attackers to execute code in Microsoft 365, and CVE-2024-30044 for remote code execution in Microsoft Sharepoint, urging admins to take immediate action. From … Read more