Browsing Tag
Microsoft
18 posts
Microsoft software, cloud, Windows, security, and platform coverage.
RAISE US Launches $500M AI Workforce Push With OpenAI and Anthropic Backing
RAISE US, a bipartisan nonprofit led by Gina Raimondo and Eric Holcomb, launched with more than $500 million to test AI workforce programs with states, employers, and major tech backers including OpenAI, Anthropic, Microsoft, and Amazon.
Microsoft’s StealC and Amadey Takedown Hits the Credential-Theft Supply Chain
Microsoft, Europol, and security partners disrupted infrastructure used by StealC and Amadey, two malware-as-a-service tools tied to credential theft, ransomware access, and financial fraud. The operation matters because it targeted the supply chain behind intrusions, not just one malware family.
Microsoft Defender RoguePlanet Zero-Day Leaves Windows Teams Waiting for a Patch
Microsoft has acknowledged RoguePlanet, a Microsoft Defender elevation-of-privilege flaw tracked as CVE-2026-50656, but a patch is still in development. The public proof of concept turns Defender’s own file-handling workflow into a path to SYSTEM privileges, so Windows teams should tighten execution controls and monitoring while they wait for Microsoft’s fix.
SearchLeak Shows How Microsoft 365 Copilot Search Can Become a Data Leak
Varonis disclosed SearchLeak, a patched Microsoft 365 Copilot Enterprise Search vulnerability chain that could turn one trusted-looking Microsoft link into a path for stealing emails, files, calendar data, and MFA codes.
Microsoft AutoJack Research Shows How AI Browsing Agents Can Break Localhost Trust
Microsoft’s AutoJack research shows how an AI browsing agent could turn a malicious webpage into a local remote-code-execution path through AutoGen Studio’s MCP WebSocket surface. The specific issue was fixed before a PyPI release, but the localhost trust problem is bigger than one tool.
Microsoft MDASH Moves AI Bug Hunting Into Real Security Workflows
Microsoft says its MDASH agentic security system is now being used across Windows, Azure, and identity workflows, with new findings in Hyper-V, HTTP.sys, the Windows kernel, and Active Directory. The update shows AI vulnerability discovery moving from benchmark claims toward real engineering pipelines, while proof generation remains the hard part.
Microsoft Work IQ APIs Put Enterprise Agents Inside the Microsoft 365 Trust Boundary
Microsoft Work IQ APIs are generally available today, giving custom and third-party agents a governed way to use Microsoft 365 context, tools, workspaces, and Copilot-style responses. The real test is whether enterprises can manage permissions, audit trails, and Copilot Credits before agents start acting across work data.
Microsoft’s June Patch Tuesday Is a Windows Patching Priority List
Microsoft’s June 2026 Patch Tuesday fixes more than 200 vulnerabilities, including publicly disclosed Windows, BitLocker, and HTTP.sys flaws. The useful question is not whether to patch, but which systems should move first.