Rabia has a master's degree in Software Engineering and she has years of experience writing professionally about Microsoft products and other technologies. Rabia has also written for OnMSFT.com as well as Windows Report. She is always up to date on the latest trends in the IT Industry and has done extensive research in the data science industry.
Microsoft has patched an issue that was breaking Windows updates when deployed via the Windows Update Standalone Installer (WUSA) from a network share. This bug hit systems running Windows 11 version 24H2 and Windows Server 2025. The Windows Update Standalone Installer (WUSA) is a built-in Windows utility that allows users to manually install update packages…
As AI agents become more embedded in daily operations, organizations are beginning to recognize the critical role of identity security in managing these digital entities. According to new research from Okta, most IT leaders still lack a mature strategy to govern non-human identities, which pose a growing risk to enterprise security. Okta conducted a global…
Microsoft has introduced Prompt Orchestration Markup Language (POML), a new open-source framework that streamlines the design and coordination of AI prompts for developers. POML is built for multi-agent systems and it enables more structured, scalable, and adaptable AI workflows. Prompt Orchestration Markup Language (POML) is an open-source framework developed to simplify the design and coordination…
Cybercriminals are evolving their tactics and now targeting even the most phishing-resistant protections like FIDO by deceiving users into downgrading their authentication. Proofpoint’s latest research details how attackers manipulate browser behavior and deploy custom phishing kits to compromise accounts that were once considered secure. Passkey (FIDO2) authentication is a modern, passwordless login method that uses…
Semperis has recently launched EntraGoat, a new open-source tool that configures an intentionally vulnerable simulation environment for Microsoft Entra ID (formerly Azure AD). It’s designed to help security teams safely explore and understand identity-based attacks in a controlled, hands-on lab setting. Modern Entra ID setups often contain hidden risks that can be easily exploited by…
Microsoft has rolled out Universal Print anywhere (also known as “pull print”) to Microsoft 365 customers worldwide. This new capability lets users send print jobs from any device and securely release them at any available printer. Microsoft 365 Universal Print is a cloud-based printing solution that allows organizations to manage their printing infrastructure through Microsoft…
Microsoft has released the August 2025 Patch Tuesday updates for all supported versions of Windows 11 and Windows 10. This time, the company fixed 107 vulnerabilities in Windows, domain controllers, SharePoint Server, Exchange Server, and other components. Microsoft has now started offering a six-month Extended Security Updates (ESU) program for customers still running Exchange Server…
As credential-based attacks surge to unprecedented levels, now driving more than one in five data breaches, IT leaders are confronting a pivotal moment in cybersecurity strategy. In 2025 alone, leaked credentials spiked by over 160%, with a single breach exposing 16 billion records from tech giants like Google and Facebook. According to new research from…
Microsoft is tackling one of the biggest workplace productivity killers—unexpected device failures. With the limited public preview of Windows 365 Reserve, employees can instantly switch to a secure Cloud PC and continue working when their primary devices are unavailable. Windows 365 Reserve addresses the challenge of maintaining employee productivity during unexpected device outages or disruptions….
A newly discovered attack method could allow hackers to crash public Windows domain controllers (DCs) worldwide and weaponize them for massive distributed denial-of-service (DDoS) attacks. SafeBreach researchers have dubbed this technique the “Win-DoS Epidemic,” and warned that it can be carried out without authentication or planting malicious code. Last week, researchers Yair and Shahak Morag…
Cyber adversaries are evolving into enterprising operators, blending stealth, speed, and AI-driven tactics to outpace traditional defenses. The CrowdStrike 2025 Threat Hunting Report exposes how these sophisticated actors exploit cloud environments, identities, and generative AI to launch cross-domain attacks. According to CrowdStrike, cybersecurity experts observed a sharp rise in sophisticated attacks, with interactive intrusions increasing…
For years, Microsoft has promoted passwordless authentication, urging Windows users to embrace secure options like Windows Hello. But new research suggests that the business version of Windows Hello may have a vulnerability, which leaves it open to sophisticated spoofing attacks. At the Black Hat conference in Las Vegas (via The Register), German researchers Tillmann Osswald…