Blog

Security hero image

Microsoft to Close Conditional Access Loophole in Entra ID Sign‑Ins

Microsoft has announced a major update to Conditional Access (CA) enforcement in Microsoft Entra ID. This upcoming change closes a long-standing loophole and ensures security measures are applied consistently across all sign-ins. Currently, Microsoft Entra ID Conditional Access policies set to apply to “All resources” may not always be enforced in certain situations. This can…

View Article
Windows 11 2022 Update

Researchers Disclose Design Flaws in Windows 11 Administrator Protection

Microsoft has quietly patched multiple flaws in Windows 11’s Administrator Protection feature after Google researchers showed the original design could be bypassed. These flaws could have allowed attackers to obtain administrator privileges on affected systems without user interaction. What is Windows 11 Administrator Protection? Administrator Protection is a security feature in Windows 11 designed to…

View Article
Cloud Computing

Exchange Online Gets Graph API-Based Message Trace Support in Preview

Microsoft has rolled out Message Trace support via the Microsoft Graph API in public preview for commercial customers. The update delivers a modern, RESTful interface that lets administrators trace email messages end-to-end across Exchange Online with greater consistency and control. In Exchange Online, the Message Trace feature provides administrators with a way to follow the…

View Article
Hero approved Microsoft 365

Microsoft Rushes Out Emergency Update to Patch Office Zero-Day Flaw

Microsoft has released emergency out-of-band Office security updates to patch a critical Microsoft Office vulnerability that is already under active exploitation. This flaw (tracked as CVE-2026-21509) is being used by attackers in real-world attacks to bypass built-in security protections. The zero-day bug (CVE-2026-21509) is a high‑severity security feature‑bypass flaw in Microsoft Office that originates from…

View Article
Microsoft Security image

Microsoft Begins Phasing Out RC4 in Kerberos to Block Credential-Cracking Attacks

Microsoft is rolling out an important security change to protect Windows environments from a newly exposed Kerberos vulnerability that could let attackers exploit weak RC4 encryption. The company has urged organizations to act quickly as domain controllers move toward stronger AES‑based encryption to prevent potential authentication risks. The security flaw (CVE‑2026‑20833) is a Kerberos information‑disclosure…

View Article
Programming-code

Microsoft AI Shell: The Next Evolution of the Admin Command Line

Microsoft AI Shell brings an AI‑assisted, conversational experience to your terminal. It runs as a standalone CLI (aish) or as a sidecar in Windows Terminal/PowerShell/iTerm2 (macOS), where it can suggest commands, fix errors, and even insert code directly into your shell. It ships with AI agents for Azure OpenAI (GPT‑4o) and Copilot in Azure, with…

View Article
Cloud Computing

Microsoft Purview Gets AI Tool to Accelerate Data Breach Investigations

Microsoft has made its Purview Data Security Investigations solution generally available for commercial customers. The new tool is built to expose hidden data risks and reduce investigation timelines from weeks to just hours. According to Microsoft, traditional data investigations often require manual, file‑by‑file reviews, which are no longer practical due to the scale of data…

View Article
copilot studio agents hero approved

AI Agents vs. Identity: Why Entra ID Is Your New Control Plane

Last Update: Mar 19, 2026

The rise of AI agents is forcing a fundamental rethink of enterprise security. Agents are autonomous, task-oriented digital workers that are no longer confined to experimental labs or niche use cases. Agents are being embedded into Microsoft 365, Windows, and Azure, where they draft emails, summarize meetings, automate reports, and interact with data on behalf…

View Article
Microsoft logo

New Microsoft Graph UTCM APIs Reduce Microsoft 365 Configuration Drift

Microsoft has introduced new Unified Tenant Configuration Management (UTCM) APIs in public preview through Microsoft Graph. These APIs enable organizations to consistently control, manage, and monitor configuration settings across one or multiple Microsoft 365 workloads. Why is configuration drift a growing problem in Microsoft 365 tenants? The new UTCM APIs address the problem of configuration…

View Article
Windows 11 approved hero 1

New Windows 11 Patch Fixes App Freezes Linked to Cloud Storage

Microsoft has released new out-of-band updates to fix a Windows 11 bug that caused applications to freeze when saving files to cloud storage services. The issue was introduced by the January 13 security update and has affected users relying on OneDrive, Dropbox, and similar platforms. Last week, Microsoft acknowledged that this bug caused the classic…

View Article
Windows App Development CLI

First Ring Daily: Hold the Command Line

On this episode of First Ring Daily, Brad Sams and Paul Thurrott discuss Microsoft releasing the Windows App Development CLI, a new Command Line Utility for Windows app developers.

View Article
Security

Mid-Market Organisations Shift Cybersecurity In-House Amid Rising Costs and Vendor Distrust

A new study reveals that UK mid-market organisations are increasingly reducing their reliance on external cybersecurity vendors and shifting responsibility to in-house teams. This move is driven by mounting cost pressures and declining trust in providers, and it raises concerns about whether these organisations can sustain long-term cyber resilience. IT services provider Advania conducted a…

View Article
Go to page