Microsoft has introduced a new Library Management experience in Microsoft Defender. This new feature is aimed at transforming how security analysts manage scripts and tools during live response investigations. Security analysts have long struggled with a fragmented, inefficient process for using scripts and tools during live threat investigations. Assets had to be uploaded in the…
The anticipated mass departure from VMware never materialized, but the industry is now experiencing a strategic shift as organizations reassess their virtualization roadmaps. Broadcom’s sweeping changes have prompted IT leaders to steadily diversify their infrastructure choices. CloudBolt Software released a report dubbed “The Mass Exodus That Never Was: The Squeeze Is Just Beginning.” This survey…
IT pros are already using AI to write scripts, summarize logs, and troubleshoot issues. The catch? Most workflows still involve a clumsy relay race: copy text from a remote session, paste it into a chatbot, copy the answer back, then repeat. All while hoping you don’t leak something sensitive into chat history. Marc-André Moreau, CTO…
Microsoft is retiring the -Credential parameter in the Exchange Online PowerShell module, effective for all versions released after June 2026. This change marks a shift toward modern, more secure authentication methods for administrators. In the Exchange Online PowerShell module, the -Credential parameter lets administrators pass a PSCredential object (username and password) to the Connect-ExchangeOnline cmdlet…
As AI adoption surges toward a trillion annual enterprise transactions, IT leaders now face an attack surface expanding faster than traditional security models can contain. With nearly 40% of AI activity being blocked due to data‑exposure risks, the stakes for governing AI securely have never been higher. According to Zscaler ThreatLabz’ 2026 AI Security Report,…
The US Cybersecurity and Infrastructure Security Agency has warned about a critical remote code execution (RCE) vulnerability in Microsoft Configuration Manager (ConfigMgr/SCCM). The vulnerability has rapidly escalated into a significant national‑level concern following the release of public exploit code. Microsoft Configuration Manager is an enterprise management platform that helps organizations centrally deploy software, enforce security…
Microsoft Sentinel is getting new updates aimed at improving how security teams understand and investigate risk. The latest changes add new connectors, clearer analytics, and more integrated insights to help teams work more efficiently across their environments. Microsoft has introduced new out-of-the-box connectors to simplify the onboarding of security data across cloud, SaaS, and on-premises…
In this episode of First Ring Daily, Brad Sams and Paul Thurrott discuss a recent report suggesting that Windows 11 users may soon be able to move and resize the taskbar once again. They also talk about how the upcoming Windows 11 version 26H1 will change how Microsoft ships big Windows updates.
Microsoft has begun refreshing the Secure Boot root of trust across the Windows ecosystem. The move is driven by the upcoming expiration of Secure Boot certificates first issued in 2011, which begin reaching end of life in late June 2026. Secure Boot is a foundational security feature in Windows and Windows Server. It runs before…
Microsoft’s February 2026 Patch Tuesday has arrived with a familiar-looking headline and an unusually urgent subtext. While the overall volume of fixes is typical for a February release, the number of actively exploited zero-day vulnerabilities stands out sharply this month, making this a high-priority update for enterprise environments. February 2026 Patch Tuesday at a glance…
Microsoft has officially started the clock on the retirement of Exchange Web Services (EWS) in Exchange Online, with a phased shutdown beginning in October 2026 and a hard stop scheduled for April 1, 2027. While EWS has been deprecated for years, this is the clearest signal yet that organizations still relying on it need to…
The focus shouldn’t be just on restoring AD functionality but on restoring trust ensuring the recovered environment is clean, uncompromised, and validated before reconnecting to production. Trust is the new metric for Active Directory Forest recovery Modern day Active Directory (AD) recovery isn’t just about restoring AD; it’s about restoring trust. Active Directory is still…