Microsoft has rolled out an out-of-band update (KB5064489) for Windows 11 version 24H2 to fix a critical issue that prevented some Azure Virtual Machines (VMs) from booting when Virtualization-Based Security (VBS) was enabled. In addition to resolving this startup glitch, the update also includes security enhancements and improvements from the July 8 update (KB5062553). Microsoft…
Organizations are struggling with poor visibility into their software supply chains, even as 40% of CEOs rank it as their top cybersecurity concern. A new report from LevelBlue exposes how this lack of transparency, combined with escalating AI-driven threats and uneven global preparedness, is putting critical systems at serious risk. LevelBlue surveyed 1,500 respondents across…
Last Update: Jul 14, 2025
Cybersecurity researchers have discovered a critical vulnerability in Citrix’s network management devices that allows attackers to bypass multi-factor authentication and hijack user sessions. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added the flaw (dubbed CitrixBleed 2) to its Known Exploited Vulnerabilities catalog. How are attackers exploiting CitrixBleed 2 vulnerability? The security vulnerability (CVE-2025-5777)…
In this episode of First Ring Daily, Brad Sams and Paul Thurrott discuss Perplexity AI launching Comet, its new AI-powered web browser, and OpenAI planning to do the same very soon to challenge the dominance of Google Search and Google Chrome.
Microsoft has acknowledged an issue with Windows Server Update Services (WSUS) that’s blocking organizations from syncing with Microsoft Update. This problem is delaying the deployment of critical Windows updates across enterprise environments that depend on WSUS for patch management. Windows Server Update Services (WSUS) is a tool that enables IT administrators to manage the distribution…
One of the most interesting and important things coming in Windows 11 25H2 is the way Microsoft is rethinking how security tools interact with the operating system—especially antivirus and Endpoint Detection and Response (EDR) software. The current problem: Security tools get deep Windows kernel access Right now, most security tools—think CrowdStrike, Bitdefender, and others—need to…
Microsoft has announced that the hotpatching feature is now available for Windows 11 version 24H2 ARM64 devices. This feature allows security updates to be applied to a system without requiring a reboot. Microsoft introduced hotpatching support for x64 devices with Intel and AMD in April 2025. It works by directly updating the code in a…
Microsoft has released today the July 2025 Patch Tuesday updates for Windows 11 and Windows 10. This month, Microsoft fixed 130 vulnerabilities in Windows, Office, Azure, Teams, Hyper-V, Windows BitLocker, and other components, and you can also expect the usual bug fixes and quality improvements. Windows 11 has finally become the most popular version of…
Microsoft has announced the general availability of continuous migration assessments for SQL Server enabled by Azure Arc. The company has also rolled out several enhancements to help organizations simplify their cloud migration planning, offer clear cost insights, and deliver greater flexibility. Azure Arc is a service that extends Azure’s management and governance capabilities to infrastructure…
Last Update: Jan 14, 2026
This article explores the fundamentals of Group Policy Preferences, including their advantages over traditional Group Policy, common use cases, and step-by-step configuration guidance. It also addresses the ever-important security angle – we’ll provide additional guidance to ensure a safe and compliant deployment. What are Group Policy Preferences? Group Policy Preferences (GPP) are a powerful tool…
Last Update: Jul 10, 2025
Cloud security is now a top priority for IT leaders, with AI-driven threats surpassing traditional breaches as the main concern. Ekco’s 2025 survey reveals that 81 percent of IT leaders are concerned about cloud infrastructure security. Managed cloud and security services firm Ekco conducted a survey of more than 1,000 IT decision-makers. The researchers found…
Cisco has released a security patch to address a critical vulnerability in its Unified Communications Manager (Unified CM) and Session Management Edition (Unified CM SME). This security flaw could allow remote attackers to gain root access to unpatched systems. Cisco Unified Communications Manager (Unified CM) is a centralized call control platform that enables voice, video,…