Security researchers have discovered a sophisticated phishing campaign that exploits Microsoft 365’s Direct Send feature, allowing attackers to send deceptive emails without authentication to steal user credentials. Since May 2025, this technique has targeted over 70 organizations across multiple industries in the U.S., posing a significant threat to enterprise email security. In Exchange Online, the…
Cybersecurity researchers have discovered critical vulnerabilities that affected hundreds of home and enterprise printers from the hardware manufacturer Brother. Security firm Rapid7 found that eight security flaws are affecting multifunction printers. Specifically, Rapid7 researchers have found eight serious vulnerabilities that affected 689 models of Brother devices, including printers, scanners, and label makers. These flaws also…
In this episode of First Ring Daily, Brad Sams and Paul Thurrott discuss a recent report suggesting that Microsoft is struggling to sell its Copilot AI to enterprise customers due to the viral success of OpenAI’s ChatGPT, which recently crossed 3 million paying business users.
Microsoft announced this morning the latest advancements in its Windows Resiliency Initiative (WRI). The company has detailed new tools to support resiliency on the Windows platform, including quick machine recovery, Microsoft Connected Cache, and more. Last year, Microsoft announced the Windows Resiliency Initiative (WRI) as a strategic effort to embed resilience and security directly into…
Microsoft has announced that the hotpatching feature is now enabled by default for all new Windows quality update policies created through Microsoft Intune. This new feature should help organizations improve security compliance and reduce downtime for Windows devices. Hotpatching is a Windows update feature that allows certain updates (especially security patches) to be applied without…
“I ate lunch five times this week for the first time in two years.” This unlikely customer quote captures what makes Reclaim AI feel revolutionary. It isn’t that it adds something new to your calendar — it’s that it makes your existing one finally work the way it should. Reclaim, founded by Henry Shapiro and…
Microsoft Defender for Identity now supports domain-based scoping for Active Directory (AD) in public preview. This new feature allows SOC analysts to selectively define which AD domains fall within their monitoring scope to enhance focus and reduce noise. As organizations expand, their identity environments become increasingly complex, making it harder for security teams to manage…
Microsoft has announced updates to its Windows 10 Extended Security Updates (ESU) program. Starting today, organizations can enroll through the Microsoft Volume Licensing Program, with enrollment via Cloud Service Providers opening on September 1. Microsoft plans to end support for Windows 10 on October 14, 2025. After this date, the company will no longer provide…
Microsoft Entra Identity Secure Score provides an easy-to-view dashboard of your organization’s identity security posture within Microsoft Entra ID (formerly Azure Active Directory). This blog post explains how your score is calculated, what recommendations it includes, and how organizations can use it to prioritize and implement security best practices. What is the Microsoft Entra Identity…
Microsoft has launched a new vendor ecosystem for Defender for Office 365, designed to seamlessly integrate trusted third-party email security solutions. This unified framework enhances threat protection, streamlines operations, and empowers organizations with greater visibility and control. The Microsoft Defender for Office 365 ICES vendor ecosystem addresses the growing complexity of email security by creating…
Tenable’s 2025 Cloud Security Risk Report reveals that 9% of publicly accessible cloud storage contains sensitive data, with 97% of it classified as restricted or confidential. This highlights an urgent need for IT leaders to address cloud misconfigurations, exposed secrets, and identity gaps before they escalate into security breaches. The Tenable Cloud Security Risk Report…
Last Update: Jun 23, 2025
Microsoft is set to remove legacy drivers from Windows Update as part of a major push to strengthen system security and improve compatibility. This strategic move kicks off a broader initiative aimed at delivering only the most reliable and up-to-date drivers to Windows users. How does the driver cleanup process work? Microsoft says that the…