Domain Security
The latest Domain Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Microsoft Caps onmicrosoft.com Emails at 100 External Recipients Per Day — Enforcement Starts October 15
Microsoft will begin throttling emails sent from the default onmicrosoft.com domain to just 100 external recipients per day, starting with trial tenants on October 15, 2025. The limit is a hard cap...
CVE-2025-53786: The Silent Hybrid Exchange Exploit That Bypasses All Cloud Defenses
Microsoft has issued an urgent warning about a high-severity vulnerability in hybrid Exchange deployments that could let attackers who breach an on-premises server silently escalate their privileges...
Maximizing Impact: How UK Charities Can Harness Microsoft 365 for Digital Transformation
Charitable organizations in the United Kingdom are in the midst of a profound digital transformation—a shift catalyzed by the adoption of cloud productivity platforms like Microsoft 365 (M365). As...
Critical Golden dMSA Vulnerability in Windows Server 2025: Analysis, Impact, and Mitigation Strategies
The evolution of Windows Server brings considerable advancements, but it also presents new opportunities and risks—none clearer than the latest revelations surrounding identity security in Windows...
CVE-2025-33073 Exploited: How Reflective Kerberos Relay Attacks Threaten Windows Security
A newly discovered vulnerability in Windows' Kerberos authentication protocol has sent shockwaves through the cybersecurity community. CVE-2025-33073, now actively exploited in the wild, enables...
CVE-2025-33071 Windows Vulnerability: Critical Patch for KDC Proxy Service Flaw
A newly discovered critical vulnerability, CVE-2025-33071, has sent shockwaves through the cybersecurity community, exposing a severe flaw in Windows' Key Distribution Center (KDC) Proxy Service...
Semperis Boosts DSP to Counter Windows Server 2025 Active Directory Risks
Semperis has taken a proactive step in enterprise security by upgrading its Directory Services Protector (DSP) platform to address a critical vulnerability in Windows Server 2025's Active Directory....
Top 10 DMARC Implementation Hurdles in Microsoft 365 and How to Solve Them
Implementing Domain-based Message Authentication, Reporting, and Conformance (DMARC) in Microsoft 365 is a critical step toward enhancing email security by preventing domain spoofing and phishing...
BadSuccessor Vulnerability in Windows Server 2025 dMSA: Protecting Your Active Directory from Critical Threats
Introduction The launch of Windows Server 2025 brought promising new capabilities for enterprise IT, notably the addition of delegated Managed Service Accounts (dMSA), designed to simplify service...
Microsoft Alerts: Windows Server 2025 Domain Controllers Face Post-Restart Connectivity Issues
Overview Microsoft has recently issued a critical warning to IT administrators regarding a significant connectivity issue affecting Windows Server 2025 domain controllers (DCs). After a system...