Live
Microsoft Quietly Patches Copilot Audit-Log Bypass, Keeps Customers in the Dark·MSFT +2.1%India’s CERT-In Issues High-Risk Alert as Microsoft’s August Patch Fixes Zero-Day and 110+ Other Vulnerabilities·NVDA +0.2%Microsoft 365 Copilot’s Missing Audit Logs: The Hidden Risk Behind Zero-Click Data Leaks·GOOGL +1.7%SolanaScan npm Malware Strips Wallet Keys from Windows Developer Environments·AMZN +1.1%CISA Adds Actively Exploited Trend Micro Apex One Zero-Day to KEV, Mandates Rapid Patching·MSFT +2.1%Identity Kits Breached, NFC Malware Spikes, and Microsoft Patches a Dangerous Kerberos Bug·NVDA +0.2%Airport Biometric Job Boom: Tanzania Recruits 23 Windows IT Techs for Immigration Systems·GOOGL +1.7%$329.5B OT Cyber Losses Possible as Ransomware Hits Critical Infrastructure: Dragos-Marsh Report·AMZN +1.1%Microsoft Quietly Patches Copilot Audit-Log Bypass, Keeps Customers in the Dark·MSFT +2.1%India’s CERT-In Issues High-Risk Alert as Microsoft’s August Patch Fixes Zero-Day and 110+ Other Vulnerabilities·NVDA +0.2%Microsoft 365 Copilot’s Missing Audit Logs: The Hidden Risk Behind Zero-Click Data Leaks·GOOGL +1.7%SolanaScan npm Malware Strips Wallet Keys from Windows Developer Environments·AMZN +1.1%CISA Adds Actively Exploited Trend Micro Apex One Zero-Day to KEV, Mandates Rapid Patching·MSFT +2.1%Identity Kits Breached, NFC Malware Spikes, and Microsoft Patches a Dangerous Kerberos Bug·NVDA +0.2%Airport Biometric Job Boom: Tanzania Recruits 23 Windows IT Techs for Immigration Systems·GOOGL +1.7%$329.5B OT Cyber Losses Possible as Ransomware Hits Critical Infrastructure: Dragos-Marsh Report·AMZN +1.1%

Incident Response

The latest Incident Response coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 4:52 AM
Latest Most Read Breaking
Sort
Ai Governance · Audit Logs

Microsoft Quietly Patches Copilot Audit-Log Bypass, Keeps Customers in the Dark

Security researchers have uncovered a critical blind spot in Microsoft’s Purview audit logging for Copilot: certain prompts can retrieve sensitive file contents without leaving any trace in audit...

Advertisement
Bod 22-01 · Cisa

CISA Adds Actively Exploited Trend Micro Apex One Zero-Day to KEV, Mandates Rapid Patching

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2025-54948, a critical command injection vulnerability in Trend Micro’s Apex One on-premises management console, to...

SE Security Desk·48w ago
Active Directory · Banking Security

Identity Kits Breached, NFC Malware Spikes, and Microsoft Patches a Dangerous Kerberos Bug

The cybersecurity news cycle last week delivered a triple blow that no financial institution or Windows enterprise can afford to ignore. On Monday, a Connecticut-based credit union confirmed a data...

SE Security Desk·48w ago
.net · Airport

Airport Biometric Job Boom: Tanzania Recruits 23 Windows IT Techs for Immigration Systems

A recruitment portal in Tanzania has just posted a single intake for 23 identical junior IT support roles, all stationed at Dar es Salaam’s airports and all tasked with keeping biometric...

SE Security Desk·48w ago
Citrixbleed · Critical Infrastructure

$329.5B OT Cyber Losses Possible as Ransomware Hits Critical Infrastructure: Dragos-Marsh Report

The Colonial Pipeline ransomware attack in 2021 marked a seismic shift in how we view operational technology (OT) security. Once thought safely air-gapped from the internet, OT networks controlling...

SE Security Desk·48w ago
Cisco · Cve-2025-20265

Cisco Rushes Patch for Critical 10.0 Bug Exposing Firewall Managers to Pre-Auth Shell Attacks

Cisco released an emergency software update Thursday for a maximum-severity vulnerability that allows unauthenticated attackers to seize full control of Secure Firewall Management Center (FMC)...

SE Security Desk·48w ago
Defender · Defense In Depth

Defender’s Limits Exposed: A Practical Guide to Windows 11 Security Layers

When a Windows 11 machine becomes infected with a stubborn Trojan, users often turn to Microsoft Defender – and just as often, they find it can’t finish the job. This real-world frustration,...

SE Security Desk·48w ago
Active Directory · Azure Security

Microsoft's 111-CVE August Patch Tuesday Forces CISA Emergency Directive as Kerberos Zero-Day Looms

Microsoft released one of its heaviest Patch Tuesday updates in months this August, shipping fixes for 111 security vulnerabilities and setting off a chain reaction that includes a public zero-day...

SE Security Desk·48w ago
cve_2024_8894_siemens.jpg
Buffer Overflow · Cisa

CVE-2024-8894: Siemens COMOS Vulnerability – Patch ODA Drawing Flaw Before It's Exploited

{ "title": "CVE-2024-8894: Siemens COMOS Vulnerability – Patch ODA Drawing Flaw Before It's Exploited", "content": "A critical memory corruption flaw in a widely used third-party graphics...

SE Security Desk·49w ago