Live
The Keyboard That Won’t Type: 7 Checks to Try on Windows Before You Buy a Replacement·MSFT +2.1%Love and Deepspace gets an official PC emulator recommendation: MuMuPlayer with Vulkan·NVDA +0.2%Full-Screen Fakeout: The Browser Scam Posing as a Windows Update—and the One Shortcut That Kills It·GOOGL +1.7%Microsoft Edge's Read Aloud Is the Best Windows Text-to-Speech Tool You're Not Using·AMZN +1.1%Ditch the Minimalist Desktop: How Controlled Clutter on Windows Can Speed Up Your Workflow·MSFT +2.1%CISA Sounds Active Exploit Alarm for SharePoint, Check Point — Immediate Patching Required·NVDA +0.2%Block’s Buzz Lands on Windows: The Collaboration App That Treats AI Agents as Co-Workers·GOOGL +1.7%Why Your Microphone Won’t Work on Windows, iPhone, or Android (and How Every Layer of Permission Blocks It)·AMZN +1.1%The Keyboard That Won’t Type: 7 Checks to Try on Windows Before You Buy a Replacement·MSFT +2.1%Love and Deepspace gets an official PC emulator recommendation: MuMuPlayer with Vulkan·NVDA +0.2%Full-Screen Fakeout: The Browser Scam Posing as a Windows Update—and the One Shortcut That Kills It·GOOGL +1.7%Microsoft Edge's Read Aloud Is the Best Windows Text-to-Speech Tool You're Not Using·AMZN +1.1%Ditch the Minimalist Desktop: How Controlled Clutter on Windows Can Speed Up Your Workflow·MSFT +2.1%CISA Sounds Active Exploit Alarm for SharePoint, Check Point — Immediate Patching Required·NVDA +0.2%Block’s Buzz Lands on Windows: The Collaboration App That Treats AI Agents as Co-Workers·GOOGL +1.7%Why Your Microphone Won’t Work on Windows, iPhone, or Android (and How Every Layer of Permission Blocks It)·AMZN +1.1%

Video Conference Security

The latest Video Conference Security coverage — news, analysis, and updates from the WindowsNews.AI desk.

13 stories in view AI assisted desk updated 9:55 PM
Latest Most Read Breaking
Sort
Windows Security · Tech Support Scams

Full-Screen Fakeout: The Browser Scam Posing as a Windows Update—and the One Shortcut That Kills It

A surge of full-screen browser scams is tricking Windows users into calling fake support lines or downloading malware by impersonating legitimate Windows Update screens. Real updates never appear through a browser pop-up, don’t show phone numbers, and don’t demand immediate action. The article details how to recognize the scam, escape safely using keyboard shortcuts, verify actual system updates, clean any leftover browser permissions or malicious downloads, and lock down protections for the future.

Security

CISA Sounds Active Exploit Alarm for SharePoint, Check Point — Immediate Patching Required

CISA added two critical vulnerabilities—CVE-2026-50522 in Microsoft SharePoint and CVE-2026-16232 in Check Point SmartConsole—to its Known Exploited Vulnerabilities catalog on July 22, indicating active exploitation. Both flaws can lead to remote code execution or authentication bypass, threatening enterprise collaboration and network security. Organizations must apply vendor patches immediately and investigate systems for signs of prior compromise.

Security Desk·41m ago ·5 min
Security

Get Ready: Microsoft's KMS Hosts Will Soon Require TPM Hardware Attestation

Microsoft is adding TPM-based attestation checks to Windows Server 2025's KMS activation, previewing a mandatory hardware security requirement for the next LTSC release. Starting August 2026, admins can verify host readiness using slmgr and PowerShell, giving them time to upgrade unsupported servers before the upcoming deadline.

Security Desk·1h ago ·5 min
Security

SMS MFA Dies in Microsoft Entra by 2027—Here’s Your Migration Roadmap

Microsoft will stop providing SMS and voice MFA for Entra ID on February 1, 2027, forcing affected users to register a passkey before they can sign in. This article explains the timeline, the security reasons behind the shift, and provides a practical migration plan for IT administrators, including device readiness, passkey selection, and the option to use customer-managed telecom providers.

Security Desk·4h ago ·5 min
Advertisement
Zoom · CVE-2026-53412

Zoom for Windows Update Urgent: Unauthenticated Attackers Could Take Over Your Account

Zoom has released an urgent security update for its Windows clients to fix CVE-2026-53412, a critical flaw with a CVSS score of 9.8 that could allow unauthenticated remote attackers to take over user accounts. The patch also addresses three other high-severity issues. All Windows users and administrators should apply the update immediately.

SE Security Desk·5h ago
Windows 11 · BitLocker

Windows 11 Pro’s Best-Kept Secret: A Free Encrypted Vault Using BitLocker and VHDX

Windows 11 Pro, Enterprise, and Education users can create a free, password-protected encrypted vault by combining a virtual hard disk (VHDX) with BitLocker—no third-party software needed. The article explains how to build one, who can use it, what it protects, and its limitations.

SE Security Desk·5h ago
Microsoft · Windows

Microsoft Acknowledges Windows Device ID That Helped Catch a Hacker—And It Can’t Be Turned Off

Microsoft confirmed that Windows assigns a persistent Global Device Identifier (GDID) that can track installations across services and networks, even behind a VPN. The identifier recently helped link VPN-routed criminal activity to an alleged hacker, raising privacy concerns because users have no way to disable it. This article explains what the GDID is, its implications, and what you can do to limit data linkage without breaking Windows.

SE Security Desk·7h ago ·1 views
Microsoft Lifecycles · Entra ID Security

October 2026 Microsoft Deadline Storm: What IT Must Do Before Office, Publisher, and Entra ID Vanish

Microsoft has packed multiple product retirements and support transitions into October 2026, including the end of Office LTSC 2021, the permanent removal of Publisher, the retirement of legacy Entra ID risk policies, and servicing deadlines for several Windows 11 editions. This article explains what each deadline means, which users are affected, and provides a prioritized action plan to secure identities, preserve files, and upgrade systems before the cutoffs.

SE Security Desk·11h ago
CVE-2026-64191 · Linux Kernel

A Forgotten Linux Test Driver Hid an Out-of-Bounds Bug for 16 Years. Here's What WSL 2 Users Must Do

A newly disclosed Linux kernel vulnerability (CVE-2026-64191) in the I2C stub test driver can cause out-of-bounds memory access, but only affects systems that explicitly load the module—such as custom WSL 2 kernels or hardware-development setups. The fix is already in stable kernels back to 5.10. Most Windows users are unaffected, but developers using custom Linux environments should check their configuration and apply updates promptly.

SE Security Desk·13h ago
CVE-2026-64206 · Bluetooth Security

Linux Bluetooth Deadlock Fix Lands—Windows Hosts with Linux Guests Must Act

The Linux kernel patch for CVE-2026-64206 fixes a Bluetooth L2CAP deadlock that can hang connection teardown. While native Windows systems are unaffected, anyone running Linux under Windows—through WSL2, VMs, or managed fleets—should update those Linux kernels immediately. The fix is already available in stable releases 6.18.39, 7.1.4, and upstream 7.2-rc3.

SE Security Desk·13h ago
CVE-2026-64190 · Linux Kernel

WSL 2, Azure Linux VMs Face Crash Risk from CVE-2026-64190 Kernel Flaw — Update Now

CVE-2026-64190 is a Linux kernel vulnerability in the Team network driver that can cause a kernel crash during a mode change if traffic is transmitted simultaneously. The fix requires updating the kernel; Windows users running WSL 2, Hyper-V, or Azure Linux VMs should check for and apply vendor patches.

SE Security Desk·13h ago
CVE-2026-64205 · Linux Kernel

CVE-2026-64205: How a Linux Kernel Bug in Intel’s SMBus Driver Can Hang Your System—and How to Fix It

A newly disclosed Linux kernel flaw (CVE-2026-64205) in the Intel i801 SMBus driver causes persistent hangs and livelocks when an error path incorrectly clears hardware state. The bug affects kernels 6.3 through unfixed versions and is corrected in stable releases 6.18.39, 7.1.4, and 7.2-rc1. Linux admins should update immediately and verify that “SMBus is busy” log floods disappear post-patch.

SE Security Desk·13h ago
CVE-2026-64187 · Linux Kernel Vulnerability

Why a Malformed XFS Disk Can Crash Your Linux VM—and the Fix for CVE-2026-64187

A newly disclosed Linux kernel vulnerability, CVE-2026-64187, can cause a NULL pointer dereference and instant crash when mounting XFS filesystems with corrupted journals. While home Windows users face little direct risk, anyone running Linux virtual machines, WSL with XFS volumes, or managing Linux servers must update their kernels promptly to avoid denial-of-service disruptions.

SE Security Desk·13h ago