Security News

Week in review: 18 free Microsoft Azure cybersecurity resources, K8 vulnerability allows RCE
2023-09-24 08:00

An inside look at NetSPI's impressive Breach and Attack Simulation platformIn this Help Net Security interview, Scott Sutherland, VP of Research at NetSPI, delves into the intricacies of their Breach and Attack Simulation platform and discusses how it offers unique features - from customizable procedures to advanced plays - that help organizations maximize their ROI. How companies can take control of their cybersecurityIn this Help Net Security interview, Baya Lonqueux, CEO at Reciproc-IT, discusses the evolving cybersecurity landscape and the essential skillsets needed for teams working in this field. Critical Trend Micro vulnerability exploited in the wildTrend Micro has fixed a critical zero-day vulnerability in several of its endpoint security products for enterprises that has been spotted being exploited in the wild.

Microsoft Copilot rolls out with Windows 11 22H2 update next week
2023-09-21 17:23

Microsoft will start rolling out its Copilot digital assistant to all customers next week, on September 26th, together with a host of new AI-powered capabilities as part of a new Windows 11 22H2...

18 free Microsoft Azure cybersecurity resources you should check out
2023-09-20 04:30

Here's a list of free Azure cybersecurity resources that Microsoft offers to anyone interested in learning. Prepare for cloud security by using the Microsoft Cloud Adoption Framework for Azure.

Microsoft to start retiring Exchange Web Services in October 2026
2023-09-19 16:28

Microsoft said today that the Exchange Web Services API for Exchange Online and Office 365 will be retired in approximately three years. These resources can be retrieved from various sources, including Exchange Online, Exchange Online as part of Office 365, and on-premises editions of Exchange.

Microsoft AI Researchers Accidentally Expose 38 Terabytes of Confidential Data
2023-09-19 09:31

Microsoft on Monday said it took steps to correct a glaring security gaffe that led to the exposure of 38 terabytes of private data. "The exposure came as the result of an overly permissive SAS token - an Azure feature that allows users to share data in a manner that is both hard to track and hard to revoke," Wiz said in a report.

White Hat Hackers Discover Microsoft Leak of 38TB of Internal Data Via Azure Storage
2023-09-19 06:57

Microsoft has patched a vulnerability that exposed 38TB of private data from its AI research division. The repository held 38TB of private data, secrets, private keys, passwords and the open-source AI training data.

Microsoft worker accidentally exposes 38TB of sensitive data in GitHub blunder
2023-09-18 18:03

A Microsoft employee accidentally exposed 38 terabytes of private data while publishing a bucket of open-source AI training data on GitHub, according to Wiz security researchers who spotted the leaky account and reported it to the Windows giant.This is despite Wiz claiming the leaky data bucket had private keys, passwords, and over 30,000 internal Microsoft Teams messages, as well as backup data from two employees' workstations.

Microsoft Paint finally gets support for layers and transparency
2023-09-18 17:37

Microsoft is finally rolling out support for layers and image transparency to the Paint image editor application 38 years after its launch. "You can now add, remove, and manage layers on the canvas to create richer and more complex digital art. With layers, you can stack shapes, text, and other image elements on top of each other," Grochocki said.

Microsoft leaks 38TB of private data via unsecured Azure storage
2023-09-18 15:18

The Microsoft AI research division accidentally leaked dozens of terabytes of sensitive data while contributing open-source AI learning models to a public GitHub repository. Microsoft linked the data exposure to using an excessively permissive Shared Access Signature token.

Google Chrome tests Microsoft Edge-like Read Aloud feature
2023-09-16 19:45

Google Chrome is set to enhance its user experience on the desktop by adding a "Read aloud" function, currently available for testing in the Canary version. A notable feature of Read Aloud is the adjustable playback speed, allowing users to control the rate at which articles are read aloud.