» Tag
microsoft
15 postsMicrosoft Patches Certighost Flaw Enabling Domain Controller Impersonation
Microsoft patches Certighost (CVE-2026-54121), an AD CS flaw letting low-privileged users forge Domain Controller certificates and hijack domains.
Microsoft's AI Bug Hunt Tripled CVEs: The Data Behind It
Microsoft's July 2026 patch hit 1150 CVEs, 3x the prior baseline. Public CVRF data reveals how AI-driven bug hunting also reshaped severity.
TypeScript 7 Release Candidate Arrives With Go-Based 10x Speed Boost
Microsoft's Go-based TypeScript 7 release candidate is here. See how the VS Code team migrated and the real-world speed gains from parallel compilation.
CommitBrief — AI code reviews, right in your terminal
A provider-agnostic, local-first CLI that reviews your staged changes, a historic range, or a whole GitHub pull request. Zero telemetry, no server. Free and open source.
commitbrief.comMicrosoft Secure Boot Flaw Persisted for 13 of Its 14 Years
ESET researchers find a Secure Boot vulnerability that went unpatched for 13 years, letting old signed shims bypass UEFI firmware protection.
Microsoft and Wiz's bug hunters detect over 90% of vulnerabilities
Microsoft and Wiz have developed AI systems for detecting software vulnerabilities. MDASH and Atlas stand out with their high success rates.
Hacker with a vendetta against Microsoft reveals new zero-day exploit
Nightmare Eclipse has unveiled ShieldBreak, a new zero-day exploit granting SYSTEM privileges on Windows systems.
Microsoft Launches AI Cybersecurity Model and Defense Platform
Microsoft introduces a new AI cybersecurity model and defense platform aimed at reducing costs.
Microsoft's GDID Tracker: No Off Switch in Windows 11
Microsoft's GDID tracker in Windows 11 monitors user identities, raising privacy concerns.
From AKS Node Root Vulnerability to Microsoft Copilot Hijack
The connection between the AKS node root vulnerability and Microsoft Copilot presents a critical security issue for engineers.
Microsoft Struggling with AI-Discovered Security Bugs
Microsoft is urgently addressing security vulnerabilities found by AI model Mythos. Critical bugs are prioritized, but risks from lower-severity flaws remain.