Cloudflare's security team spent the last few weeks testing Anthropic's Mythos against fifty of our own repositories. What we learned about offensive AI, why faster patching is the wrong reaction, and what the architecture around vulnerabilities has to look like next. https://t.co/RSrRtIhgaV
#AI adoption is outpacing security. A new @DelineaInc report shows identity gaps and unseen non-human identities are creating systemic risk, making governance and visibility critical in agentic environments. #cybersecurity#CISO#infosec https://t.co/W0JC4mH9o4
One thing I keep hearing is people are not sure of where to start with AI, what to learn around the Microsoft ecosystem with copilots, agents, IQ etc. I've done a lot of videos recently but wanted to create a little bit of a clearer path for those who need a bit more order.
I also created https://t.co/p6AgVGSFPG if you want an interface for the curated AI path. No adverts, no fluff, no sponsors. Just an easy experience to utilize.
The key content:
AI for Anyone - 30 Minute Introduction to AI — https://t.co/TviaLnrlSm
RAG, Semantic Search and More — https://t.co/cAJtxndwfW
Getting Started with M365 Copilot — https://t.co/5FvrEu4Pip
Copilot Cowork Overview — https://t.co/0X5sWw0lge
Picking Your Agent Builder Solution — https://t.co/BwCoIni5Wg
Agent 365 Overview — https://t.co/9aDZ33NwDG
Microsoft IQ Overview — https://t.co/PnAfkNy0E8
Work IQ Overview — https://t.co/nKn2bXDhb4
Foundry IQ Overview — https://t.co/cGokdyzjPs
Fabric IQ Overview — https://t.co/GcsE8m0A0H
Getting Started with GitHub Copilot CLI and Work IQ — https://t.co/p3fWe7gwL3
Choosing Your First AI Application — https://t.co/wJiNyRtwkP
MCP or A2A — https://t.co/EmbFmUaCuA
What is Agentic AI — https://t.co/jTm91DK1Tw
Generative AI Security Top Considerations — https://t.co/8uHf5Sa27k
#ai #artificialintelligence #copilot #m365copilot #copilotstudio #microsoftfoundry #microsoft
Your Conditional Access policies probably have gaps you don't know about
I talked to @emiliensocchi about how he built an engine that tests 250 MILLION sign-in combos in <20 minutes.
Runs Offline. No Throttling. No Limits.
Watch at https://t.co/iW85ihRNtX
This is how we assess your fleet for the Secure Boot 2026 certificate transition. Five steps. One session. Full picture.
Connect. Compare. Classify. Verify. Report.
Works with SCCM and Intune. Covers Dell, HP, and Lenovo. Nothing to install, nothing changes in your environment.
https://t.co/8xwlycm4VO
#SecureBoot #UEFI #Windows #CyberSecurity #Intune #SCCM #Firmware #BIOS
New video exploring how to decide the right agent builder solution and platform for your next agent; Agent Builder, Copilot Studio or Microsoft Foundry. We look at a range of dimensions to help make the decision.
https://t.co/fG4Mxr2t8B
00:00 - Introduction
00:17 - Quick way to decide
02:02 - Organizational maturity progression
05:19 - Building agents
05:39 - Agent Builder, Copilot Studio and Microsoft Foundry
06:39 - Code complexity
10:23 - Model selection
13:01 - Deployment target
14:27 - Lifecycle management
16:09 - Observability
17:43 - Evaluations
21:13 - Safety
22:39 - Tools and knowledge
24:04 - Multi-agent
25:29 - Memory
27:11 - Audience
27:42 - Cost control
29:18 - Summary, box meals, restaurants and really good kitchens
31:09 - Close
#ai #artificialintelligence #copilot #copilotstudio #microsoftfoundry #m365
⚠️ CISA Urges Securing Microsoft Intune Following Stryker Breach
Source: https://t.co/TTevBy8WEA
CISA has issued an urgent alert urging organizations to harden their endpoint management system configurations following a cyberattack on Stryker Corporation, a U.S.-based medical technology firm, on March 11, 2026.
The cyberattack against Stryker Corporation highlights a growing trend of threat actors targeting endpoint management platforms, particularly Microsoft Intune, to gain privileged access across enterprise environments.
In response to the breach, CISA is urging all organizations to implement Microsoft’s newly released best practices for securing Microsoft Intune.
#cybersecuritynews
🚨 ICYMI
I demoed how to secure AI apps & agents across M365.
Data exfiltration despite DLP. User-built agents. Hidden AI risks in self-service apps.
Safe AI adoption needs guardrails early.
No theory - just real config.
https://t.co/ne9IxEQUfY
#AISecurity#Purview#ShadowAI
If I told you there was a digital forensics and IR platform that gives security teams deep visibility into Windows, macOS, and Linux endpoints, would you believe me?
What if I said it’s open source, lightweight, scalable, and designed for flexible investigations?
Welcome to Velociraptor 101!
Download Rapid7's Velociraptor DFIR - https://t.co/1GPHxHwxPe
Velociraptor 101:
Rapid Windows Endpoint Investigations with Velociraptor & KAPE - https://t.co/PAzqnHANqD
AASLR: Playing with Velociraptor! - https://t.co/q6d92bgDpM
IR plans are often too long and unnecessarily complex.
Let’s simplify your Incident Response Plan and focus on the phases that matter most: identification, containment, and eradication.
Read and download The Infosec Survival Guide: ORANGE BOOK - Incident Response here -- https://t.co/tjjri1eACw
Order your FREE copy of The Infosec Survival Guide: ORANGE BOOK - Incident Response here - https://t.co/wDtQkFPgPa
Learn more from Patterson C.:
Do it, do it NOW! - A Pre-Incident Checklist - https://t.co/VUXCLp3SnA
New video diving into Agent 365 and Agent ID.
https://t.co/AsfHAXTHfe
00:00 - Introduction
00:16 - Challenges with agents today
01:55 - Key agent needs
02:59 - Employee needs
03:27 - Identity and Entra
06:12 - Data and Purview
07:28 - Threat protection and Defender
08:04 - Productive with M365
08:48 - Agents and types
11:12 - Why a new type of identity is needed
12:38 - Agent ID
13:21 - Science bit
13:41 - Blueprints
18:05 - Consent and blueprint service principals
20:04 - Creating Agent IDs
21:06 - Sponsors, owners and managers
21:55 - Often done for you
22:27 - Any agent platform can use Agent ID
22:47 - Agent User
26:07 - How authentication works
29:39 - Entra for agents
35:54 - Purview for agents
37:41 - Defender for agents
39:40 - A365 for productivity and Work IQ
40:47 - Registry
44:52 - Collections
46:17 - Summary
47:37 - Close
#microsoft #ai #entraid
I recently came across a very cool tool called OpenTrace. It’s an open-source, visualized route tracing tool with a native cross-platform GUI for Windows, Linux, and macOS.
What makes it fun is that you can enter an IP or domain and actually see how traffic flows across nodes, step by step. It supports MTR-style tracing, custom DNS resolvers including DNS and DoH, CLI-triggered traces, local MMDB databases, and multiple languages. The UI feels familiar but adds much clearer visuals and explanations, which makes network paths far easier to understand.
https://t.co/CQxy26odKa
I am not ashamed of my journey. My life will be a testimony.
But if I could offer a word of advice to any freshman, sophomore or junior athlete in high school it would be to just listen bro. All them adults in your life not just talking to talk. They been here longer. They done bumped they head already. They trying to save you from doing the same thing.
Do not make the mistake of thinking your talent alone is enough. It’s not. Talent open doors. Character and grades keep you there. And if you already messed up, if your GPA not where it should be, if your name been in rooms for the wrong reasons… don’t quit. Keep digging. You can climb out the hole the same way you dug it.
Class of 29, 28 and 27 hear me.
Take your grades serious. Choose who you hang around wisely. Protect your name. Word spreads fast if you a crash out. Respect authority. Nobody riding for you like your parents and coaches. Work hard when nobody clapping.
Do not wait until senior year to lock in. That GPA do not lie.
I’m still figuring it out myself. I’m struggling but I know God got me.
Be intentional. Lock in early. Pray. Show up ready to work.
I’m learning the hard way that my future is being built in the small decisions I make today.
Start now.
Overnight we observed first in-the-wild exploitation of BeyondTrust across our global sensors.
Attackers are abusing get_portal_info to extract the x-ns-company value before establishing a WebSocket channel.
CVE-2026-1731
If not patched, assume compromise.
Just built a demo “monitoring matrix” for a slide in my blind spots talk.
Many orgs I’ve worked with have the same idea: “we monitor our systems, visibility is pretty good, only a few systems are not integrated yet.”
Then you put it into a simple table and the pattern is always the same: the top-left looks great. Servers and workstations send OS logs, basic auditing is enabled, some alerting exists. It feels like control.
But when you go deeper, it gets thin fast. Application logs are missing, not collected centrally, not normalized - and often there isn’t even alerting defined for them. People also rarely agree on what a “critical” application-level alert should be. That needs application owners and security to sit down and define signals. OS-level monitoring is already hard; application-level monitoring is where many programs stop.
And when you expand the coverage, it gets harder too. The further you move away from the “standard” systems, the more limits you hit: legacy systems, appliances, OT/embedded, unusual platforms, proprietary log formats, limited access, sometimes legal or organizational limits. Even if you get logs, they are often not easy to ingest and use.
Main point: “we have monitoring” is not a checkbox. It’s a spectrum - and many environments are fairly wide, but shallow.