Microsoft confirms Windows 11 security update install issues. May 2026 Security Update KB5089549 fails to install on some systems and triggers 0x800f0922 errors - https://t.co/8x6DgG2fWE
#PatchTuesday#Windows#MSIntune#Patching
Extra Extra Hear All About It - Check out the awesomeness of #MMSMOA 2026 with this Recap. You'll find a summary, attendee quotes, photos, videos, and more! https://t.co/YQ4Lo43clj
Thank you to all who made MMS 2026 a huge success. We are now in full swing for #MMSMidway Edition in San Diego from October 25-28.
Register ASAP - https://t.co/11ShrT3aHv
#MSIntune #ITpros #Windows #ConfigMgr #PowerShell #Microsoft
🚨 More than 2,000 attacker IPs worldwide are exploiting cPanel CVE-2026-41940 to deploy the Filemanager backdoor.
The campaign, linked to Mr_Rot13, enables credential theft, ransomware, cryptomining, botnet activity, and persistent SSH access, with infrastructure tied to low-detection activity dating back to 2020.
Read: https://t.co/qYRrRUF9Nl
Have you seen this click-through interactive guides for Microsoft Intune? It's quite useful for advanced learning.
https://t.co/DFACd497Ve
#MSIntune#Demo
Controlled Configuration for Microsoft Defender antivirus settings is coming to Intune.
Microsoft describes it as an extension of Tamper Protection (AKA v2 :) ?) , with cloud delivered policy (MMP-C) becoming the source of truth.
That means Defender settings managed from Intune or Microsoft Defender for Endpoint security settings management should be better protected against local changes. This is a big shift in how Defender settings are protected and enforced.
Read the blog to find out more!
https://t.co/PMbMIpBpTw
#Intune #MSIntune #Defender
🚨 WARNING: The official JDownloader website was compromised earlier this week to distribute malicious Windows and Linux installers that deployed Python-based malware on infected systems.
The supply chain attack impacted users who downloaded installers from the site between May 6 and May 7 via the “Download Alternative Installer” links on Windows or the Linux shell installer.
What happened:
🔴Attackers breached the JDownloader site via an unpatched security flaw.
🔴Attackers then modified JDownloader download links to point to malicious payloads
🔴The Windows malware deployed a heavily obfuscated Python-based RAT framework
@thomasklemenc found that the Windows malware deployed a Python RAT that can execute attacker-supplied Python code remotely.
BleepingComputer's analysis of the Linux installer also revealed injected code that downloaded additional malware, installed a SUID-root launcher, and disguised the payload as /usr/libexec/upowerd.
Windows Hotpatch lets you deploy security updates without rebooting devices every Patch Tuesday. We published a quick guide on how to configure it with Microsoft Intune.
Take a look:
https://t.co/AW8aGfcOWI
#MSIntune#WindowsAutopatch#Hotpatch#Windows
The Bald and the Bearded (Harjit & Patrik) are back with raw, unfiltered vibes straight from MVP Summit at Microsoft HQ!
We’re diving deep into:
1. The electric energy of 1,600+ MVPs + Product Teams in one place
2. Why community hits different when you’re bumping into legends everywhere
3. Robopack & SoftwareCentral magic: Automated packaging, Tenant Manager, drift control & why it’s a total game-changer for Intune admins
4. The big tech shifts happening right now (layoffs, reskilling, cloud reality checks)
5. Pro-level AI prompting secrets so you stop getting “Swedish meatballs” results 😂
If you’re in M365, Intune, or the broader Microsoft ecosystem, this one’s packed with laughs, insights, and real talk you don’t want to miss!
👉 Watch now: https://t.co/wwQUaOeg06
#DebuggedDialogs #MVPbuzz #Robopack #Copilot #MSIntune #TechTalks #BaldAndBearded #TenantManager @PatrikWennberg
“What about app patching?”
This came up in a session at #MMSMOA today! App patching shouldn’t be a guessing game.
Automate it with Robopack!
Check it out: https://t.co/9HDvrfJ7xz
#MSIntune#Robopack@_Robopack#Patching
🚨 Warning: Microsoft Defender is wrongly flagging some DigiCert certificates as Trojan:Win32/Cerdigent.A!dha, triggering widespread false positives on Windows systems.
Admins report certificates being removed from the Windows trust store after recent Defender signature updates.
What’s happening:
🔴 Two DigiCert root certificates flagged as malware
🔴 Some systems remove certs from the AuthRoot trust store
🔴 Detection added in April 30th Defender signature updates
Microsoft has released fixes in Security Intelligence updates version 1.449.430.0.
The issue comes shortly after a DigiCert breach where attackers gained access to support systems and code-signing certificates.
If you're seeing Trojan:Win32/Cerdigent.A!dha alerts, update Defender signatures immediately.
What's new in #MSIntune - April 2026.
Highlights include:
- Enhancements to device management and policy controls
- Updates that improve security posture and compliance
- Continued focus on simplifying admin workflows
Read more:
https://t.co/AJMkeuy36J
From full-site to file-level, Microsoft 365 Backup now supports granular browse and restore for OneDrive and SharePoint.
Learn more: https://t.co/Kdn99byk6w
.@Microsoft is enabling user-initiated provisioning for Windows 365 Reserve, allowing employees to spin up cloud PCs on demand while IT maintains policy control.
See how cloud PC provisioning is evolving 👇
#Windows365#CloudComputing#ITOps
https://t.co/9msH2w4jIf