Most SMBs underuse Microsoft 365 (it costs time & money)
I fix that with automation & security
IT Manager | Building Micro-SaaS 🚀
Save time. Reduce risk.
FBI warning: Kali365 bypasses M365 MFA.
Your employee just handed M365 access to a hacker. MFA didn't stop it.
Kali365 serves a real Microsoft login page — no fake URLs. User authenticates. Attacker silently captures the OAuth token.
Emails. Teams. Files. All exposed.
Sold on Telegram. Anyone can run it.
https://t.co/am2xhvv1Tg
Your M365 sync will silently die on Sept 30, 2026.
If Entra Connect Sync is below v2.5.79.0 → all sync stops.
No passwords. No new users. No group updates.
It runs quietly in the background — until it doesn't.
Have you checked your version yet?
→ https://t.co/dkmAYYOrZY
No malware. No exploits. Just legitimate Microsoft tools.
Threat actor Storm-2949 is abusing Entra ID accounts to silently move through entire cloud environments and steal sensitive data from Microsoft 365 & Azure.
Living-off-the-land attacks just reached the next level.
Cyber defenders, time to lock down those admin accounts.
https://t.co/yxdkd3sQuw
Former Microsoft executive says Microsoft missed the AI wave like the internet and mobile, as Copilot scales back in Windows 11
Microsoft’s AI strategy has a serious adoption problem, and a former Microsoft exec just said the quiet part out loud.
Mat Velloso, who spent 12+ years at Microsoft and even served as Satya Nadella’s technical advisor, says Microsoft “missed the AI wave.”
The numbers explain why this hits hard.
Microsoft has pushed Copilot into Windows 11, Office, GitHub, and the taskbar. However, fewer than 3% of paying users actively use Copilot. Out of roughly 450 million Microsoft 365 users, only about 15 million are paid Copilot seats.
The same issue exists with AI PCs. OEMs added NPUs because Microsoft pushed the category, but Windows still does not have enough truly useful NPU-first features for normal people.
Microsoft is aware of the backlash, and Windows 11 is suddenly getting the fixes users wanted for years: movable taskbar, better Start controls, native UI work, driver quality improvements, and fewer pointless Copilot pushes.
Most Intune admins still repackage the entire Win32 app to fix one install script line.
Since Jan 2026: attach a PowerShell installer directly to the app metadata.
Update the script. No repackage. No re-upload.
https://t.co/nuxO7AA5ZE
@BleepinComputer So if your org is still on Windows 10 — and most are — your BitLocker recovery is still broken.
Another gentle nudge to migrate? Maybe. But not a great look when the fix is version-gated.
@CarlyleSmith@DanielatOCN Being a shop of one is exactly why you can't afford a compromised Global Admin.
One phished account = full tenant. No one to contain it, no one to recover it.
Fix: two accounts (daily driver + break-glass GA) + PIM for just-in-time elevation. Still solo. Way less blast radius.
"Less likely to be exploited" — said about almost every critical RCE that got weaponized within 30 days.
CVE-2026-41096 is a heap overflow in dnsapi.dll. Unauthenticated. Over the network. CVSS 9.8.
The reverse engineers are already reading the patch diff. Are your endpoints patched? 👀
Eligible devices: Windows 11 24H2+ managed via Intune or Autopatch.
If your device isn't on the April 2026 baseline yet → one last restart, then hotpatch takes over automatically.
Admins can opt out via Intune policy if needed.
Are you already leveraging this? ↓
https://t.co/Ze1VfCsR1m
35,000 users. 13,000 orgs. 26 countries.
Microsoft just exposed a massive credential theft campaign — 92% of targets in the US.
Your M365 users could be next.
https://t.co/5q8NYdC3q2
97% of credential attacks use legacy authentication.
And legacy auth bypasses MFA completely.
Your users can have MFA on — and still get owned.
One Conditional Access rule blocks it.
Takes 5 minutes.
Researchers got Global Admin on a 16,000-user tenant.
No malware. No corporate device. Just 1 stolen password + a phantom device.
The CA policies that would've blocked it? They existed. They were just in "Report-Only" mode — never enforced.
Is yours actually ON? →
https://t.co/blCmsHUmn5
@claudeai@SpaceX OpenAI started the AI race.
Claude is starting the infrastructure race.
Partnering with SpaceX for compute is an absolute power move !
@claudeai × @SpaceX = massive compute upgrade.
Higher limits on Claude Code & API incoming.
This is huge for builders creating automations and AI tools.
Stop buying Copilot.
You're paying $30/user/month for AI autocomplete while your tenant has no DMARC, no Conditional Access, and anonymous sharing wide open.
Fix your security first. Then talk AI !