{
  "generated_at": "2026-07-22T09:58:20.535Z",
  "articles": [
    {
      "id": "msrc-update-guide-cd8a279611",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56434",
      "published": "2026-07-22T08:41:55.000Z",
      "headline": "Microsoft Publishes CVE-2026-56434 for the NGINX SSI Module",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft has published an advisory for CVE-2026-56434 affecting the NGINX ngx_http_ssi_module. Administrators using server-side includes should check affected versions and follow the available remediation guidance."
    },
    {
      "id": "msrc-update-guide-d82706f792",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42533",
      "published": "2026-07-22T08:41:48.000Z",
      "headline": "Microsoft Publishes CVE-2026-42533 for NGINX Map and Regex Matching",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft has published an advisory for CVE-2026-42533 involving NGINX map directives and regular-expression matching. Administrators running NGINX should review the advisory, identify affected versions, and apply vendor guidance."
    },
    {
      "id": "msrc-update-guide-2354ad5c55",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57211",
      "published": "2026-07-22T08:40:56.000Z",
      "headline": "RabbitMQ Management UI on Windows Is Vulnerable to UNC SSRF",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft disclosed CVE-2026-57211, a UNC-based server-side request forgery vulnerability affecting the RabbitMQ management UI on Windows. Administrators should review the advisory, assess affected deployments, and restrict management-interface exposure while following available remediation guidance."
    },
    {
      "id": "msrc-update-guide-0e8374a7cf",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57216",
      "published": "2026-07-22T08:40:25.000Z",
      "headline": "RabbitMQ Fixes Remote Guest Sessions Caused by Loopback Checks",
      "topic": "identity",
      "score": 71,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Faulty listener-address checks could treat remote AMQP and Stream Protocol connections as loopback traffic, enabling guest sessions remotely. Administrators should patch RabbitMQ immediately and verify that guest access remains restricted to localhost."
    },
    {
      "id": "msrc-update-guide-7b1ebc8ffa",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57213",
      "published": "2026-07-22T08:40:10.000Z",
      "headline": "RabbitMQ Fixes Stored XSS in Federation Management Plugin",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "The RabbitMQ federation management plugin rendered unsanitized consumer tags, enabling stored cross-site scripting. Administrators should patch affected management interfaces and restrict console access until updates are deployed."
    },
    {
      "id": "msrc-update-guide-2d43fe4c57",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57217",
      "published": "2026-07-22T08:40:02.000Z",
      "headline": "RabbitMQ Fixes Cross-Tenant Topic Authorization Bypass",
      "topic": "identity",
      "score": 70,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A RabbitMQ topic-authorization flaw could let messages bypass routing-key restrictions across tenant boundaries. Administrators running shared or multi-tenant brokers should update promptly and review topic permissions."
    },
    {
      "id": "msrc-update-guide-a1acada6c4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57220",
      "published": "2026-07-22T08:39:55.000Z",
      "headline": "RabbitMQ Fixes Unauthenticated Memory-Exhaustion Attack",
      "topic": "security",
      "score": 70,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "RabbitMQ's Stream listener failed to enforce its configured frame-size limit during authentication, allowing an unauthenticated client to exhaust memory. Administrators should patch exposed brokers promptly to prevent remote denial-of-service attacks."
    },
    {
      "id": "msrc-update-guide-b99cab490e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-64188",
      "published": "2026-07-22T08:02:10.000Z",
      "headline": "Qualcomm RMNET Fixes Use-After-Free in Endpoint Removal",
      "topic": "endpoint",
      "score": 60,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "The Qualcomm RMNET driver contained a use-after-free flaw when removing a network endpoint. Administrators should update affected Linux systems to reduce the risk of crashes or memory corruption."
    },
    {
      "id": "msrc-update-guide-e4fe31baec",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-64189",
      "published": "2026-07-22T08:02:03.000Z",
      "headline": "Linux ipset Fixes Race Condition During List Resizing",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A race condition between ipset dumps and list resizing could cause unsafe behavior in the Linux netfilter subsystem. Administrators should apply the relevant security updates to systems that use ipset-based traffic filtering."
    },
    {
      "id": "msrc-update-guide-e27b4a43e1",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-64192",
      "published": "2026-07-22T08:01:38.000Z",
      "headline": "Microsoft Publishes CVE-2026-64192 for Linux BPF Inode Storage",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft has published an advisory for CVE-2026-64192 involving BPF inode-storage map creation when BPF LSM is uninitialized. Administrators responsible for Linux systems should review kernel exposure and apply applicable updates."
    },
    {
      "id": "msrc-update-guide-b301e71dee",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26197",
      "published": "2026-07-22T08:01:19.000Z",
      "headline": "Microsoft Publishes CVE-2026-26197 for HDF5 Array Validation",
      "topic": "security",
      "score": 29,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft has published an advisory for CVE-2026-26197 concerning inconsistent array size validation in H5Odtype.c. Administrators should identify software that bundles the affected HDF5 code and follow vendor remediation guidance."
    },
    {
      "id": "office365-itpros-b2d9e55ce2",
      "url": "https://office365itpros.com/2026/07/22/block-sharing-dlp-sharepoint/?utm_source=rss&utm_medium=rss&utm_campaign=block-sharing-dlp-sharepoint",
      "published": "2026-07-22T07:00:59.000Z",
      "headline": "Purview DLP Preview Blocks File Sharing with Named Domains and Users",
      "topic": "security",
      "score": 51,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Microsoft Purview DLP can now block external sharing of SharePoint and OneDrive files with specified domains or individual users in preview. Administrators can use targeted allow or deny lists to reduce data leakage without blocking all external collaboration.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/DLP-Block-access-to-external-domains-and-users-rule.jpg?resize=840%2C375&ssl=1"
    },
    {
      "id": "ourcloudnetwork-781a695d91",
      "url": "https://ourcloudnetwork.com/microsoft-are-retiring-custom-css-positioning-in-company-branding/?utm_source=rss&utm_medium=rss&utm_campaign=microsoft-are-retiring-custom-css-positioning-in-company-branding",
      "published": "2026-07-22T06:44:47.000Z",
      "headline": "Entra ID Retires Custom CSS Positioning for Company Branding",
      "topic": "identity",
      "score": 43,
      "source": {
        "id": "ourcloudnetwork",
        "name": "Our Cloud Network (Daniel Bradley)"
      },
      "summary": "Microsoft will retire custom CSS positioning properties from Entra ID company branding on October 26, 2026. Administrators should review affected sign-in experiences and replace unsupported styling before layouts change."
    },
    {
      "id": "m365-roadmap-a58be8c717",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=568075",
      "published": "2026-07-21T22:37:32.000Z",
      "headline": "Microsoft Purview extends DLP controls to non-Microsoft apps",
      "topic": "security",
      "score": 55,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Microsoft Purview is extending Data Loss Prevention and automatic sensitivity labeling to connected services including Google Workspace, Box, Dropbox, Salesforce, AWS, and Webex. Security teams should review application-specific conditions and actions before the preview in July 2026 and general availability in September 2026."
    },
    {
      "id": "windows-insider-95a22b0b75",
      "url": "https://blogs.windows.com/windows-insider/2026/07/21/announcing-windows-11-insider-preview-build-28120-2546-for-experimental-26h1/",
      "published": "2026-07-21T21:03:05.000Z",
      "headline": "Windows 11 enforces smart card removal in Entra-authenticated remote sessions",
      "topic": "endpoint",
      "score": 44,
      "source": {
        "id": "windows-insider",
        "name": "Windows Insider Blog"
      },
      "summary": "Windows 11 Insider Build 28120.2546 lets administrators automatically disconnect Azure Virtual Desktop and Windows 365 sessions when a redirected smart card is removed. The change extends smart card removal policies to Entra-authenticated remote sessions, helping organizations enforce security and compliance requirements."
    },
    {
      "id": "entra-blog-e817c093d6",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/microsoft-entra-id-enhances-security-of-branded-sign-ins/ba-p/4537471",
      "published": "2026-07-21T17:58:43.000Z",
      "headline": "Microsoft Entra retires custom CSS positioning for branded sign-ins",
      "topic": "identity",
      "score": 65,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      },
      "summary": "Microsoft Entra ID will retire custom CSS positioning properties for branded sign-in pages globally on October 26, 2026, followed by all custom CSS later in 2027. Administrators should identify affected tenants and update branding to avoid broken layouts while improving phishing resistance."
    },
    {
      "id": "call4cloud-b9140a14eb",
      "url": "https://patchmypc.com/blog/evaluate-third-party-patching-solutions-beyond-price/",
      "published": "2026-07-21T17:20:32.000Z",
      "headline": "Evaluate third-party patching tools beyond licensing costs",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "This analysis recommends assessing third-party patching products by operational value rather than licensing price alone. Intune administrators should compare deployment reliability, application coverage, automation, reporting, and support before selecting a platform."
    },
    {
      "id": "msrc-update-guide-5a30a7d77b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58640",
      "published": "2026-07-21T14:00:00.000Z",
      "headline": "Microsoft updates credit for Windows NTFS remote code execution flaw",
      "topic": "security",
      "score": 7,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated an acknowledgement for CVE-2026-58640 without changing the vulnerability details or remediation guidance. Administrators do not need to take additional action beyond applying the existing security update."
    },
    {
      "id": "msrc-update-guide-a35aa882b0",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50462",
      "published": "2026-07-21T14:00:00.000Z",
      "headline": "Microsoft updates credit for Windows WinSock privilege escalation flaw",
      "topic": "security",
      "score": 7,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated an acknowledgement for CVE-2026-50462 without changing the vulnerability details or remediation guidance. Administrators do not need to take additional action beyond applying the existing security update."
    },
    {
      "id": "janbakker-b14d707dfb",
      "url": "https://janbakker.tech/lock-or-sign-out-when-yubikey-is-removed-from-the-device/",
      "published": "2026-07-21T13:53:20.000Z",
      "headline": "Open-source tool locks devices when users remove their YubiKey",
      "topic": "identity",
      "score": 39,
      "source": {
        "id": "janbakker",
        "name": "JanBakker.tech"
      },
      "summary": "Sciber YubiKey Locker can lock a device or sign out the user when a YubiKey is removed on Windows, macOS, or Linux. IT administrators can deploy and configure the tool through Intune and ADMX policies to enforce security-key removal behavior.",
      "image": "https://janbakker.tech/wp-content/uploads/2026/07/image-14.png"
    },
    {
      "id": "o365reports-c310d58c75",
      "url": "https://o365reports.com/replace-remember-mfa-with-conditional-access-sign-in-frequency/?utm_source=rss&utm_medium=rss&utm_campaign=replace-remember-mfa-with-conditional-access-sign-in-frequency",
      "published": "2026-07-21T11:38:46.000Z",
      "headline": "Conditional Access replaces static remembered MFA sessions",
      "topic": "identity",
      "score": 29,
      "source": {
        "id": "o365reports",
        "name": "Office 365 Reports (AdminDroid)"
      },
      "summary": "Conditional Access sign-in frequency provides more granular reauthentication controls than the tenant-wide Remember MFA setting. Entra administrators can apply policies by user, application, and risk context instead of relying on a fixed browser cookie.",
      "image": "https://o365reports.com/wp-content/uploads/2026/07/disable-remember-mfa-1.png"
    },
    {
      "id": "janbakker-243df874e1",
      "url": "https://janbakker.tech/writing-maester-tests-using-ai-from-idea-to-pull-request/",
      "published": "2026-07-21T09:37:48.000Z",
      "headline": "AI skills streamline development of Maester security tests",
      "topic": "ai",
      "score": 32,
      "source": {
        "id": "janbakker",
        "name": "JanBakker.tech"
      },
      "summary": "Reusable instruction files help AI agents generate Maester tests that follow the project's expected structure and workflow. Entra and Microsoft 365 administrators can turn security-control ideas into reviewable tests without first mastering the entire codebase.",
      "image": "https://janbakker.tech/wp-content/uploads/2026/07/image-9.png"
    },
    {
      "id": "msrc-update-guide-2ee9b04d33",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63796",
      "published": "2026-07-21T08:44:23.000Z",
      "headline": "Linux OCFS2 flaw accepts oversized group bitmap descriptors",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "The Linux OCFS2 filesystem requires stricter validation to reject oversized group bitmap descriptors. The issue has limited relevance to Microsoft administrators unless affected Linux workloads use OCFS2 in their environment."
    },
    {
      "id": "msrc-update-guide-9214e11c2e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3842",
      "published": "2026-07-21T08:42:10.000Z",
      "headline": "QEMU Hyper-V debugging flaw enables an out-of-bounds host write",
      "topic": "security",
      "score": 52,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A missing mapped-length check in QEMU-KVM's Hyper-V synthetic debugger can cause an out-of-bounds write on the host. Administrators operating affected virtualization hosts should assess exposure and apply vendor fixes when available."
    },
    {
      "id": "msrc-update-guide-f7a06339aa",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-38754",
      "published": "2026-07-21T08:41:54.000Z",
      "headline": "BusyBox heap overflow allows crafted input to trigger denial of service",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A heap overflow in the BusyBox ash shell can let crafted input cause a denial of service. Administrators running affected BusyBox-based containers or appliances should review vendor guidance and update exposed workloads."
    },
    {
      "id": "msrc-update-guide-17b9bdc83b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63828",
      "published": "2026-07-21T08:39:26.000Z",
      "headline": "AppArmor Adds Controls for Implicit TCP Fast Open Connections",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "AppArmor now mediates implicit connections created when applications use sendmsg with TCP Fast Open. Linux administrators should update affected systems to ensure security policies govern this connection path."
    },
    {
      "id": "msrc-update-guide-f24b1a3c89",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63801",
      "published": "2026-07-21T08:39:19.000Z",
      "headline": "Linux TIPC Fix Prevents Use-After-Free During AEAD Decryption",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel fix addresses a slab use-after-free read in the TIPC AEAD decryption callback. Administrators running Linux systems with TIPC enabled should review affected versions and apply the relevant security update."
    },
    {
      "id": "msrc-update-guide-cd776f1b35",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63882",
      "published": "2026-07-21T08:04:12.000Z",
      "headline": "AMD GPU driver fixes NULL pointer flaw in KFD shared virtual memory",
      "topic": "endpoint",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update fixes a NULL pointer bug in the AMD KFD shared virtual memory implementation. Administrators running Linux systems with AMD GPUs should assess exposure and apply applicable vendor updates."
    },
    {
      "id": "msrc-update-guide-0e5698997c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63879",
      "published": "2026-07-21T08:03:54.000Z",
      "headline": "AMD GPU driver fixes page retrieval flaw in amdgpu HMM",
      "topic": "endpoint",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update fixes a flaw in the AMD GPU driver's amdgpu_hmm_range_get_pages function. Administrators running Linux systems with AMD GPUs should review the CVE and apply applicable vendor updates."
    },
    {
      "id": "msrc-update-guide-a1f2361a32",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-64077",
      "published": "2026-07-21T08:03:09.000Z",
      "headline": "Linux Netfilter Uses Two-Stage Removal to Protect ebtables Objects",
      "topic": "security",
      "score": 48,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Linux Netfilter now removes ebtables objects in two stages to prevent unsafe lifecycle handling. Administrators running Linux bridges or container networking should apply the update after confirming their kernel is affected."
    },
    {
      "id": "msrc-update-guide-a26b1049b3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63940",
      "published": "2026-07-21T08:03:02.000Z",
      "headline": "KVM SEV Fix Rejects Zero-Length Port I/O Requests",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "KVM now ignores zero-length port I/O requests when running AMD SEV-protected virtual machines. Virtualization administrators should update affected Linux hosts to avoid incorrect request handling at the guest-host boundary."
    },
    {
      "id": "msrc-update-guide-d28013a306",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-64097",
      "published": "2026-07-21T08:02:50.000Z",
      "headline": "AMD Display Driver Validates GPIO Tables to Prevent Invalid Access",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "The Linux AMD display driver now validates the GPIO pin lookup table size before iterating over it. Administrators managing affected Linux endpoints should deploy the fix to prevent invalid memory access caused by malformed table data."
    },
    {
      "id": "msrc-update-guide-ec34cbc59d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-64133",
      "published": "2026-07-21T08:01:42.000Z",
      "headline": "Linux ALSA Fix Blocks Out-of-Bounds Access in ASI HPI Cache",
      "topic": "security",
      "score": 45,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux ALSA update fixes a potential out-of-bounds array access while the ASI HPI driver reads its cache. Administrators using affected audio hardware should apply the update to reduce the risk of crashes or unintended memory access."
    },
    {
      "id": "office365-itpros-7aec9ec386",
      "url": "https://office365itpros.com/2026/07/21/json-batching-primer/?utm_source=rss&utm_medium=rss&utm_campaign=json-batching-primer",
      "published": "2026-07-21T07:00:00.000Z",
      "headline": "Microsoft Graph batching accelerates large-scale Microsoft 365 automation",
      "topic": "identity",
      "score": 39,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Microsoft Graph can process up to 20 requests in one JSON batch, reducing network calls for bulk queries and updates. Administrators can use batching to accelerate user, group, device, license, and mailbox automation in large tenants."
    },
    {
      "id": "m365-roadmap-7edc89156d",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567895",
      "published": "2026-07-20T22:37:15.000Z",
      "headline": "OneNote brings multimodal Copilot Notebook capture to Android",
      "topic": "ai",
      "score": 44,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "OneNote for Android will let users combine audio transcription, images, and typed notes in one capture session before Copilot creates a structured page. The feature enters preview in August 2026 and general availability in September, giving administrators another Copilot data workflow to evaluate and govern."
    },
    {
      "id": "m365-roadmap-4d2bbe417c",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567894",
      "published": "2026-07-20T22:37:15.000Z",
      "headline": "Copilot Studio adds run-only sharing for autonomous agents",
      "topic": "ai",
      "score": 48,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Copilot Studio will allow makers to share autonomous agents with end users without granting edit permissions or ownership. The preview starts in August 2026, helping administrators broaden agent access while retaining governance and separation between builders and users."
    },
    {
      "id": "m365-roadmap-e038aed158",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567891",
      "published": "2026-07-20T22:37:15.000Z",
      "headline": "Microsoft 365 Copilot adds grounded answers from Power BI data",
      "topic": "ai",
      "score": 55,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Microsoft 365 Copilot can now reason over Power BI reports and semantic models to answer natural-language questions with enterprise data. The integration reaches general availability in August 2026, requiring administrators to review Power BI permissions and Copilot data-governance controls."
    },
    {
      "id": "m365-roadmap-73318f36fc",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567889",
      "published": "2026-07-20T22:37:15.000Z",
      "headline": "SharePoint improves flexible page section authoring",
      "topic": "endpoint",
      "score": 30,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "SharePoint is adding persistent layout guides, clearer column controls, and one-click conversion of existing sections into Flexible Sections. The August 2026 release should simplify page authoring across desktop, mobile, and email experiences but has limited administrative impact."
    },
    {
      "id": "m365-roadmap-d383a95eb5",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567883",
      "published": "2026-07-20T22:37:15.000Z",
      "headline": "Microsoft Unifies App and Agent Installation Across Microsoft 365",
      "topic": "endpoint",
      "score": 48,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Microsoft will unify app and agent installation changes across Teams, Outlook, and Microsoft 365 Copilot in August 2026. Administrators will be able to configure installations once and enforce them consistently across supported surfaces."
    },
    {
      "id": "entra-blog-3365ae7c0a",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/secure-ai-web-and-private-apps-with-zero-trust/ba-p/4516387",
      "published": "2026-07-20T21:26:12.000Z",
      "headline": "Microsoft previews stronger Zero Trust controls for AI and private access",
      "topic": "identity",
      "score": 66,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      },
      "summary": "Microsoft is previewing new Entra Internet Access and Private Access controls for AI interactions, sensitive data, applications, and connectivity resilience. Administrators can apply identity, device, location, and risk context across more traffic, including access initiated by AI agents."
    },
    {
      "id": "windows-insider-b73d2b626e",
      "url": "https://blogs.windows.com/windows-insider/2026/07/20/announcing-new-builds-for-20-july-2026/",
      "published": "2026-07-20T21:05:12.000Z",
      "headline": "Microsoft Releases New Windows 11 Preview Builds Across Three Channels",
      "topic": "endpoint",
      "score": 49,
      "source": {
        "id": "windows-insider",
        "name": "Windows Insider Blog"
      },
      "summary": "Microsoft released Windows 11 preview builds for Beta, Experimental, and Release Preview channels, covering versions from 24H2 through 26H1. Endpoint administrators should review the channel-specific notes before validating upcoming Windows changes in managed test rings."
    },
    {
      "id": "entra-blog-8c02848587",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/plan-your-azure-ad-b2c-migration-with-the-migration-policy/ba-p/4532874",
      "published": "2026-07-20T17:18:24.000Z",
      "headline": "Microsoft releases Azure AD B2C Migration Policy Analyzer",
      "topic": "identity",
      "score": 72,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      },
      "summary": "Microsoft has made the Migration Policy Analyzer generally available for assessing Azure AD B2C custom policies before moving to Entra External ID. Identity teams can inventory authentication capabilities, identify migration gaps, and reduce manual analysis, although the tool does not scan the entire tenant."
    },
    {
      "id": "call4cloud-770ad7715f",
      "url": "https://patchmypc.com/blog/company-portal-error-loading-apps/",
      "published": "2026-07-20T14:16:30.000Z",
      "headline": "Company Portal App Loading Failures Trace Back to IWService Errors",
      "topic": "endpoint",
      "score": 34,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "The troubleshooting analysis connects Company Portal app-loading failures with matching web portal errors and HTTP 500 or 503 responses from IWService. Intune administrators can use these signals to distinguish service-side failures from device-specific Company Portal problems.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-21.jpg"
    },
    {
      "id": "msrc-update-guide-9a6ed13413",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50652",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates Product Details for Entra ID CVE-2026-50652",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the Entra ID denial-of-service vulnerability CVE-2026-50652. The revision is informational and does not indicate a new vulnerability or security update."
    },
    {
      "id": "msrc-update-guide-1526b79ad4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50653",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates Product Details for Entra ID CVE-2026-50653",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the Entra ID denial-of-service vulnerability CVE-2026-50653. The revision is informational and does not introduce a new vulnerability or security update."
    },
    {
      "id": "msrc-update-guide-207fcba1bf",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47304",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Revises Product Details for .NET CVE-2026-47304",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft revised the product information for the .NET security feature bypass vulnerability CVE-2026-47304. Administrators should note the clarified applicability, but the change is informational and does not provide a new update."
    },
    {
      "id": "msrc-update-guide-0060ad62bf",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50304",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates ADFS Product Details for CVE-2026-50304",
      "topic": "identity",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the ADFS denial-of-service vulnerability CVE-2026-50304. The revision is informational and does not indicate a new vulnerability or security update."
    },
    {
      "id": "msrc-update-guide-2e41adfa3d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50368",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates ADFS Product Details for CVE-2026-50368",
      "topic": "identity",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the ADFS denial-of-service vulnerability CVE-2026-50368. The revision is informational and does not indicate a new vulnerability or security update."
    },
    {
      "id": "msrc-update-guide-579c133ca2",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50324",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates ADFS Product Data for CVE-2026-50324",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected product information for this ADFS denial-of-service vulnerability. The change is informational only, so administrators do not need to reassess remediation based on this update alone."
    },
    {
      "id": "msrc-update-guide-1388e9b08c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50355",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates ADFS Product Data for CVE-2026-50355",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected product information for this ADFS denial-of-service vulnerability. The change is informational only, so administrators do not need to reassess remediation based on this update alone."
    },
    {
      "id": "msrc-update-guide-554f8f5c1a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50411",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates ADFS Product Data for CVE-2026-50411",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected product information for this ADFS denial-of-service vulnerability. The change is informational only, so administrators do not need to reassess remediation based on this update alone."
    },
    {
      "id": "msrc-update-guide-9291a085dc",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50525",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates .NET Product Data for CVE-2026-50525",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected product information for this .NET denial-of-service vulnerability. The change is informational only, so administrators do not need to reassess remediation based on this update alone."
    },
    {
      "id": "msrc-update-guide-08903f4893",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50527",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates .NET Framework Product Data for CVE-2026-50527",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected product information for this .NET Framework denial-of-service vulnerability. The change is informational only, so administrators do not need to reassess remediation based on this update alone."
    },
    {
      "id": "msrc-update-guide-b0d99a85d9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50646",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates .NET Framework Product Data for CVE-2026-50646",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected product information for this .NET Framework remote-code-execution vulnerability. The change is informational only, so administrators do not need to reassess remediation based on this update alone."
    },
    {
      "id": "msrc-update-guide-bd3630a75f",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50647",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Revises ADFS CVE-2026-50647 Product Information",
      "topic": "identity",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the ADFS denial-of-service vulnerability. The change is informational only, but administrators should verify their patch inventories against the revised table."
    },
    {
      "id": "msrc-update-guide-d89f783160",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50648",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Revises .NET Framework CVE-2026-50648 Product Information",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the .NET Framework denial-of-service vulnerability. No new security guidance was announced, but administrators should reconcile the revised table with their patch scope."
    },
    {
      "id": "msrc-update-guide-c26062a194",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50649",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Revises .NET CVE-2026-50649 Product Information",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the affected-product information for the .NET remote-code-execution vulnerability. The revision is informational, but administrators should confirm that patching reports include every listed product."
    },
    {
      "id": "msrc-update-guide-a2743e4fb0",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50650",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Updates Product Details for CVE-2026-50650",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft revised the affected product information for the .NET Framework elevation-of-privilege vulnerability. The change is informational and does not introduce new security guidance or require additional administrator action."
    },
    {
      "id": "msrc-update-guide-7acf9d727f",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-35248",
      "published": "2026-07-20T14:00:00.000Z",
      "headline": "Microsoft Revises Build Numbers for Business Central CVE-2024-35248",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft corrected build numbers associated with the Dynamics 365 Business Central elevation-of-privilege vulnerability. Administrators can use the revised values to verify deployments, but the update adds no new remediation guidance."
    },
    {
      "id": "core-infra-security-97e8713bd3",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/azure-lighthouse-bring-your-partner-in-without-letting-their/ba-p/4529852",
      "published": "2026-07-20T12:00:00.000Z",
      "headline": "Azure Lighthouse Limits Partner Identity Footprints in Customer Tenants",
      "topic": "identity",
      "score": 44,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      },
      "summary": "The analysis explains how Azure Lighthouse lets service providers manage Azure resources without creating guest or local accounts in customer tenants. Administrators can reduce identity cleanup, persistent-access risk, and credential-management overhead while retaining delegated control."
    },
    {
      "id": "msrc-update-guide-1dde859563",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63834",
      "published": "2026-07-20T08:05:09.000Z",
      "headline": "Linux batman-adv limits unacknowledged throughput-meter entries",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-63834 restricts the number of unacknowledged entries maintained by the Linux batman-adv throughput meter. Administrators using mesh-networking features should review affected kernels and install the relevant security update."
    },
    {
      "id": "msrc-update-guide-b9fdb86cfe",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63803",
      "published": "2026-07-20T08:05:02.000Z",
      "headline": "Linux HDLC PPP synchronizes timers before freeing state",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-63803 fixes Linux HDLC PPP timer synchronization before the driver frees its state. Administrators using affected Linux networking components should evaluate exposure and apply the relevant security update."
    },
    {
      "id": "msrc-update-guide-a3e63897c5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63809",
      "published": "2026-07-20T08:04:44.000Z",
      "headline": "Linux BPF frees replaced sysctl write buffers safely",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-63809 changes Linux BPF code to use kvfree() for a replaced sysctl write buffer. Administrators should review affected Linux systems and deploy the relevant security update to reduce memory-handling risk."
    },
    {
      "id": "msrc-update-guide-9736462c3c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53393",
      "published": "2026-07-20T08:04:37.000Z",
      "headline": "Linux nfsd resets write verifier after deferred writeback errors",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-53393 addresses how Linux nfsd handles the write verifier after deferred writeback errors. Administrators running Linux-based NFS servers should assess affected systems and apply the relevant security update."
    },
    {
      "id": "msrc-update-guide-109d4518f7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53375",
      "published": "2026-07-20T08:04:18.000Z",
      "headline": "Linux AMDGPU VCE prevents partial address patches",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update prevents partial address patches in the AMDGPU VCE driver, tracked as CVE-2026-53375. Administrators running Linux systems with affected AMD graphics hardware should review exposure and deploy the relevant kernel update."
    },
    {
      "id": "msrc-update-guide-492b037740",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63829",
      "published": "2026-07-20T08:04:12.000Z",
      "headline": "Linux GRE changes now require network administration privileges",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update requires CAP_NET_ADMIN in the device network namespace for GRE changelink operations, tracked as CVE-2026-63829. Administrators using containers or network namespaces should patch affected systems to prevent unauthorized tunnel changes."
    },
    {
      "id": "msrc-update-guide-ffc9a0fa9b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63826",
      "published": "2026-07-20T08:03:53.000Z",
      "headline": "Linux fbdev fixes a use-after-free flaw in mode handling",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update fixes a use-after-free vulnerability in the fbdev store_modes function, tracked as CVE-2026-63826. Administrators should patch affected kernels because memory-safety flaws can cause crashes or enable further exploitation."
    },
    {
      "id": "msrc-update-guide-4af6a00f3d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63833",
      "published": "2026-07-20T08:03:29.000Z",
      "headline": "Linux NTFS3 blocks userspace writes to reserved extended attributes",
      "topic": "security",
      "score": 52,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update makes NTFS3 reject direct userspace writes to reserved $LX extended attributes, tracked as CVE-2026-63833. Administrators using NTFS volumes on Linux should update affected systems to prevent unsafe modification of filesystem metadata."
    },
    {
      "id": "msrc-update-guide-4c1468e16c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63806",
      "published": "2026-07-20T08:03:04.000Z",
      "headline": "Linux KVM removes a guest-triggerable kernel crash condition",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update replaces a guest-triggerable BUG_ON condition in KVM ioeventfd handling, tracked as CVE-2026-63806. Administrators hosting virtual machines should assess affected kernels because a guest may be able to trigger a host failure."
    },
    {
      "id": "msrc-update-guide-f688c9ed30",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53376",
      "published": "2026-07-20T08:02:57.000Z",
      "headline": "Linux kernel adds an upper bound check for AMD KFD node counts",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "A Linux kernel update adds an upper bound check for AMD KFD node counts tracked as CVE-2026-53376. Administrators running Linux systems with supported AMD GPUs should review affected versions and apply the relevant security update."
    },
    {
      "id": "msrc-update-guide-e0a413db8e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53374",
      "published": "2026-07-20T08:02:39.000Z",
      "headline": "MSRC publishes CVE-2026-53374 for AMDGPU GART allocation",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "MSRC published information about the Linux AMDGPU driver failing to zero-initialize a GART table during allocation. Administrators managing affected Linux systems with AMD graphics should assess risk and apply applicable updates."
    },
    {
      "id": "msrc-update-guide-be5d2ac3b5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53392",
      "published": "2026-07-20T08:02:33.000Z",
      "headline": "MSRC publishes CVE-2026-53392 for NFSv4 flexfiles validation",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "MSRC published information about NFSv4 flexfiles accepting a zero filehandle version count. Administrators using affected Linux NFS configurations should review exposure and apply applicable vendor updates."
    },
    {
      "id": "msrc-update-guide-0ee39b9749",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63810",
      "published": "2026-07-20T08:02:14.000Z",
      "headline": "MSRC publishes CVE-2026-63810 for Linux block-device handling",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "MSRC published information about Linux block-device code mounting the bdev pseudo-filesystem in userspace. Administrators should identify affected systems and apply applicable kernel or vendor updates."
    },
    {
      "id": "msrc-update-guide-53e831fa52",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53386",
      "published": "2026-07-20T08:01:49.000Z",
      "headline": "MSRC publishes CVE-2026-53386 for the TI ADS1298 driver",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "MSRC published information about a missing bounds check in the Linux TI ADS1298 ADC driver's gain settings. Administrators running affected Linux devices should assess exposure and install applicable vendor updates."
    },
    {
      "id": "msrc-update-guide-531eb0c779",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63815",
      "published": "2026-07-20T08:01:23.000Z",
      "headline": "MSRC publishes CVE-2026-63815 for Linux F2FS inline attributes",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "MSRC published information about an F2FS flaw involving unbounded inline extended-attribute sizes on certain inodes. Administrators should review affected Linux systems and apply applicable vendor updates when available."
    },
    {
      "id": "office365-itpros-d7d14efef7",
      "url": "https://office365itpros.com/2026/07/20/user-assigned-managed-identity/?utm_source=rss&utm_medium=rss&utm_campaign=user-assigned-managed-identity",
      "published": "2026-07-20T07:00:00.000Z",
      "headline": "User-assigned identities simplify shared Microsoft 365 automation",
      "topic": "identity",
      "score": 39,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "User-assigned managed identities can authenticate Microsoft 365 automation across multiple Azure resources and automation accounts. Administrators gain reusable identity management without tying credentials to the lifecycle of one automation account.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/UAMI-Create.jpg?resize=840%2C600&ssl=1"
    },
    {
      "id": "mikemdm-c83236e93f",
      "url": "https://mikemdm.de/2026/07/19/avd-hybrid-allows-for-vdi-on-any-hypervisor/",
      "published": "2026-07-19T11:19:04.000Z",
      "headline": "Azure Virtual Desktop Hybrid brings VDI to any hypervisor",
      "topic": "endpoint",
      "score": 48,
      "source": {
        "id": "mikemdm",
        "name": "Mike's MDM Blog"
      },
      "summary": "Microsoft is previewing Azure Virtual Desktop Hybrid for running VDI workloads on Azure Arc-enabled Windows machines across third-party hypervisors. IT administrators can reuse existing infrastructure while managing supported Windows 11 and Windows Server hosts through Azure.",
      "image": "https://mikemdm.de/wp-content/uploads/2026/07/grafik-9.png"
    },
    {
      "id": "call4cloud-e362cc453e",
      "url": "https://patchmypc.com/blog/custom-compliance-policies-and-the-eight-hour-waiting-fix/",
      "published": "2026-07-18T10:36:57.000Z",
      "headline": "Intune Custom Compliance May Reduce the Eight-Hour Evaluation Delay",
      "topic": "endpoint",
      "score": 34,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "Intune custom compliance policies may support faster evaluations instead of making administrators wait up to eight hours for refreshed results. Shorter delays could help security teams detect and remediate noncompliant endpoints sooner.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-3.png"
    },
    {
      "id": "msrc-update-guide-821c975758",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50012",
      "published": "2026-07-18T08:01:40.000Z",
      "headline": "Squid cache digest flaw can corrupt memory",
      "topic": "security",
      "score": 68,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-50012 causes memory corruption while Squid handles cache digest replies. Administrators operating affected proxy or caching infrastructure should prioritize vendor updates because memory corruption can cause crashes or potentially more severe compromise."
    },
    {
      "id": "msrc-update-guide-cc3069de14",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47729",
      "published": "2026-07-18T08:01:34.000Z",
      "headline": "Squid FTP gateway flaw can expose memory contents",
      "topic": "security",
      "score": 63,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-47729 allows memory disclosure through Squid's FTP gateway. Administrators using Squid for FTP proxying should evaluate affected versions and apply vendor guidance to reduce the risk of sensitive data exposure."
    },
    {
      "id": "msrc-update-guide-0888f9e85f",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62299",
      "published": "2026-07-18T08:01:26.000Z",
      "headline": "CoreDNS rewrite plugin flaw enables remote denial of service",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-62299 triggers a nil-pointer panic when the CoreDNS rewrite plugin processes a downstream response without an EDNS0 OPT record. Administrators should review affected deployments because remote requests could disrupt DNS availability."
    },
    {
      "id": "msrc-update-guide-c9e1c29e84",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62309",
      "published": "2026-07-18T08:01:20.000Z",
      "headline": "CoreDNS flaw lets one 28-byte packet trigger remote denial of service",
      "topic": "security",
      "score": 70,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "CVE-2026-62309 causes the CoreDNS proxyproto plugin to panic when it receives a crafted Proxy Protocol v2 datagram using a non-UDP transport. Administrators running affected DNS infrastructure should assess exposure and prioritize available updates or mitigations."
    },
    {
      "id": "msrc-update-guide-3b92d648ef",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15905",
      "published": "2026-07-18T00:42:44.000Z",
      "headline": "Microsoft Edge fixes Chromium use-after-free vulnerability CVE-2026-15905",
      "topic": "security",
      "score": 65,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has inherited Chromium's fix for a use-after-free vulnerability in the Aura interface framework. Administrators should prioritize Edge updates to reduce the risk of browser-based exploitation."
    },
    {
      "id": "msrc-update-guide-fc1b345cf5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15904",
      "published": "2026-07-18T00:42:43.000Z",
      "headline": "Microsoft Edge fixes use-after-free flaw in Chromium Ozone",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has ingested Chromium changes that address CVE-2026-15904, a use-after-free vulnerability in Ozone. Administrators should deploy the latest Edge security update to reduce browser exploitation risk."
    },
    {
      "id": "msrc-update-guide-a749dc3d2f",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15903",
      "published": "2026-07-18T00:42:41.000Z",
      "headline": "Microsoft Edge fixes out-of-bounds access flaw in Chromium V8",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has ingested Chromium changes that address CVE-2026-15903, an out-of-bounds read and write vulnerability in V8. Administrators should prioritize the latest Edge update because memory corruption in the JavaScript engine can expose users to browser-based attacks."
    },
    {
      "id": "msrc-update-guide-28489bd308",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15902",
      "published": "2026-07-18T00:42:40.000Z",
      "headline": "Microsoft Edge fixes use-after-free flaw in Chromium Cast",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has ingested Chromium changes that address CVE-2026-15902, a use-after-free vulnerability in Cast functionality. Administrators should apply the latest Edge security update, especially on devices where browser casting is available."
    },
    {
      "id": "msrc-update-guide-4f0f3e0409",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15901",
      "published": "2026-07-18T00:42:39.000Z",
      "headline": "Microsoft Edge fixes use-after-free flaw in Chromium networking",
      "topic": "security",
      "score": 63,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has ingested Chromium changes that address CVE-2026-15901, a use-after-free vulnerability in network handling. Administrators should update Edge across managed devices to reduce exposure from malicious or compromised web services."
    },
    {
      "id": "msrc-update-guide-0e87283df7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15900",
      "published": "2026-07-18T00:42:38.000Z",
      "headline": "Microsoft Edge fixes use-after-free flaw in Chromium GPU code",
      "topic": "security",
      "score": 63,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has ingested Chromium changes that address CVE-2026-15900, a use-after-free vulnerability in GPU processing. Administrators should deploy the latest Edge update to protect endpoints from malicious graphics content that could trigger memory corruption."
    },
    {
      "id": "msrc-update-guide-49062a597b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15899",
      "published": "2026-07-18T00:42:35.000Z",
      "headline": "Microsoft Edge fixes use-after-free flaw in Chromium CameraCapture",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft Edge has ingested Chromium changes that address CVE-2026-15899, a use-after-free vulnerability in CameraCapture. Administrators should update managed browsers to limit exposure when users interact with camera-enabled web content."
    },
    {
      "id": "m365-roadmap-7ebc24cf9d",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567893",
      "published": "2026-07-17T22:12:56.000Z",
      "headline": "Copilot Analytics adds Agent 365 activity dashboard for managers",
      "topic": "ai",
      "score": 48,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Managers will gain access to current and historical Agent 365 activity through the Copilot Analytics Agent Dashboard. The August 2026 release will help organizations monitor adoption and understand the use of centrally registered agents."
    },
    {
      "id": "m365-roadmap-8603fa0df0",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567890",
      "published": "2026-07-17T22:12:56.000Z",
      "headline": "Purview raises daily auto-labeling capacity to 500,000 files",
      "topic": "security",
      "score": 55,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Microsoft Purview will increase auto-labeling capacity for SharePoint and OneDrive from 100,000 to 500,000 files per tenant each day. Administrators can protect existing data faster, reduce sensitivity-labeling gaps, and better prepare content for Microsoft 365 Copilot."
    },
    {
      "id": "m365-roadmap-1f53766ce7",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567888",
      "published": "2026-07-17T22:12:56.000Z",
      "headline": "Outlook highlights all-day scheduling conflicts in meeting invitations",
      "topic": "endpoint",
      "score": 13,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Outlook on the web and Windows will make conflicts with out-of-office periods and busy all-day events easier to identify. The change may reduce scheduling mistakes but has limited relevance to security administration."
    },
    {
      "id": "m365-roadmap-7cf72c1f36",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567884",
      "published": "2026-07-17T22:12:56.000Z",
      "headline": "Teams adds external call routing for GCC High and DoD users",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Teams users in GCC High and DoD environments will be able to route all external calls to voicemail or their unanswered-call settings. Administrators should review calling policies before the September 2026 rollout, although the change has limited security impact."
    },
    {
      "id": "m365-roadmap-ba339e7d91",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567670",
      "published": "2026-07-17T22:12:56.000Z",
      "headline": "Microsoft 365 Copilot connects Agent 365 agents through Agent2Agent",
      "topic": "ai",
      "score": 52,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      },
      "summary": "Agents published to Agent 365 will work as connected agents in Agent Builder and Copilot Studio when they implement the Agent2Agent protocol. Administrators can centrally manage reusable agents through the Microsoft 365 admin center ahead of general availability in August 2026."
    },
    {
      "id": "msrc-blog-b5cc185770",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/17/microsoft-at-black-hat-usa-2026-defending-trust-in-the-age-of-ai-and-supply-chain-attacks/",
      "published": "2026-07-17T16:00:00.000Z",
      "headline": "Microsoft Maps New Trust-Based Attacks Across Software, Identity, and AI",
      "topic": "security",
      "score": 35,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft outlines how attackers exploit trusted packages, build pipelines, identities, tools, and AI agents to reach enterprise systems. IT administrators should review access controls and monitoring across software supply chains, cloud services, and AI workloads.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/MISA-demo-presence.jpg"
    },
    {
      "id": "msrc-update-guide-3da7bcf4ea",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56159",
      "published": "2026-07-17T14:00:00.000Z",
      "headline": "Microsoft adds acknowledgements for DHCP Server vulnerability CVE-2026-56159",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      },
      "summary": "Microsoft updated the advisory for the DHCP Server remote code execution vulnerability with acknowledgements only. The change adds no new technical details or remediation guidance, so administrators do not need to alter existing patching plans."
    },
    {
      "id": "msrc-update-guide-1dfdb8056c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59886",
      "published": "2026-07-17T08:02:48.000Z",
      "headline": "CVE-2026-59886 pyasn1: Uncontrolled resource consumption when converting decoded REAL values",
      "topic": "security",
      "score": 34,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-59419d9b21",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59884",
      "published": "2026-07-17T08:02:41.000Z",
      "headline": "CVE-2026-59884 pyasn1 BER/CER/DER decoder denial of service via unbounded long-form tag IDs",
      "topic": "security",
      "score": 30,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-58aebde4f8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59885",
      "published": "2026-07-17T08:02:35.000Z",
      "headline": "CVE-2026-59885 pyasn1: Quadratic complexity in OBJECT IDENTIFIER and RELATIVE-OID processing allows denial of service",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-9536381f54",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-60081",
      "published": "2026-07-17T08:02:29.000Z",
      "headline": "CVE-2026-60081 DBI::ProfileData versions before 1.651 for Perl do not limit the path index",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-8c010d29b8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15392",
      "published": "2026-07-17T08:02:22.000Z",
      "headline": "CVE-2026-15392 DBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted location",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c12272bca2",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-60082",
      "published": "2026-07-17T08:02:16.000Z",
      "headline": "CVE-2026-60082 DBI versions before 1.651 for Perl do not enforce statement handle consistency with the row",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-0b8a78a17d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15043",
      "published": "2026-07-17T08:02:10.000Z",
      "headline": "CVE-2026-15043 DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c14a43bc87",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57433",
      "published": "2026-07-17T08:02:03.000Z",
      "headline": "CVE-2026-57433 Storable versions before 3.41 for Perl have a signed integer overflow when deserializing a crafted SX_HOOK record",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-d775817768",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15709",
      "published": "2026-07-17T08:01:57.000Z",
      "headline": "CVE-2026-15709 Soupwebsocketextensiondeflate: libsoup: libsoup: websocket permessage-deflate unbounded decompression remote denial of service",
      "topic": "security",
      "score": 33,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-5724817708",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15712",
      "published": "2026-07-17T08:01:51.000Z",
      "headline": "CVE-2026-15712 Soupclientmessageiohttp2: libsoup3: libsoup: http/2 goaway frame parsing heap buffer over-read via invalid nul-termination assumption",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-40cc685a99",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15714",
      "published": "2026-07-17T08:01:45.000Z",
      "headline": "CVE-2026-15714 Libsoup: soupmultipartinputstream: libsoup: out-of-bounds read in soup_multipart_input_stream_read_headers via an oversized multipart boundary string",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1fa206f543",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15713",
      "published": "2026-07-17T08:01:38.000Z",
      "headline": "CVE-2026-15713 Libsoup: soupcache: libsoup: http/2 frame window exhaustion remote denial of service via memory leak",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-39b2c286a7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15711",
      "published": "2026-07-17T08:01:32.000Z",
      "headline": "CVE-2026-15711 Libsoup: soupwebsocketconnection: libsoup: websocket remote denial of service via oversized control frame protocol violation",
      "topic": "security",
      "score": 33,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c275974f16",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53366",
      "published": "2026-07-17T08:01:26.000Z",
      "headline": "CVE-2026-53366 ipv4: account for fraggap on the paged allocation path",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-73abd1f8ae",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48863",
      "published": "2026-07-17T08:01:19.000Z",
      "headline": "CVE-2026-48863 Libsolv: stack-based buffer overflow in libsolv eddsa pgp signature verification allows denial of service",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "call4cloud-9405901cc8",
      "url": "https://patchmypc.com/blog/autopilot-required-apps-no-longer-need-to-wait-60-minutes/",
      "published": "2026-07-17T07:59:21.000Z",
      "headline": "Intune Fixes the 60-Minute Autopilot Delay for Required Apps",
      "topic": "endpoint",
      "score": 39,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "Intune Management Extension 1.103.101.0 appears to remove the 60-minute delay that could affect required app installations after Autopilot enrollment. Administrators should verify the new behavior in their environment because it can shorten device provisioning and reduce post-enrollment support issues.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-69.png"
    },
    {
      "id": "office365-itpros-d1256055ff",
      "url": "https://office365itpros.com/2026/07/17/owa-light-retirement/?utm_source=rss&utm_medium=rss&utm_campaign=owa-light-retirement",
      "published": "2026-07-17T07:00:00.000Z",
      "headline": "The Demise of the OWA Light Client",
      "topic": "endpoint",
      "score": 38,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Microsoft will retire the lightweight OWA Light client in Exchange Server SE with an August 2026 update, requiring on-premises users to switch to the full OWA client. Available since Exchange 2007 for older browsers and alternative platforms without JavaScript, OWA Light affects only on-premises Exchange environments, not cloud-only users.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/OWA-Lite.jpg?resize=840%2C600&ssl=1"
    },
    {
      "id": "msrc-blog-88097730a6",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/16/acr-stealer-two-observed-intrusion-chains-amid-increased-threat-activity/",
      "published": "2026-07-16T23:12:02.000Z",
      "headline": "ACR Stealer: Two observed intrusion chains amid increased threat activity",
      "topic": "security",
      "score": 78,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft Defender Experts has observed increased ACR Stealer activity using ClickFix lures to trick employees into running malicious commands that steal browser passwords, session tokens, and sensitive documents, potentially enabling access to cloud resources and further intrusion. IT teams should monitor for ClickFix lures, suspicious WebDAV activity, and obfuscated PowerShell execution.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/image-16-1024x430.webp"
    },
    {
      "id": "m365-roadmap-8bf83b6e68",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567304",
      "published": "2026-07-16T23:08:19.000Z",
      "headline": "Microsoft Teams: Explicit recording consent for PSTN participants now available in GCC High and DoD",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-3102e06439",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=562353",
      "published": "2026-07-16T23:08:19.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Session and Response Sharing in M365 Copilot",
      "topic": "ai",
      "score": 36,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-copilot-6d02c83ba4",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-365-copilot-blog/join-us-live-understanding-copilot-cowork-and-managing-copilot/ba-p/4537935",
      "published": "2026-07-16T16:36:52.000Z",
      "headline": "Microsoft schedules Copilot Cowork and Credits management AMA",
      "topic": "ai",
      "score": 25,
      "source": {
        "id": "m365-copilot",
        "name": "Microsoft 365 Copilot Blog"
      },
      "summary": "Microsoft will host a live session on Copilot Cowork adoption, governance, scaling, and credit allocation. Administrators can use the guidance to improve usage visibility and control consumption-based AI costs."
    },
    {
      "id": "msrc-blog-75f2a6e6f9",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/16/least-privilege-for-ai-agents-identity-access-and-tool-binding/",
      "published": "2026-07-16T16:00:00.000Z",
      "headline": "Least privilege for AI agents: Identity, access, and tool binding",
      "topic": "security",
      "score": 55,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "AI agents plan and chain actions across systems without human approval at every step, so overly broad role assignments can grant access far beyond what was intended. Microsoft recommends treating each agent as a separate identity with a dedicated managed identity, least-privilege RBAC, a clearly defined scope, and secure tool binding before broad deployment.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/image-4.webp"
    },
    {
      "id": "prajwal-desai-fa56e68879",
      "url": "https://www.prajwaldesai.com/prajwal-desai-mvp-intune-windows-365/",
      "published": "2026-07-16T12:54:56.000Z",
      "headline": "Renewed as Microsoft MVP for Intune and Windows 365",
      "topic": "endpoint",
      "score": 5,
      "source": {
        "id": "prajwal-desai",
        "name": "Prajwal Desai"
      }
    },
    {
      "id": "call4cloud-c86001e3c7",
      "url": "https://call4cloud.nl/continue-to-sign-in-prompt-autoacceptssopermission/",
      "published": "2026-07-16T09:00:22.000Z",
      "headline": "AutoAcceptSsoPermission: The Continue to Sign In Prompt Fix",
      "topic": "endpoint",
      "score": 39,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "The AutoAcceptSsoPermission policy closes the gap between Windows user-consent requirements and managed-device onboarding by allowing administrators to preapprove the “Continue to sign in” prompt that appears during sign-in. Rudy Ooms demonstrates how the setting works on Intune-managed devices.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/167ce37e-df9f-47cb-a545-0e6fc55f1fb2-e1784192415333.png"
    },
    {
      "id": "msrc-update-guide-1a47b994d6",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59831",
      "published": "2026-07-16T08:39:07.000Z",
      "headline": "CVE-2026-59831 GitHub CLI `gh codespace jupyter` could allow remote code execution when connecting to a malicious Codespace",
      "topic": "security",
      "score": 66,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "janbakker-140bfaec77",
      "url": "https://janbakker.tech/admin-control-for-sso-prompts-in-windows-finally-an-off-switch/",
      "published": "2026-07-16T07:15:29.000Z",
      "headline": "Admin control for SSO prompts in Windows; finally, an off switch!",
      "topic": "identity",
      "score": 48,
      "source": {
        "id": "janbakker",
        "name": "JanBakker.tech"
      },
      "summary": "In the EEA, Windows must now ask users before reusing their sign-in for other Microsoft apps, adding noise in managed environments where SSO is already configured. Microsoft has published a new registry control that lets administrators disable the prompt, available with the July 2026 update for Windows 11 24H2 (KB5101650).",
      "image": "https://janbakker.tech/wp-content/uploads/2026/07/image-6.png"
    },
    {
      "id": "office365-itpros-e0bed1d089",
      "url": "https://office365itpros.com/2026/07/16/schedule-teams-meeting-shared-mbx/?utm_source=rss&utm_medium=rss&utm_campaign=schedule-teams-meeting-shared-mbx",
      "published": "2026-07-16T07:00:00.000Z",
      "headline": "How to Schedule Teams Meetings from Shared Mailboxes",
      "topic": "identity",
      "score": 33,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Despite Microsoft documenting it as supported, uncertainty remains over whether Teams meeting invitations can be sent from a shared mailbox. It works when the delegate has full mailbox access and a Teams license, but currently only in classic Outlook, and the shared mailbox itself does not need a separate license.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/Schedule-Teams-meeting-shared-mailbox.jpg?resize=840%2C548&ssl=1"
    },
    {
      "id": "msrc-blog-f0dd9780aa",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/15/unpacking-asyncapi-npm-supply-chain-compromise-import-time-payload-delivery/",
      "published": "2026-07-16T01:36:21.000Z",
      "headline": "Unpacking the AsyncAPI npm supply chain compromise and import-time payload delivery",
      "topic": "security",
      "score": 86,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "On July 14, Microsoft Threat Intelligence uncovered a coordinated supply-chain compromise of the @asyncapi organization on npm, with five package versions republished using the same malicious loader. Because @asyncapi/specs is a transitive dependency and the code runs at import time rather than through postinstall, affected developer machines, CI/CD pipelines, and production services are not protected by “npm install --ignore-scripts.”",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/image-14.webp"
    },
    {
      "id": "m365-roadmap-090669f772",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567465",
      "published": "2026-07-15T22:55:27.000Z",
      "headline": "Microsoft Teams: Teams shared display mode and peripheral detection available for DoD environments",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "windows-it-pro-b0114db37f",
      "url": "https://techcommunity.microsoft.com/t5/windows-it-pro-blog/now-available-admin-control-for-sso-prompts-in-windows/ba-p/4534613",
      "published": "2026-07-15T22:43:03.000Z",
      "headline": "Now available: Admin control for SSO prompts in Windows",
      "topic": "endpoint",
      "score": 59,
      "source": {
        "id": "windows-it-pro",
        "name": "Windows IT Pro Blog"
      }
    },
    {
      "id": "windows-server-0bc27bb514",
      "url": "https://techcommunity.microsoft.com/t5/windows-server-news-and-best/announcing-trusted-launch-for-virtual-machines-for-windows/ba-p/4537082",
      "published": "2026-07-15T20:24:24.000Z",
      "headline": "Announcing Trusted Launch for Virtual Machines for Windows Server Insiders",
      "topic": "endpoint",
      "score": 52,
      "source": {
        "id": "windows-server",
        "name": "Windows Server News and Best Practices"
      }
    },
    {
      "id": "fasttrack-3ba24c6019",
      "url": "https://techcommunity.microsoft.com/t5/fasttrack-blog/why-identity-is-the-copilot-unlock/ba-p/4537445",
      "published": "2026-07-15T18:30:19.000Z",
      "headline": "Why identity is the Copilot unlock",
      "topic": "identity",
      "score": 38,
      "source": {
        "id": "fasttrack",
        "name": "Microsoft FastTrack Blog"
      },
      "summary": "Microsoft FastTrack argues that stalled Copilot deployments are rarely a licensing or Copilot problem, but an identity problem because Microsoft 365 Copilot authenticates through Entra ID and inherits each user’s Graph access. Part two targets Microsoft 365 administrators and CIOs whose immature identity foundations have prevented users from accessing Copilot and left them without a control plane for future agents.",
      "image": "https://techcommunity.microsoft.com/t5/s/gxcuf89792/images/dS0yMDE4MTgteTNoRWFa?image-coordinates=0%2C0%2C1500%2C1500&image-dimensions=120x120"
    },
    {
      "id": "entra-blog-ebd4c7ed65",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/ai-agents-are-everywhere-are-your-access-controls-ready/ba-p/4531379",
      "published": "2026-07-15T18:16:41.000Z",
      "headline": "AI agents are everywhere. Are your access controls ready?",
      "topic": "identity",
      "score": 51,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      }
    },
    {
      "id": "msrc-blog-8ed526306a",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/15/turning-threat-intelligence-into-decisive-action-with-defender-experts/",
      "published": "2026-07-15T16:00:35.000Z",
      "headline": "Turning threat intelligence into decisive action with Defender Experts",
      "topic": "security",
      "score": 66,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      }
    },
    {
      "id": "sentinel-blog-7664bcd454",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/announcing-the-asim-parser-creation-agentic-experience/ba-p/4532266",
      "published": "2026-07-15T16:00:00.000Z",
      "headline": "Microsoft Open-Sources an AI Workflow for Building Sentinel ASIM Parsers",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "sentinel-blog",
        "name": "Microsoft Sentinel Blog"
      },
      "summary": "Microsoft released an open-source, AI-guided workflow that creates, validates, and packages Microsoft Sentinel ASIM parsers. Security teams can normalize new data sources faster, improving the portability of detections, hunting queries, and analytics across vendor logs."
    },
    {
      "id": "defender-endpoint-f98565b566",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-for-endpoint/new-privileged-token-context-telemetry-boosts-advanced-hunting/ba-p/4528613",
      "published": "2026-07-15T16:00:00.000Z",
      "headline": "New Privileged Token Context Telemetry Boosts Advanced Hunting in Microsoft Defender",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "defender-endpoint",
        "name": "Microsoft Defender for Endpoint Blog"
      }
    },
    {
      "id": "defender-endpoint-3ac428ce0b",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-for-endpoint/introducing-scheduled-antivirus-scans-on-microsoft-defender/ba-p/4524578",
      "published": "2026-07-15T14:05:55.000Z",
      "headline": "Introducing scheduled antivirus scans on Microsoft Defender Linux",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "defender-endpoint",
        "name": "Microsoft Defender for Endpoint Blog"
      }
    },
    {
      "id": "msrc-update-guide-3dda271654",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58644",
      "published": "2026-07-15T14:00:00.000Z",
      "headline": "CVE-2026-58644 Microsoft SharePoint Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4b307e4c80",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50341",
      "published": "2026-07-15T14:00:00.000Z",
      "headline": "CVE-2026-50341 Windows NTFS Information Disclosure Vulnerability",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-43cbd04e51",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50375",
      "published": "2026-07-15T14:00:00.000Z",
      "headline": "CVE-2026-50375 DirectX Graphics Kernel Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a3b3cb7556",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56182",
      "published": "2026-07-15T14:00:00.000Z",
      "headline": "CVE-2026-56182 Windows NTFS Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "core-infra-security-f66987273c",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/customer-offerings-solution-optimization-for-github-copilot/ba-p/4536886",
      "published": "2026-07-15T13:41:27.000Z",
      "headline": "Customer Offerings: Solution Optimization for GitHub Copilot",
      "topic": "ai",
      "score": 37,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "admindroid-102d639f36",
      "url": "https://blog.admindroid.com/block-high-risk-agents-using-identity-protection/",
      "published": "2026-07-15T10:48:52.000Z",
      "headline": "Block High-risk Agents Using Identity Protection",
      "topic": "ai",
      "score": 31,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "AdminDroid shows how to detect high-risk AI agents in Entra and block their access in real time using Identity Protection risk signals. Because a compromised or manipulated agent, including one affected by prompt injection, can operate autonomously across Microsoft 365 until detected, live risk-based Conditional Access is a better option than blocking all agents.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/Automatically-block-high-risk-ai-agents-in-m365-150x150.png"
    },
    {
      "id": "msrc-update-guide-3eac018c92",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58253",
      "published": "2026-07-15T08:41:30.000Z",
      "headline": "CVE-2026-58253 NATS Server: Route API Auth Bypass",
      "topic": "security",
      "score": 31,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e31ff7b445",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58209",
      "published": "2026-07-15T08:41:23.000Z",
      "headline": "CVE-2026-58209 NATS Server: MQTT retained and QoS replay bypass subscribe deny filters",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-0ea169bf75",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58252",
      "published": "2026-07-15T08:41:15.000Z",
      "headline": "CVE-2026-58252 NATS Server: Subscribe Authz Bypass via Wildcard-Overlap",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1c08efb373",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58250",
      "published": "2026-07-15T08:41:08.000Z",
      "headline": "CVE-2026-58250 NATS Server: Pre-auth server crash via double INFO in leafnode handshake",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f436939cb6",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58208",
      "published": "2026-07-15T08:41:00.000Z",
      "headline": "CVE-2026-58208 NATS Server: MQTT-over-WebSocket Path Can Crash WebSocket-Only JetStream Servers Before MQTT Is Enabled",
      "topic": "security",
      "score": 42,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-367531b697",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58251",
      "published": "2026-07-15T08:40:53.000Z",
      "headline": "CVE-2026-58251 NATS Server: Queue Subscribe Authz Bypass",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-aa31410c5e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58207",
      "published": "2026-07-15T08:40:45.000Z",
      "headline": "CVE-2026-58207 NATS Server: Remote crash via integer overflow in Connz pagination",
      "topic": "security",
      "score": 42,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "thomas-maurer-461a1dea15",
      "url": "https://www.thomasmaurer.ch/2026/07/azure-kubernetes-service-aks-on-bare-metal/",
      "published": "2026-07-15T08:10:00.000Z",
      "headline": "Azure Kubernetes Service (AKS) on Bare Metal",
      "topic": "endpoint",
      "score": 32,
      "source": {
        "id": "thomas-maurer",
        "name": "Thomas Maurer"
      }
    },
    {
      "id": "msrc-update-guide-389efd0b2e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57219",
      "published": "2026-07-15T08:02:14.000Z",
      "headline": "CVE-2026-57219 RabbitMQ: Unauthenticated disclosure of OAuth client credentials via an HTTP API endpoint with certain less common OAuth 2 configurations",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-d74b028fa7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15028",
      "published": "2026-07-15T08:02:01.000Z",
      "headline": "CVE-2026-15028 Libarchive: heap overflow oob read while parsing a tar archive contains a pax extended header",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c5729e811a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42505",
      "published": "2026-07-15T08:01:45.000Z",
      "headline": "CVE-2026-42505 Invoking Encrypted Client Hello privacy leak in crypto/tls",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f1921df8a0",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-39822",
      "published": "2026-07-15T08:01:36.000Z",
      "headline": "CVE-2026-39822 Root escape via symlink plus trailing slash in os",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-26b13fbbaf",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57432",
      "published": "2026-07-15T08:01:20.000Z",
      "headline": "CVE-2026-57432 Perl versions through 5.43.10 have an integer overflow in S_measure_struct leading to an out-of-bounds heap read in pack and unpack",
      "topic": "security",
      "score": 20,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-54208bd16d",
      "url": "https://office365itpros.com/2026/07/15/cross-tenant-message-recall/?utm_source=rss&utm_medium=rss&utm_campaign=cross-tenant-message-recall",
      "published": "2026-07-15T07:00:00.000Z",
      "headline": "Cross-Tenant Message Recall and Duplicate DDG Detection Enhance Exchange Online Messaging",
      "topic": "identity",
      "score": 45,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Exchange Online is gaining two features: a check that prevents duplicate dynamic distribution groups and cross-tenant message recall. Administrators must explicitly choose which external tenants may recall messages delivered to their organization and should assess the governance implications before enabling the feature.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/New-Outlook-Recall-message.jpg?resize=840%2C584&ssl=1"
    },
    {
      "id": "m365-roadmap-155e6acc0e",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567671",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Planner: Planner Agent chat in Basic Plans",
      "topic": "ai",
      "score": 39,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-0f783132cb",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567669",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "SharePoint: Enterprise store plugins in Copilot in SharePoint",
      "topic": "ai",
      "score": 44,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-39f229937b",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567668",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "SharePoint: Personal Skills in Copilot in SharePoint",
      "topic": "ai",
      "score": 36,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-f807560ac3",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567667",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Viva: Copilot Analytics - Agent 365 Dashboard in Insights",
      "topic": "ai",
      "score": 42,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-033dc33ba8",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567469",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: PowerPoint Live Light theme support",
      "topic": "endpoint",
      "score": 28,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-b4e07a14fe",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567467",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: Expand presenter visibility in 'Manage what attendees see' for Teams events",
      "topic": "endpoint",
      "score": 26,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-e7a3b755de",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567466",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: Teams events attendance and engagement report policy",
      "topic": "endpoint",
      "score": 35,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-22778b1379",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567462",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: Enhanced live captions settings and right-side panel view",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-3b69a46222",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567458",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: Multilingual recap available with translation button",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-6ccd2e2576",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567457",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: View and manage auto attendant shared voicemails directly in the Queues app",
      "topic": "endpoint",
      "score": 34,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-4057875758",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567300",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: Prevent presence transition to \"Do not disturb\" setting when screen sharing (GCC High, DoD)",
      "topic": "endpoint",
      "score": 28,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-c665868e1f",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567298",
      "published": "2026-07-14T22:41:38.000Z",
      "headline": "Microsoft Teams: External presenters can access production controls for Teams events",
      "topic": "endpoint",
      "score": 36,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "surface-it-pro-f02af24506",
      "url": "https://techcommunity.microsoft.com/t5/surface-it-pro-blog/reimagining-surface-tools-for-business/ba-p/4525227",
      "published": "2026-07-14T20:01:17.000Z",
      "headline": "Reimagining Surface Tools for Business",
      "topic": "endpoint",
      "score": 41,
      "source": {
        "id": "surface-it-pro",
        "name": "Surface IT Pro Blog"
      }
    },
    {
      "id": "prajwal-desai-20d656fa7d",
      "url": "https://www.prajwaldesai.com/windows-11-kb5101650-kb5099414-updates/",
      "published": "2026-07-14T19:28:40.000Z",
      "headline": "Windows 11 KB5101650 & KB5099414 Updates Bring Major Stability Boosts and Smarter Features",
      "topic": "endpoint",
      "score": 39,
      "source": {
        "id": "prajwal-desai",
        "name": "Prajwal Desai"
      }
    },
    {
      "id": "call4cloud-d3ccd3b9d1",
      "url": "https://patchmypc.com/blog/inside-the-improved-on-demand-sync-for-windows-devices/",
      "published": "2026-07-14T19:15:54.000Z",
      "headline": "Inside the Improved on-demand sync for Windows devices",
      "topic": "endpoint",
      "score": 39,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "Rudy Ooms explains how Intune’s improved on-demand sync can now wake sleeping Windows devices, preventing manual sync requests from having no effect while a device is asleep. This enables faster, more reliable deployment of policies and apps to devices in the field.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-57.png"
    },
    {
      "id": "core-infra-security-e114bfd1e2",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/hunting-local-ai-tools-on-macos-with-microsoft-defender-for/ba-p/4536965",
      "published": "2026-07-14T16:42:42.000Z",
      "headline": "Hunting Local AI Tools on macOS with Microsoft Defender for Endpoint",
      "topic": "security",
      "score": 51,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "janbakker-e089b22619",
      "url": "https://janbakker.tech/passkeys-by-default-and-retirement-of-microsoft-provided-sms-and-voice-authentication-a-guide-to-stay-calm/",
      "published": "2026-07-14T16:01:19.000Z",
      "headline": "Passkeys by default and retirement of Microsoft-provided SMS and voice authentication – A guide to stay calm",
      "topic": "identity",
      "score": 43,
      "source": {
        "id": "janbakker",
        "name": "JanBakker.tech"
      },
      "summary": "Jan Bakker provides a practical timeline for the retirement of Microsoft-provided SMS and voice MFA and the shift to passkeys by default. The first milestone is September 1, 2026, when all SMS and voice users will be automatically enabled and prompted to register a passkey at sign-in, so administrators should ensure everyone has a phishing-resistant method before the summer holidays reduce preparation time.",
      "image": "https://janbakker.tech/wp-content/uploads/2026/07/image-5.png"
    },
    {
      "id": "security-community-365a68996c",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-security-community/new-windows-features-to-secure-today-s-data-in-a-post-quantum/ba-p/4523370",
      "published": "2026-07-14T15:56:03.000Z",
      "headline": "New Windows Features to Secure Today’s Data in a Post-Quantum World",
      "topic": "security",
      "score": 60,
      "source": {
        "id": "security-community",
        "name": "Microsoft Security Community Blog"
      }
    },
    {
      "id": "surface-it-pro-7890644e8a",
      "url": "https://techcommunity.microsoft.com/t5/surface-it-pro-blog/surface-for-business-devices-now-available-with-snapdragon-x2/ba-p/4536590",
      "published": "2026-07-14T14:24:48.000Z",
      "headline": "Surface for Business devices now available with Snapdragon® X2 Series platforms",
      "topic": "endpoint",
      "score": 51,
      "source": {
        "id": "surface-it-pro",
        "name": "Surface IT Pro Blog"
      }
    },
    {
      "id": "msrc-update-guide-366c381a29",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48561",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-48561 Microsoft Copilot Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 79,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-64fdf08e07",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42982",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-42982 Windows Secure Kernel Mode Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-65e3922f2a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47296",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-47296 Microsoft SQL Server Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-80d2552358",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-34349",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-34349 Windows Media Information Disclosure Vulnerability",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-af1f987652",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-34346",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-34346 Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-0f64370040",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42900",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-42900 Microsoft Windows App Store Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 66,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-3a66108225",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42975",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-42975 Windows Bluetooth Port Driver Remote Code Execution",
      "topic": "security",
      "score": 73,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-fadf987ceb",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47300",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-47300 ASP.NET Core Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-158555a17e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47302",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-47302 .NET Denial of Service Vulnerability",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-44d5af7c8c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-47303",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-47303 ASP.NET Core Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-764bbdc293",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42990",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-42990 SQL Server ODBC driver Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 77,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-ed1cd8ab3d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48572",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-48572 Windows App Package Installer Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-6f031edaf9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48571",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-48571 Windows App Package Installer Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1028820520",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49162",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-49162 Microsoft Brokering File System Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-494e4f0f8a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49164",
      "published": "2026-07-14T14:00:00.000Z",
      "headline": "CVE-2026-49164 Windows Active Directory Domain Services Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 83,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "o365reports-bfc2a5c7be",
      "url": "https://o365reports.com/manage-folder-and-inbox-rule-feature-in-microsoft-365-groups-in-outlook/?utm_source=rss&utm_medium=rss&utm_campaign=manage-folder-and-inbox-rule-feature-in-microsoft-365-groups-in-outlook",
      "published": "2026-07-14T10:30:16.000Z",
      "headline": "Manage Folders and Rules for Microsoft 365 Groups in Outlook",
      "topic": "identity",
      "score": 20,
      "source": {
        "id": "o365reports",
        "name": "Office 365 Reports (AdminDroid)"
      },
      "summary": "This practical guide explains how owners and members can create folders and inbox rules for Microsoft 365 group mailboxes in Outlook. Group mailboxes contain only Inbox and Deleted Items by default, so the feature can help teams organize growing email volumes, although it has limited relevance for most IT administrators.",
      "image": "https://s.w.org/images/core/emoji/14.0.0/72x72/1f4cc.png"
    },
    {
      "id": "admindroid-026fbb2cb6",
      "url": "https://blog.admindroid.com/passkeys-default-sms-voice-authentication-retirement/",
      "published": "2026-07-14T10:29:38.000Z",
      "headline": "Passkeys Become the Default as Microsoft Entra Retires SMS and Voice Authentication",
      "topic": "identity",
      "score": 32,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "AdminDroid summarizes Microsoft’s transition to a passkey-first Entra ID model and explains why phone-based MFA poses a growing risk as organizations increase their use of AI. SMS and voice codes travel over telephone networks and are vulnerable to interception, social engineering, and SIM swapping, making the article useful background for prioritizing passkey deployment.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/Microsoft-Retires-SMS-Voice-Authentication-Passkeys-Become-the-Default-150x150.png"
    },
    {
      "id": "office365-itpros-c72e638b40",
      "url": "https://office365itpros.com/2026/07/14/entra-sms-one-time-code/?utm_source=rss&utm_medium=rss&utm_campaign=entra-sms-one-time-code",
      "published": "2026-07-14T07:00:00.000Z",
      "headline": "Microsoft to Stop Providing Telephony-Based Authentication Methods for MFA in February 2027",
      "topic": "identity",
      "score": 60,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Microsoft says in MC1426371 that it will stop providing SMS one-time codes and voice calls for MFA on February 1, 2027, and move all tenants toward passkeys as a second factor. Customers that still require SMS or voice must purchase the service from a telecommunications provider through Microsoft Security Store starting September 18, 2026, so administrators should begin deploying passkeys now to prevent users from losing their sign-in method.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/SMS-challenge.png?resize=300%2C236&ssl=1"
    },
    {
      "id": "ourcloudnetwork-1066937e74",
      "url": "https://ourcloudnetwork.com/microsoft-are-set-to-retire-sms-voice-authentication-methods/?utm_source=rss&utm_medium=rss&utm_campaign=microsoft-are-set-to-retire-sms-voice-authentication-methods",
      "published": "2026-07-14T05:02:13.000Z",
      "headline": "Microsoft are set to retire SMS & Voice authentication methods",
      "topic": "identity",
      "score": 53,
      "source": {
        "id": "ourcloudnetwork",
        "name": "Our Cloud Network (Daniel Bradley)"
      }
    },
    {
      "id": "msrc-blog-8650d963e6",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/13/defending-saas-based-applications-against-shinyhunters-oauth-abuse/",
      "published": "2026-07-13T22:02:41.000Z",
      "headline": "Defending SaaS-based applications against ShinyHunters OAuth abuse",
      "topic": "security",
      "score": 74,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft tracked campaigns from 2025 to 2026 in which actors linked to ShinyHunters abused trusted OAuth connections, vishing, and misconfigured guest access to reach SaaS applications such as Salesforce. A single entry point can quickly lead to large-scale CRM data extraction while bypassing standard sign-in alerts, so administrators should monitor OAuth-connected apps, review consent grants, and tighten guest access.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/image-5.webp"
    },
    {
      "id": "core-infra-security-8091babe65",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/check-this-out-cto-guide-july-2026/ba-p/4536608",
      "published": "2026-07-13T20:50:04.000Z",
      "headline": "Check This Out! (CTO!) Guide (July 2026)",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "sentinel-blog-f3bcb79e69",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/building-toward-an-agentic-soc-a-portable-autonomous-malware/ba-p/4526872",
      "published": "2026-07-13T19:09:25.000Z",
      "headline": "Building toward an Agentic SOC: A Portable, Autonomous Malware Investigation Agent",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "sentinel-blog",
        "name": "Microsoft Sentinel Blog"
      }
    },
    {
      "id": "niallbrady-e72fd62f21",
      "url": "https://www.niallbrady.com/2026/07/13/first-looks-at-windows-365-reserve/",
      "published": "2026-07-13T18:40:11.000Z",
      "headline": "First looks at Windows 365 Reserve",
      "topic": "endpoint",
      "score": 35,
      "source": {
        "id": "niallbrady",
        "name": "Just Another Windows Noob (Niall Brady)"
      }
    },
    {
      "id": "windows-server-cf35709ddb",
      "url": "https://techcommunity.microsoft.com/t5/windows-server-news-and-best/patch-the-kernel-skip-the-reboot-the-case-for-arc-enabled/ba-p/4536562",
      "published": "2026-07-13T17:29:33.000Z",
      "headline": "Patch the Kernel, Skip the Reboot: The Case for Arc-Enabled Hotpatching on Windows Server 2025",
      "topic": "endpoint",
      "score": 50,
      "source": {
        "id": "windows-server",
        "name": "Windows Server News and Best Practices"
      }
    },
    {
      "id": "windows-insider-c82c78fd29",
      "url": "https://blogs.windows.com/windows-insider/2026/07/13/improving-windows-search-box-with-less-clutter-and-more-control/",
      "published": "2026-07-13T17:00:32.000Z",
      "headline": "Improving Windows Search Box, with less clutter and more control",
      "topic": "endpoint",
      "score": 38,
      "source": {
        "id": "windows-insider",
        "name": "Windows Insider Blog"
      },
      "summary": "Microsoft is rolling out Windows search box improvements to Insiders in the Experimental Channel, including a cleaner home screen, clearer labels showing whether results come from apps, settings, files, or the web, and no advertising in web results. A new Privacy & security setting controls whether web and Microsoft Store suggestions appear, and endpoint administrators should watch how these controls eventually reach managed Windows clients.",
      "image": "https://winblogs.thesourcemediaassets.com/sites/44/2026/07/1searchhomejuly10github-revised.png"
    },
    {
      "id": "msrc-blog-54f215ceaa",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/13/microsoft-entra-id-security-updates-passkeys-are-the-default-authentication-method-in-entra-id/",
      "published": "2026-07-13T17:00:00.000Z",
      "headline": "Microsoft Entra ID security updates: Passkeys are the default authentication method in Entra ID",
      "topic": "identity",
      "score": 85,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      }
    },
    {
      "id": "msrc-update-guide-3b5ee860ef",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-38096",
      "published": "2026-07-13T08:46:49.000Z",
      "headline": "CVE-2025-38096 wifi: iwlwifi: don't warn when if there is a FW error",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-b4494d62b4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-71072",
      "published": "2026-07-13T08:44:37.000Z",
      "headline": "CVE-2025-71072 shmem: fix recovery on rename failures",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-53e66fb5be",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-4543",
      "published": "2026-07-13T08:38:47.000Z",
      "headline": "CVE-2022-4543 A flaw named \"EntryBleed\" was found in the Linux Kernel Page Table Isolation (KPTI). This issue could allow a local attacker to leak KASLR base via prefetch side-channels based on TLB timing for Intel systems.",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-93fcae6a5b",
      "url": "https://office365itpros.com/2026/07/13/find-obsolete-sites/?utm_source=rss&utm_medium=rss&utm_campaign=find-obsolete-sites",
      "published": "2026-07-13T07:00:00.000Z",
      "headline": "How to Identify Obsolete SharePoint Online Sites with PowerShell",
      "topic": "identity",
      "score": 36,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond demonstrates how to use PowerShell to identify obsolete SharePoint Online sites in large tenants, warning that background processes make LastModifiedDateTime unreliable and prone to false positives. Administrators cleaning up thousands of sites must combine multiple activity sources to determine which sites are truly inactive.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/06/Obsolete-SPO-Sites.jpg?resize=840%2C408&ssl=1"
    },
    {
      "id": "ourcloudnetwork-db8c3b9b12",
      "url": "https://ourcloudnetwork.com/use-the-new-entra-soc-identity-responder-admin-role/?utm_source=rss&utm_medium=rss&utm_campaign=use-the-new-entra-soc-identity-responder-admin-role",
      "published": "2026-07-13T06:28:40.000Z",
      "headline": "Use the new Entra SOC Identity Responder Admin Role",
      "topic": "identity",
      "score": 43,
      "source": {
        "id": "ourcloudnetwork",
        "name": "Our Cloud Network (Daniel Bradley)"
      }
    },
    {
      "id": "danielengberg-5bbf20af0c",
      "url": "https://www.danielengberg.com/newsletter-june-15-july-11-2026/",
      "published": "2026-07-12T16:20:31.000Z",
      "headline": "Endpoint Management Newsletter – June 15 – July 11, 2026",
      "topic": "endpoint",
      "score": 27,
      "source": {
        "id": "danielengberg",
        "name": "Daniel Engberg — Endpoint Management"
      }
    },
    {
      "id": "msrc-update-guide-d7dae31e59",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45489",
      "published": "2026-07-12T14:00:00.000Z",
      "headline": "CVE-2026-45489 Microsoft Edge (Chromium-based) Spoofing Vulnerability",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "call4cloud-22c2fd29e5",
      "url": "https://patchmypc.com/blog/the-intune-mdm-device-certificate-ksp-renewal-bug-why-23h2-devices-stopped-renewing/",
      "published": "2026-07-12T08:28:14.000Z",
      "headline": "The Intune MDM Device Certificate KSP Renewal Bug: Why the Bit4id Provider Caused it",
      "topic": "endpoint",
      "score": 43,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "Rudy Ooms investigates why Intune MDM device certificates stopped renewing on some Windows 11 23H2 machines and identifies Bit4id’s Key Storage Provider as the cause. Because an unrenewed certificate can eventually cause the device to lose trust and break MDM communication, Intune administrators should check which KSP affected certificates use to prevent devices from silently dropping out.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-43-1024x331.png"
    },
    {
      "id": "msrc-update-guide-290cc4e30a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59874",
      "published": "2026-07-12T08:01:47.000Z",
      "headline": "CVE-2026-59874 node-tar: Negative tar entry size causes infinite loop in archive replace",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-caa0580d2f",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59873",
      "published": "2026-07-12T08:01:40.000Z",
      "headline": "CVE-2026-59873 node-tar: Decompression/parse DoS via unlimited input",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-cb2b109346",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59871",
      "published": "2026-07-12T08:01:34.000Z",
      "headline": "CVE-2026-59871 node-tar: Process crash via PAX numeric path type confusion",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-967e305baf",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-15308",
      "published": "2026-07-12T08:01:27.000Z",
      "headline": "CVE-2026-15308 Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "admindroid-8a6328ef93",
      "url": "https://blog.admindroid.com/manage-federated-group-chats-with-teams-powershell-controls/",
      "published": "2026-07-12T05:30:00.000Z",
      "headline": "Manage Federated Group Chats with Teams PowerShell Controls",
      "topic": "identity",
      "score": 36,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "Microsoft has added two tenant parameters to the Set-CsTenantFederationConfiguration PowerShell cmdlet to enforce external-access rules throughout the lifecycle of federated Teams group chats. Administrators should enable the controls so updated policies apply to existing chats, preventing external users from retaining access or being added through a third-party tenant when policy no longer permits it.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/New-Teams-PowerShell-Controls-for-Federated-Group-Chats-150x150.png"
    },
    {
      "id": "msrc-update-guide-8981b10c52",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14428",
      "published": "2026-07-11T22:41:38.000Z",
      "headline": "Chromium: CVE-2026-14428 Insufficient validation of untrusted input in Dawn",
      "topic": "security",
      "score": 40,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-6d618e8194",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-13777",
      "published": "2026-07-11T22:39:58.000Z",
      "headline": "Chromium: CVE-2026-13777 Insufficient validation of untrusted input in iOSWeb",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-790b0e93db",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14397",
      "published": "2026-07-11T22:39:54.000Z",
      "headline": "Chromium: CVE-2026-14397 Out of bounds write in ANGLE",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f079c423b4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14396",
      "published": "2026-07-11T22:39:53.000Z",
      "headline": "Chromium: CVE-2026-14396 Out of bounds read in ANGLE",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f8830c1314",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-13778",
      "published": "2026-07-11T22:39:26.000Z",
      "headline": "Chromium: CVE-2026-13778 Use after free in WebUSB",
      "topic": "security",
      "score": 44,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7f6d6619f6",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14401",
      "published": "2026-07-11T22:39:23.000Z",
      "headline": "Chromium: CVE-2026-14401 Insufficient validation of untrusted input in ANGLE",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e27306caf3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14405",
      "published": "2026-07-11T22:37:50.000Z",
      "headline": "Chromium: CVE-2026-14405 Uninitialized Use in V8",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-079ab491de",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14404",
      "published": "2026-07-11T22:37:48.000Z",
      "headline": "Chromium: CVE-2026-14404 Inappropriate implementation in PDFium",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-326259fbc5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14403",
      "published": "2026-07-11T22:37:47.000Z",
      "headline": "Chromium: CVE-2026-14403 Use after free in V8",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-dd91536f61",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14402",
      "published": "2026-07-11T22:37:45.000Z",
      "headline": "Chromium: CVE-2026-14402 Uninitialized Use in ANGLE",
      "topic": "security",
      "score": 33,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-6e81e5427c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14400",
      "published": "2026-07-11T22:37:44.000Z",
      "headline": "Chromium: CVE-2026-14400 Out of bounds write in ANGLE",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-2023a0ecc9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14399",
      "published": "2026-07-11T22:37:43.000Z",
      "headline": "Chromium: CVE-2026-14399 Uninitialized Use in Dawn",
      "topic": "security",
      "score": 33,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-97b1618bb1",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14398",
      "published": "2026-07-11T22:37:41.000Z",
      "headline": "Chromium: CVE-2026-14398 Use after free in ANGLE",
      "topic": "security",
      "score": 39,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-6c04903800",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14395",
      "published": "2026-07-11T22:37:40.000Z",
      "headline": "Chromium: CVE-2026-14395 Out of bounds write in V8",
      "topic": "security",
      "score": 46,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-98d8bd43ae",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14394",
      "published": "2026-07-11T22:37:39.000Z",
      "headline": "Chromium: CVE-2026-14394 Use after free in V8",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "admindroid-2777316ab6",
      "url": "https://blog.admindroid.com/configure-cross-tenant-message-recall-exchange-online/",
      "published": "2026-07-11T10:29:19.000Z",
      "headline": "Exchange Online Now Supports Cross-Tenant Message Recall",
      "topic": "identity",
      "score": 42,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "Microsoft is extending Message Recall in Exchange Online across tenants, allowing email accidentally sent to other Microsoft 365 organizations to be recalled. A recall succeeds only when the recipient tenant has explicitly allowed it, giving admins a new way to limit damage while keeping control with the recipient.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/Microsoft-Introduces-Cross-Tenant-Message-Recall-in-Exchange-Online-150x150.png"
    },
    {
      "id": "msrc-update-guide-074cebf1cb",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54908",
      "published": "2026-07-11T08:41:05.000Z",
      "headline": "CVE-2026-54908 Pion DTLS: Denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-51749ece89",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-7598",
      "published": "2026-07-11T08:38:52.000Z",
      "headline": "CVE-2024-7598 Network restriction bypass via race condition during namespace termination",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-9ed1677ec7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56000",
      "published": "2026-07-11T08:08:33.000Z",
      "headline": "CVE-2026-56000 xorg-x11-server / xwayland GLX contextTags Use-After-Free in CommonMakeCurrent()",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-ba5a8ec616",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59925",
      "published": "2026-07-11T08:07:05.000Z",
      "headline": "CVE-2026-59925 inline_parser: quadratic-time parsing on long runs of `**x**` and `***x***` emphasis pairs",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-2918a83ead",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59926",
      "published": "2026-07-11T08:06:59.000Z",
      "headline": "CVE-2026-59926 Mistune: XSS via unescaped class option in Admonition directive",
      "topic": "security",
      "score": 20,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-6b47b5cefb",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14740",
      "published": "2026-07-11T08:06:45.000Z",
      "headline": "CVE-2026-14740 DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-057dbbdfd8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14380",
      "published": "2026-07-11T08:06:39.000Z",
      "headline": "CVE-2026-14380 DBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced Profile",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-805282cf11",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59998",
      "published": "2026-07-11T08:02:59.000Z",
      "headline": "CVE-2026-59998 sshd in OpenSSH before 10.4 has an undocumented security-relevant behavior: GSSAPIStrictAcceptorCheck has no value if the server is in Windows Active Directory.",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-8fbe938320",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20244",
      "published": "2026-07-11T08:02:00.000Z",
      "headline": "CVE-2026-20244 ClamAV DMG File Processing Denial of Service Vulnerability",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-86086618ba",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20217",
      "published": "2026-07-11T08:01:47.000Z",
      "headline": "CVE-2026-20217 ClamAV PESpin File Format Processing Out-of-Bounds Memory Corruption Vulnerability",
      "topic": "security",
      "score": 52,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-08ff6c7d7d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20216",
      "published": "2026-07-11T08:01:41.000Z",
      "headline": "CVE-2026-20216 ClamAV InstallShield File Format Processing Resource Exhaustion Vulnerability",
      "topic": "security",
      "score": 45,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-196ce8e19c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20215",
      "published": "2026-07-11T08:01:35.000Z",
      "headline": "CVE-2026-20215 ClamAV 7Zip File Format Processing Out-of-Bounds Memory Corruption Vulnerability",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-836dbef164",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20214",
      "published": "2026-07-11T08:01:29.000Z",
      "headline": "CVE-2026-20214 ClamAV FSG File Format Processing Out-of-Bounds Memory Corruption Vulnerability",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e1fd12b178",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59856",
      "published": "2026-07-11T08:01:16.000Z",
      "headline": "CVE-2026-59856 Vim: Arbitrary Code Execution via PHP Omni-Completion",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "m365-roadmap-acd20fedfe",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567468",
      "published": "2026-07-10T21:58:35.000Z",
      "headline": "Microsoft Teams: Modernized Gallery view in Teams Rooms on Android",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-6422b49541",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566999",
      "published": "2026-07-10T21:58:35.000Z",
      "headline": "Microsoft Copilot Studio: Enable express mode for flows invoked by an agent or app",
      "topic": "ai",
      "score": 39,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "mikemdm-4ca95a1776",
      "url": "https://mikemdm.de/2026/07/10/windows-365-frontline-was-renamed-to-windows-365-flex/",
      "published": "2026-07-10T18:10:18.000Z",
      "headline": "Windows 365 Frontline was renamed to Windows 365 Flex",
      "topic": "endpoint",
      "score": 43,
      "source": {
        "id": "mikemdm",
        "name": "Mike's MDM Blog"
      },
      "summary": "Microsoft has renamed Windows 365 Frontline to Windows 365 Flex, with the rebranding now rolling out across Intune, including changing the device model value from “CloudPC Frontline” to “Windows 365 Flex.” Admins should update assignment filters, dynamic Entra group rules, and device category scripts to prevent devices from dropping out of policies.",
      "image": "https://mikemdm.de/wp-content/uploads/2026/07/grafik-1-844x1024.png"
    },
    {
      "id": "windows-admin-center-e35becc614",
      "url": "https://techcommunity.microsoft.com/t5/windows-admin-center-blog/windows-admin-center-version-2606-is-now-generally-available/ba-p/4530811",
      "published": "2026-07-10T17:31:05.000Z",
      "headline": "Microsoft Releases Windows Admin Center 2606 with Security Fixes",
      "topic": "endpoint",
      "score": 63,
      "source": {
        "id": "windows-admin-center",
        "name": "Windows Admin Center Blog"
      },
      "summary": "Microsoft made Windows Admin Center 2606 generally available in Administration Mode and updated its installer to build 2.7.4. The release improves reliability and accessibility while correcting elevation-of-privilege and remote-code-execution issues, so administrators should prioritize upgrading management hosts."
    },
    {
      "id": "msrc-blog-5aa07a5339",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/10/securing-our-future-july-2026-progress-report-on-microsofts-secure-future-initiative/",
      "published": "2026-07-10T16:00:00.000Z",
      "headline": "Securing our future: July 2026 progress report on Microsoft’s Secure Future Initiative",
      "topic": "security",
      "score": 44,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      }
    },
    {
      "id": "core-infra-security-26d80c91c7",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/when-arc-goes-silent-turning-visibility-gaps-into-soc-action/ba-p/4535711",
      "published": "2026-07-10T12:07:15.000Z",
      "headline": "When Arc Goes Silent: Turning Visibility Gaps into SOC Action",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "andrew-taylor-3f7f98eb87",
      "url": "https://andrewstaylor.com/2026/07/10/intune-newsletter-10th-july-2026/",
      "published": "2026-07-10T10:24:35.000Z",
      "headline": "Intune Newsletter – 10th July 2026",
      "topic": "endpoint",
      "score": 33,
      "source": {
        "id": "andrew-taylor",
        "name": "Andrew Taylor (andrewstaylor.com)"
      }
    },
    {
      "id": "msrc-update-guide-fe5cf48d4c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56288",
      "published": "2026-07-10T08:01:37.000Z",
      "headline": "CVE-2026-56288 NULL Pointer Dereference in GNU patch",
      "topic": "security",
      "score": 42,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e66fbdd4e4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56289",
      "published": "2026-07-10T08:01:27.000Z",
      "headline": "CVE-2026-56289 Loop with Unreachable Exit Condition in GNU patch",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e7d8d0ea7a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-59818",
      "published": "2026-07-10T08:01:17.000Z",
      "headline": "CVE-2026-59818 etcd: gRPC client listener does not enforce `--client-crl-file` certificate revocation",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-ae7f0fcd59",
      "url": "https://office365itpros.com/2026/07/10/m365mutator-test-data/?utm_source=rss&utm_medium=rss&utm_campaign=m365mutator-test-data",
      "published": "2026-07-10T07:00:00.000Z",
      "headline": "Make Your Test Data Less Boring with M365Mutator",
      "topic": "identity",
      "score": 36,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond has created M365Mutator, a local open-source tool that connects to a tenant through Microsoft Graph and generates realistic Entra ID user changes, email, calendar entries, and OneDrive and SharePoint file operations. It is useful for demos, backup testing, and Graph development when static CDX tenants provide stale, uninteresting data.",
      "image": "https://i0.wp.com/github.com/probichaux/m365mutator/raw/main/public/screenshot-identities.png?w=840&ssl=1"
    },
    {
      "id": "ourcloudnetwork-27fbb9705b",
      "url": "https://ourcloudnetwork.com/microsoft-entra-id-retires-custom-controls-for-external-mfa/?utm_source=rss&utm_medium=rss&utm_campaign=microsoft-entra-id-retires-custom-controls-for-external-mfa",
      "published": "2026-07-10T06:22:28.000Z",
      "headline": "Microsoft Entra ID Retires Custom Controls For External MFA",
      "topic": "identity",
      "score": 48,
      "source": {
        "id": "ourcloudnetwork",
        "name": "Our Cloud Network (Daniel Bradley)"
      }
    },
    {
      "id": "m365-copilot-e486a8cba9",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-365-copilot-blog/available-today-openai-s-gpt-5-6-in-microsoft-365-copilot/ba-p/4533152",
      "published": "2026-07-10T01:55:02.000Z",
      "headline": "Available today: OpenAI’s GPT-5.6 in Microsoft 365 Copilot",
      "topic": "ai",
      "score": 77,
      "source": {
        "id": "m365-copilot",
        "name": "Microsoft 365 Copilot Blog"
      }
    },
    {
      "id": "hybridbrothers-ca7a511881",
      "url": "https://hybridbrothers.com/posts/agentinfo-cloudappevents-correlation/",
      "published": "2026-07-10T00:00:00.000Z",
      "headline": "Correlating AgentsInfo with CloudAppEvents",
      "topic": "security",
      "score": 39,
      "source": {
        "id": "hybridbrothers",
        "name": "Hybrid Brothers"
      }
    },
    {
      "id": "m365-roadmap-f3fc0202f4",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566697",
      "published": "2026-07-09T23:26:18.000Z",
      "headline": "OneDrive: PDF annotation for sensitivity-label protected PDFs in the OneDrive apps (iOS and Android)",
      "topic": "security",
      "score": 31,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-6d2b2b0586",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567472",
      "published": "2026-07-09T23:00:39.000Z",
      "headline": "Microsoft Purview: Insider Risk Management - DS Triage Agent for IRM available in Defender",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-7ce91b3c1d",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567470",
      "published": "2026-07-09T23:00:39.000Z",
      "headline": "OneDrive: Exclude specific folders from syncing",
      "topic": "endpoint",
      "score": 41,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-6b99d5ec05",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567317",
      "published": "2026-07-09T23:00:39.000Z",
      "headline": "Minecraft Education: Learning Cubed Update with Cross-Tenant Multiplayer and Latest Bedrock Features",
      "topic": "endpoint",
      "score": 11,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-51fea581dc",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567009",
      "published": "2026-07-09T23:00:39.000Z",
      "headline": "SharePoint: Create new workflows with Copilot in SharePoint",
      "topic": "ai",
      "score": 45,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-83263ef35b",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566704",
      "published": "2026-07-09T23:00:39.000Z",
      "headline": "Microsoft 365 app: New Copilot Notebooks design in the Microsoft 365 Copilot App (Android)",
      "topic": "ai",
      "score": 34,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-a49ab10651",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566696",
      "published": "2026-07-09T23:00:39.000Z",
      "headline": "Thumbnail view for PDFs is available in OneDrive and SharePoint on the web",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "azure-network-security-ad6d6ebba6",
      "url": "https://techcommunity.microsoft.com/t5/azure-network-security-blog/azure-ddos-protection-azure-waf-a-layered-defense-for-modern/ba-p/4523745",
      "published": "2026-07-09T21:33:51.000Z",
      "headline": "Azure DDoS Protection & Azure WAF: A Layered Defense for Modern DDoS Attacks",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "azure-network-security",
        "name": "Azure Network Security Blog"
      }
    },
    {
      "id": "azure-network-security-461d99d7b6",
      "url": "https://techcommunity.microsoft.com/t5/azure-network-security-blog/secure-native-access-to-azure-kubernetes-service-aks-private/ba-p/4535123",
      "published": "2026-07-09T18:07:27.000Z",
      "headline": "Secure Native Access to Azure Kubernetes Service (AKS) Private Clusters with Azure Bastion",
      "topic": "security",
      "score": 48,
      "source": {
        "id": "azure-network-security",
        "name": "Azure Network Security Blog"
      }
    },
    {
      "id": "windows-it-pro-506de2c036",
      "url": "https://techcommunity.microsoft.com/t5/windows-it-pro-blog/understanding-windows-monthly-updates-servicing-explained/ba-p/4532290",
      "published": "2026-07-09T16:00:00.000Z",
      "headline": "Understanding Windows monthly updates: Servicing explained",
      "topic": "endpoint",
      "score": 36,
      "source": {
        "id": "windows-it-pro",
        "name": "Windows IT Pro Blog"
      }
    },
    {
      "id": "azure-virtual-desktop-02fa78dfba",
      "url": "https://techcommunity.microsoft.com/t5/azure-virtual-desktop-blog/enhanced-host-pool-management-for-azure-virtual-desktop-is-now/ba-p/4534612",
      "published": "2026-07-09T16:00:00.000Z",
      "headline": "Enhanced host pool management for Azure Virtual Desktop is now generally available",
      "topic": "endpoint",
      "score": 70,
      "source": {
        "id": "azure-virtual-desktop",
        "name": "Azure Virtual Desktop Blog"
      }
    },
    {
      "id": "msrc-blog-ad8cf57f48",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/09/gigawiper-anatomy-of-a-destructive-backdoor-assembled-from-multiple-malware/",
      "published": "2026-07-09T15:00:00.000Z",
      "headline": "GigaWiper: Anatomy of a destructive backdoor assembled from multiple malware",
      "topic": "security",
      "score": 79,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft Threat Intelligence has analyzed GigaWiper, a Golang-based backdoor that combines several destructive malware families in one implant, from physical disk wiping to fake ransomware whose encryption keys are never stored. Threat actors select the destruction method through on-demand commands, making attacks more flexible and difficult to predict, and security teams should review the Defender detections and indicators of compromise in the report.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/Fig1-GigaWiper.webp"
    },
    {
      "id": "handsontek-3b3bb48eee",
      "url": "https://handsontek.net/hands-microsoft-365-pulse-weekly-updates-week-27/",
      "published": "2026-07-09T14:24:42.000Z",
      "headline": "Hands-On Microsoft 365 Pulse – Weekly Updates (Week 27)",
      "topic": "ai",
      "score": 31,
      "source": {
        "id": "handsontek",
        "name": "HANDS ON tek (João Ferreira)"
      },
      "summary": "This week’s HANDS ON tek Pulse covers three SharePoint updates: SharePoint links in Teams now open in the SharePoint app, a new button web part arriving in late July can trigger predefined Copilot prompts or Power Automate flows, and admins can classify sites into custom groups in Catalog Management. It is useful for daily SharePoint administrators but is primarily a weekly roundup.",
      "image": "https://handsontek.net/images/hot2/Week%2027%202026/hero.png"
    },
    {
      "id": "call4cloud-5888253455",
      "url": "https://patchmypc.com/blog/autopilot-failing-with-0x81036501-expected-mdm-uri-was-not-found/",
      "published": "2026-07-09T11:16:06.000Z",
      "headline": "Autopilot failing with 0x81036501: Expected MDM URI was not found",
      "topic": "endpoint",
      "score": 45,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "Rudy Ooms of Call4Cloud examines incident IT1420224, in which Autopilot devices in tenants on ASU 0102 failed to enroll in Intune and returned error 0x81036501, “Expected MDM URI was not found.” The post explains what triggers the MDM URI error and what caused the incident for endpoint admins troubleshooting stalled enrollments.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image.jpeg"
    },
    {
      "id": "admindroid-b441c6d186",
      "url": "https://blog.admindroid.com/how-to-disable-print-spooler-on-domain-controllers/",
      "published": "2026-07-09T10:30:05.000Z",
      "headline": "How to Disable the Print Spooler Service on Domain Controllers",
      "topic": "security",
      "score": 26,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "AdminDroid explains why the Print Spooler service should be disabled on domain controllers and outlines several ways to do so. The service is enabled by default and gives attackers a direct path to remote code execution and privilege escalation on critical servers, making its removal a recommended part of Active Directory hardening.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/How-to-Disable-Print-Spooler-on-Domain-Controller-150x150.png"
    },
    {
      "id": "msrc-update-guide-6c731e6135",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-8925",
      "published": "2026-07-09T08:49:49.000Z",
      "headline": "CVE-2026-8925 SASL double-free",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-912264a765",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11856",
      "published": "2026-07-09T08:47:43.000Z",
      "headline": "CVE-2026-11856 cross-origin Digest auth state leak",
      "topic": "security",
      "score": 34,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7e5392a341",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-9547",
      "published": "2026-07-09T08:47:17.000Z",
      "headline": "CVE-2026-9547 SSH improper host validation",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-86687cdaa8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-61727",
      "published": "2026-07-09T08:42:39.000Z",
      "headline": "CVE-2025-61727 Improper application of excluded DNS name constraints when verifying wildcard names in crypto/x509",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-cedc38dbee",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-58188",
      "published": "2026-07-09T08:41:05.000Z",
      "headline": "CVE-2025-58188 Panic when validating certificates with DSA public keys in crypto/x509",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-53f4eae119",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-61724",
      "published": "2026-07-09T08:40:56.000Z",
      "headline": "CVE-2025-61724 Excessive CPU consumption in Reader.ReadResponse in net/textproto",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-2824fab4a5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-23131",
      "published": "2026-07-09T08:40:16.000Z",
      "headline": "CVE-2025-23131 dlm: prevent NPD when writing a positive value to event_done",
      "topic": "security",
      "score": 20,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-593fb5453c",
      "url": "https://office365itpros.com/2026/07/09/inactive-distribution-list-2026/?utm_source=rss&utm_medium=rss&utm_campaign=inactive-distribution-list-2026",
      "published": "2026-07-09T07:00:00.000Z",
      "headline": "How to Check Distribution Lists for Activity Over the Last 90 Days",
      "topic": "identity",
      "score": 36,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond explains how to update PowerShell scripts for identifying inactive distribution lists now that the legacy Get-MessageTrace cmdlet was retired and stopped working in September 2025. The new Get-MessageTraceV2 cmdlet can retrieve up to 90 days of message-trace data, but only in ten-day segments.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/06/Inactive-DL-Check.jpg?resize=840%2C425&ssl=1"
    },
    {
      "id": "m365-roadmap-f2a4be4eee",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567305",
      "published": "2026-07-08T23:10:57.000Z",
      "headline": "Microsoft Teams: Specify who has control of production tools in Teams meetings and events",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-48d29b5d5c",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567302",
      "published": "2026-07-08T23:10:57.000Z",
      "headline": "Microsoft Teams: Ability for IT admins to customize the user notification messages for recording and transcription in calls",
      "topic": "endpoint",
      "score": 35,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-489b289b7c",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567301",
      "published": "2026-07-08T23:10:57.000Z",
      "headline": "Microsoft Teams: New controls for quick views in the chat list",
      "topic": "endpoint",
      "score": 28,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-fb9563bced",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567314",
      "published": "2026-07-08T23:10:57.000Z",
      "headline": "Microsoft Teams: SharePoint app in Teams",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-bd511e0364",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567311",
      "published": "2026-07-08T23:10:57.000Z",
      "headline": "Microsoft Purview: Data Loss Prevention - Collection and DLP Policies for Intune-Policy Managed Apps",
      "topic": "security",
      "score": 46,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "fasttrack-487b6affa4",
      "url": "https://techcommunity.microsoft.com/t5/fasttrack-blog/who-actually-blocks-ai-in-healthcare-and-why/ba-p/4535044",
      "published": "2026-07-08T21:22:53.000Z",
      "headline": "Who actually blocks AI in healthcare (and why)",
      "topic": "ai",
      "score": 38,
      "source": {
        "id": "fasttrack",
        "name": "Microsoft FastTrack Blog"
      },
      "summary": "Microsoft’s FastTrack team explains why Microsoft 365 Copilot pilots in healthcare often succeed technically but stall in governance committees and lose funding. Part one of three identifies who can block an AI project, what they fear versus what they say, and the order in which they should be engaged.",
      "image": "https://techcommunity.microsoft.com/t5/s/gxcuf89792/images/dS0yMDE4MTgteTNoRWFa?image-coordinates=0%2C0%2C1500%2C1500&image-dimensions=120x120"
    },
    {
      "id": "defender-office365-189b5c6eeb",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-for-office/defending-the-inbox-against-prompt-injection-attacks/ba-p/4534636",
      "published": "2026-07-08T18:16:22.000Z",
      "headline": "Defending the Inbox Against Prompt Injection Attacks",
      "topic": "security",
      "score": 68,
      "source": {
        "id": "defender-office365",
        "name": "Microsoft Defender for Office 365 Blog"
      }
    },
    {
      "id": "windows-it-pro-76467d69b4",
      "url": "https://techcommunity.microsoft.com/t5/windows-it-pro-blog/rdp-multipath-with-redundant-tcp-is-now-generally-available-for/ba-p/4534610",
      "published": "2026-07-08T17:54:32.000Z",
      "headline": "RDP Multipath with redundant TCP is now generally available for Windows 365 and AVD",
      "topic": "endpoint",
      "score": 65,
      "source": {
        "id": "windows-it-pro",
        "name": "Windows IT Pro Blog"
      }
    },
    {
      "id": "msrc-blog-8ee9324ec5",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/08/protecting-microsoft-at-ai-speed-how-sfi-proactively-hardens-our-cloud/",
      "published": "2026-07-08T17:00:00.000Z",
      "headline": "Protecting Microsoft at AI speed: How SFI proactively hardens our cloud",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      }
    },
    {
      "id": "windows-it-pro-64a4ab3ea0",
      "url": "https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-365-for-agents-a-secured-execution-environment-for-ai/ba-p/4529336",
      "published": "2026-07-08T16:00:00.000Z",
      "headline": "Windows 365 for Agents: A secured execution environment for AI agents",
      "topic": "ai",
      "score": 68,
      "source": {
        "id": "windows-it-pro",
        "name": "Windows IT Pro Blog"
      }
    },
    {
      "id": "fasttrack-12504c62dd",
      "url": "https://techcommunity.microsoft.com/t5/fasttrack-blog/limiting-microsoft-365-copilot-data-exposure-risk-with-zero/ba-p/4534642",
      "published": "2026-07-08T14:48:12.000Z",
      "headline": "Limiting Microsoft 365 Copilot data exposure risk with Zero Trust apps and data controls",
      "topic": "security",
      "score": 44,
      "source": {
        "id": "fasttrack",
        "name": "Microsoft FastTrack Blog"
      },
      "summary": "Microsoft FastTrack explains how to limit the second layer of Microsoft 365 Copilot risk: which data Copilot can read, by addressing overshared SharePoint and OneDrive content and implementing Purview sensitivity labels and DLP, SharePoint Advanced Management, Entra ID Governance, and Sentinel before scaling deployment. Years of oversharing can become searchable by any licensed user, so admins should establish these controls before rollout rather than afterward.",
      "image": "https://techcommunity.microsoft.com/t5/s/gxcuf89792/images/dS0xMjkzMTEtMjAxMjgyaTRDRDk1ODBCNDJDQzQ3MjM?image-dimensions=120x120"
    },
    {
      "id": "msrc-update-guide-bb0f8dffd0",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42980",
      "published": "2026-07-08T14:00:00.000Z",
      "headline": "CVE-2026-42980 NT OS Kernel Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-9679075e5e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50656",
      "published": "2026-07-08T14:00:00.000Z",
      "headline": "CVE-2026-50656 Microsoft Defender Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-92180bdb99",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58525",
      "published": "2026-07-08T14:00:00.000Z",
      "headline": "CVE-2026-58525 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "defender-xdr-246cc64f78",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-xdr-blog/microsoft-defender-now-integrates-with-dragos-forescout-armis/ba-p/4534936",
      "published": "2026-07-08T13:08:36.000Z",
      "headline": "Microsoft Defender now integrates with Dragos, Forescout, & Armis for OT Security",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "defender-xdr",
        "name": "Microsoft Defender XDR Blog"
      }
    },
    {
      "id": "admindroid-ff6a3de5e5",
      "url": "https://blog.admindroid.com/how-to-deploy-powershell-scripts-in-microsoft-intune/",
      "published": "2026-07-08T10:30:37.000Z",
      "headline": "How to Deploy PowerShell Scripts in Microsoft Intune",
      "topic": "endpoint",
      "score": 26,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "AdminDroid covers the three ways to deploy PowerShell scripts to Windows devices through Intune: platform scripts, remediations, and Win32 apps. The guide explains when to use each method for one-time execution, continuous compliance monitoring, or packaged deployment, and how to track execution status per device.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/Deploy-PowerShell-Scripts-using-Microsoft-Intune-3-150x150.png"
    },
    {
      "id": "office365-itpros-25e61caa0d",
      "url": "https://office365itpros.com/2026/07/08/managers-and-direct-reports/?utm_source=rss&utm_medium=rss&utm_campaign=managers-and-direct-reports",
      "published": "2026-07-08T07:00:00.000Z",
      "headline": "How to Report Managers and Direct Reports from Entra ID",
      "topic": "identity",
      "score": 32,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond updates his guide to reporting managers and direct reports from Entra ID, replacing the retired Azure AD modules with Microsoft Graph. The article explains why a basic Get-MgUserDirectReport approach scales poorly in larger organizations and presents a more efficient method for admins who rely on accurate manager fields.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/02/Managers-and-Direct-Reports.jpg?resize=840%2C468&ssl=1"
    },
    {
      "id": "ourcloudnetwork-c7cea4136c",
      "url": "https://ourcloudnetwork.com/why-you-shouldnt-bypass-mfa-for-your-office-ip-adresses/?utm_source=rss&utm_medium=rss&utm_campaign=why-you-shouldnt-bypass-mfa-for-your-office-ip-adresses",
      "published": "2026-07-08T05:32:30.000Z",
      "headline": "Why you Shouldn’t bypass MFA for your office IP adresses",
      "topic": "identity",
      "score": 35,
      "source": {
        "id": "ourcloudnetwork",
        "name": "Our Cloud Network (Daniel Bradley)"
      }
    },
    {
      "id": "m365-roadmap-b60230f3cd",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567306",
      "published": "2026-07-07T23:10:08.000Z",
      "headline": "Microsoft Teams: Enhanced delegated calling with delegate call access restrictions and join notifications",
      "topic": "endpoint",
      "score": 32,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-6048729a38",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567010",
      "published": "2026-07-07T23:10:08.000Z",
      "headline": "Microsoft Purview: Data Loss Prevention - User Based Aggregation of DLP Alerts",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-85dd3751d6",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567319",
      "published": "2026-07-07T23:01:01.000Z",
      "headline": "Outlook: Categorize Emails by Dragging Them onto a Favorite Category",
      "topic": "endpoint",
      "score": 25,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-fed1d25b98",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567318",
      "published": "2026-07-07T23:01:01.000Z",
      "headline": "Outlook: Reply with a Template in Rules",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-21b9728040",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567315",
      "published": "2026-07-07T23:01:01.000Z",
      "headline": "Planner: Capabilities in Microsoft Cowork",
      "topic": "ai",
      "score": 45,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-ad82a6f58f",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567313",
      "published": "2026-07-07T23:01:01.000Z",
      "headline": "Microsoft Purview: Data Lifecycle Management - Graph API Support for Archive Mailboxes",
      "topic": "security",
      "score": 46,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-a67ee0d0c1",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566859",
      "published": "2026-07-07T23:01:01.000Z",
      "headline": "Microsoft Copilot Studio: Use SharePoint lists as a knowledge source",
      "topic": "ai",
      "score": 41,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "entra-blog-a20b819fcf",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/govern-ai-agent-identities-and-access-the-same-way-you-govern/ba-p/4529302",
      "published": "2026-07-07T21:34:53.000Z",
      "headline": "Govern AI agent identities and access the same way you govern your employees",
      "topic": "identity",
      "score": 70,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      }
    },
    {
      "id": "fasttrack-103ad0da3e",
      "url": "https://techcommunity.microsoft.com/t5/fasttrack-blog/mitigating-microsoft-365-copilot-access-risk-identity-and-device/ba-p/4534574",
      "published": "2026-07-07T20:02:29.000Z",
      "headline": "Mitigating Microsoft 365 Copilot access risk: Identity and device controls for Zero Trust",
      "topic": "identity",
      "score": 43,
      "source": {
        "id": "fasttrack",
        "name": "Microsoft FastTrack Blog"
      },
      "summary": "Part two of FastTrack’s Zero Trust series for Copilot addresses the first risk layer, who can access the service, and the six identity and device risks R1–R6. E5 customers already have the required tools in Entra ID, Conditional Access, Intune, and Defender, but must configure and scope them deliberately before scaling because one compromised or unmanaged account can expose the entire Microsoft 365 data estate through the user’s full permissions.",
      "image": "https://techcommunity.microsoft.com/t5/s/gxcuf89792/images/dS0xMjkzMTEtMjAxMjgyaTRDRDk1ODBCNDJDQzQ3MjM?image-dimensions=120x120"
    },
    {
      "id": "msrc-update-guide-a3821ad0e9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45638",
      "published": "2026-07-07T14:00:00.000Z",
      "headline": "CVE-2026-45638 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "o365reports-a1d4281fc7",
      "url": "https://o365reports.com/how-to-find-which-microsoft-365-service-created-a-sharepoint-online-site/?utm_source=rss&utm_medium=rss&utm_campaign=how-to-find-which-microsoft-365-service-created-a-sharepoint-online-site",
      "published": "2026-07-07T13:55:53.000Z",
      "headline": "How to Find Which Service Created a Site in SharePoint Online",
      "topic": "identity",
      "score": 24,
      "source": {
        "id": "o365reports",
        "name": "Office 365 Reports (AdminDroid)"
      },
      "summary": "SharePoint sites can be provisioned automatically by Teams, Microsoft 365 groups, Viva Engage, and APIs, not only through the admin center. This guide shows how to trace a site’s creation source in the SharePoint admin center for auditing, troubleshooting, and governance.",
      "image": "https://o365reports.com/wp-content/uploads/2026/07/CreationSourceFromSPO-300x121.png"
    },
    {
      "id": "prajwal-desai-cd0eef1be1",
      "url": "https://www.prajwaldesai.com/configuration-manager-collection-size-limits/",
      "published": "2026-07-07T11:58:55.000Z",
      "headline": "Configure Collection Size Limits in Configuration Manager",
      "topic": "endpoint",
      "score": 25,
      "source": {
        "id": "prajwal-desai",
        "name": "Prajwal Desai"
      }
    },
    {
      "id": "core-infra-security-520419e78a",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/azure-database-security-newsletter-july-2026/ba-p/4534477",
      "published": "2026-07-07T11:47:08.000Z",
      "headline": "Azure Database Security Newsletter - July 2026",
      "topic": "security",
      "score": 40,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "msrc-update-guide-99f658d9ab",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-9080",
      "published": "2026-07-07T08:43:20.000Z",
      "headline": "CVE-2026-9080 UAF after pause in socket callback",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4ee1bf57df",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-8926",
      "published": "2026-07-07T08:43:09.000Z",
      "headline": "CVE-2026-8926 password leak with netrc and user in URL",
      "topic": "security",
      "score": 45,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e64e5d1bf3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-10536",
      "published": "2026-07-07T08:42:55.000Z",
      "headline": "CVE-2026-10536 HTTP/2 stream-dependency tree UAF",
      "topic": "security",
      "score": 63,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-854581281c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-8286",
      "published": "2026-07-07T08:42:34.000Z",
      "headline": "CVE-2026-8286 wrong STARTTLS connection reuse",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f66d27f01b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-8458",
      "published": "2026-07-07T08:42:14.000Z",
      "headline": "CVE-2026-8458 wrong reuse for different services",
      "topic": "security",
      "score": 57,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-9152faeaf4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-8924",
      "published": "2026-07-07T08:41:55.000Z",
      "headline": "CVE-2026-8924 trailing dot domain super cookie",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c6185fb852",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-8932",
      "published": "2026-07-07T08:41:30.000Z",
      "headline": "CVE-2026-8932 incomplete mTLS config matching in conn reuse",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a7af6cebfd",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-9545",
      "published": "2026-07-07T08:41:09.000Z",
      "headline": "CVE-2026-9545 exposing HTTP/3 early data",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1ddb537ff8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-39827",
      "published": "2026-07-07T08:40:36.000Z",
      "headline": "CVE-2026-39827 Invoking  memory leak when rejecting channels can lead to DoS in golang.org/x/crypto/ssh",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f111ac09c1",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25681",
      "published": "2026-07-07T08:40:29.000Z",
      "headline": "CVE-2026-25681 Invoking  incorrect handling of character references in DOCTYPE nodes in golang.org/x/net/html",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4718b06add",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14647",
      "published": "2026-07-07T08:01:44.000Z",
      "headline": "CVE-2026-14647 onnx onnxruntime old.cc convPoolShapeInference_opset19 out-of-bounds",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4dec2348d9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-12480",
      "published": "2026-07-07T08:01:38.000Z",
      "headline": "CVE-2026-12480 Arbitrary HDF5 File Read via Virtual Dataset Bypass in keras-team/keras",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1e56e39fc5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54891",
      "published": "2026-07-07T08:01:28.000Z",
      "headline": "CVE-2026-54891 Plaintext APPLICATION_DATA injected during TLS handshake delivered to client application post-handshake in ssl",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-9a3aeab2f5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54886",
      "published": "2026-07-07T08:01:22.000Z",
      "headline": "CVE-2026-54886 SSH SFTP server denial of service via extended channel data infinite loop",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-8bfcacafde",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55952",
      "published": "2026-07-07T08:01:15.000Z",
      "headline": "CVE-2026-55952 TLS 1.3 server denial of service via malformed ClientHello pre-shared key extension",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-c848c9a204",
      "url": "https://office365itpros.com/2026/07/07/calendar-agent-disappoints/?utm_source=rss&utm_medium=rss&utm_campaign=calendar-agent-disappoints",
      "published": "2026-07-07T07:00:00.000Z",
      "headline": "The Sadly Unfulfilled Promise of the Outlook Calendar Agent",
      "topic": "ai",
      "score": 39,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond has tested Microsoft’s Outlook Calendar Agent since its April 2026 launch but finds that it still struggles with basic meeting scheduling. A key limitation is that Microsoft 365 connectors can read but not write to user calendars, preventing genuine agentic scheduling, so IT admins should adjust expectations about current Copilot agent capabilities.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/image.png?resize=840%2C351&ssl=1"
    },
    {
      "id": "m365-roadmap-2be42aa511",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567316",
      "published": "2026-07-06T23:00:50.000Z",
      "headline": "Outlook: Notification when not responding to most recent message of email thread",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-a5d550ac1f",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567121",
      "published": "2026-07-06T23:00:50.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Microsoft 365 admin center - Usage reports - Copilot Chat for GCC, GCC High and DoD",
      "topic": "ai",
      "score": 32,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-910f9df1c1",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567120",
      "published": "2026-07-06T23:00:50.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Microsoft 365 admin center – New Microsoft 365 Copilot usage report for GCC High & DoD",
      "topic": "ai",
      "score": 32,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "windows-it-pro-37624fa7a7",
      "url": "https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-settings-backup-becoming-a-new-resilience-baseline/ba-p/4530757",
      "published": "2026-07-06T21:45:48.000Z",
      "headline": "Windows settings backup becoming a new resilience baseline",
      "topic": "endpoint",
      "score": 60,
      "source": {
        "id": "windows-it-pro",
        "name": "Windows IT Pro Blog"
      }
    },
    {
      "id": "windows-insider-1bec377f7a",
      "url": "https://blogs.windows.com/windows-insider/2026/07/06/announcing-new-builds-for-july-6-2026/",
      "published": "2026-07-06T21:06:46.000Z",
      "headline": "Announcing new builds for July 6 2026",
      "topic": "endpoint",
      "score": 52,
      "source": {
        "id": "windows-insider",
        "name": "Windows Insider Blog"
      },
      "summary": "Microsoft is testing Cloud Rebuild in the Experimental Channel, a recovery feature that completely reinstalls Windows 11 by downloading both the OS image and device drivers from Windows Update, even when Windows cannot start. Unlike Reset this PC, it requires neither USB media nor a separate image, simplifying recovery of locked or damaged endpoints.",
      "image": "https://winblogs.thesourcemediaassets.com/sites/44/2026/07/cloudrebuildtroubleshoot.png"
    },
    {
      "id": "fasttrack-cbb97f5ffe",
      "url": "https://techcommunity.microsoft.com/t5/fasttrack-blog/understanding-copilot-risk-mapping-exposure-across-zero-trust/ba-p/4534183",
      "published": "2026-07-06T17:55:11.000Z",
      "headline": "Understanding Copilot Risk: Mapping Exposure Across Zero Trust Pillars",
      "topic": "ai",
      "score": 42,
      "source": {
        "id": "fasttrack",
        "name": "Microsoft FastTrack Blog"
      }
    },
    {
      "id": "petervanderwoude-5f9af31445",
      "url": "https://petervanderwoude.nl/post/customizing-the-power-options-in-start-layout/",
      "published": "2026-07-06T17:45:00.000Z",
      "headline": "Customizing the power options in Start layout",
      "topic": "endpoint",
      "score": 32,
      "source": {
        "id": "petervanderwoude",
        "name": "All about Microsoft Intune (Peter van der Woude)"
      }
    },
    {
      "id": "intune-blog-20cc925cd9",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-intune-blog/what-s-new-in-microsoft-intune-june/ba-p/4491983",
      "published": "2026-07-06T16:53:47.000Z",
      "headline": "Intune EAM Now Automatically Updates Managed Applications",
      "topic": "endpoint",
      "score": 78,
      "source": {
        "id": "intune-blog",
        "name": "Microsoft Intune Customer Success Blog"
      },
      "summary": "Microsoft has made Intune Enterprise Application Management auto-updates generally available for incremental application releases. IT administrators can reduce manual packaging, version drift, and exposure to known vulnerabilities across managed endpoints."
    },
    {
      "id": "msrc-blog-9416dfd671",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/06/5-insights-from-frost-sullivans-2025-frost-radar-for-cloud-security-posture-management/",
      "published": "2026-07-06T16:00:00.000Z",
      "headline": "5 insights from Frost & Sullivan’s 2025 Frost Radar™ for Cloud Security Posture Management",
      "topic": "security",
      "score": 30,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Frost & Sullivan’s 2025 Frost Radar for Cloud Security Posture Management forecasts that the CSPM market will grow from $2.82 billion to $6.96 billion by 2030 and places Microsoft among the leaders. It highlights a shift from periodic compliance to continuous, risk-based governance within CNAPP platforms, but is primarily market and positioning material rather than an actionable change for admins.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/07/Cloud-Security-Posture-Management-2025-Radar-Image_Microsoft-Final.webp"
    },
    {
      "id": "vasil-michev-2f2c2ce558",
      "url": "https://michev.info/blog/post/8055/first-look-at-the-sharepoint-api-usage-report",
      "published": "2026-07-06T14:09:39.000Z",
      "headline": "First look at the SharePoint API usage report",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "vasil-michev",
        "name": "Vasil Michev — Michev.info"
      },
      "summary": "A new SharePoint API Usage report is available in Microsoft Graph beta, showing how apps use SharePoint APIs in a tenant. It is disabled by default and must be enabled through the new report settings with the ReportSettings.ReadWrite.All permission, although the endpoints do not yet enforce the documented permissions and a global admin can enable it regardless.",
      "image": "https://michev.info/wp-content/uploads/2026/07/SharePointAPIUsage.png"
    },
    {
      "id": "core-infra-security-3ac012e600",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/turning-azure-policy-signals-into-actionable-governance-insights/ba-p/4534126",
      "published": "2026-07-06T12:40:50.000Z",
      "headline": "Turning Azure Policy Signals into Actionable Governance Insights",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "call4cloud-e784841df2",
      "url": "https://patchmypc.com/blog/how-controlled-feature-rollout-actually-works/",
      "published": "2026-07-06T11:13:29.000Z",
      "headline": "A Deep Dive into Controlled Feature Rollout: Why Features are turned off by default",
      "topic": "endpoint",
      "score": 36,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "Rudy Ooms examines Controlled Feature Rollout, the mechanism Microsoft uses to release new Windows features and hotfixes gradually and disabled by default. The post explains how an individual device determines when it receives a feature, helping admins understand why features appear at different times across their fleet.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-36.png"
    },
    {
      "id": "janbakker-20831e2c3a",
      "url": "https://janbakker.tech/kb-employeeleavedatetime-show-empty-null/",
      "published": "2026-07-06T09:41:25.000Z",
      "headline": "KB – employeeLeaveDateTime show empty (null)",
      "topic": "identity",
      "score": 29,
      "source": {
        "id": "janbakker",
        "name": "JanBakker.tech"
      },
      "summary": "When the employeeLeaveDateTime attribute appears as null in Entra ID, the usual cause is missing permissions because this sensitive attribute requires User-LifeCycleInfo.Read.All for access through Microsoft Graph. The value becomes visible after consent is granted, which is important for admins building lifecycle or offboarding automation around departure dates.",
      "image": "https://janbakker.tech/wp-content/uploads/2026/07/image-2.png"
    },
    {
      "id": "janbakker-82eb84dfc6",
      "url": "https://janbakker.tech/why-windows-is-the-hardest-passkey-surface-in-2026-and-what-entra-admins-should-expect/",
      "published": "2026-07-06T07:47:51.000Z",
      "headline": "Why Windows is the hardest passkey surface in 2026 and what Entra admins should expect",
      "topic": "identity",
      "score": 39,
      "source": {
        "id": "janbakker",
        "name": "JanBakker.tech"
      },
      "summary": "Data from large passkey deployments shows that Windows has the lowest sign-in success rate of any major platform in 2026, with Windows users struggling where iPhone users sign in seamlessly despite using the same identity provider and policy. Entra admins planning passkey deployments should expect their Windows fleet to generate the most support requests and pilot-test it especially thoroughly.",
      "image": "https://janbakker.tech/wp-content/uploads/2026/07/image.gif"
    },
    {
      "id": "office365-itpros-136851da27",
      "url": "https://office365itpros.com/2026/07/06/dlp-move-to-quarantine-action/?utm_source=rss&utm_medium=rss&utm_campaign=dlp-move-to-quarantine-action",
      "published": "2026-07-06T07:00:00.000Z",
      "headline": "Purview Data Loss Prevention Introduces File Quarantine",
      "topic": "security",
      "score": 53,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Purview DLP is adding a “move to quarantine” action that isolates files violating DLP policies in a secure SharePoint location instead of merely blocking them, replacing the original with a tombstone text file that explains what happened and why. The feature is currently in preview and is scheduled for general availability in early June 2026 (MC1288527).",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/07/DLP-MOve-to-Quarantine-action.jpg?resize=840%2C356&ssl=1"
    },
    {
      "id": "core-infra-security-73cf9d0ad1",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/windows-365-boot/ba-p/4533696",
      "published": "2026-07-04T17:01:23.000Z",
      "headline": "Windows 365 Boot",
      "topic": "endpoint",
      "score": 49,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "msrc-update-guide-00e2b141c1",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53223",
      "published": "2026-07-04T08:03:27.000Z",
      "headline": "CVE-2026-53223 net: guard timestamp cmsgs to real error queue skbs",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "niallbrady-1d1a29a5cf",
      "url": "https://www.niallbrady.com/2026/07/03/first-looks-at-windows-365s-gallery-image-with-developer-configuration-preview/",
      "published": "2026-07-03T20:34:52.000Z",
      "headline": "First looks at Windows 365’s gallery Image with Developer Configuration (preview)",
      "topic": "endpoint",
      "score": 35,
      "source": {
        "id": "niallbrady",
        "name": "Just Another Windows Noob (Niall Brady)"
      }
    },
    {
      "id": "msrc-update-guide-5816421b3d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14125",
      "published": "2026-07-03T14:00:54.000Z",
      "headline": "Chromium: CVE-2026-14125 Uninitialized Use in ANGLE",
      "topic": "security",
      "score": 39,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4fe9b80282",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-13933",
      "published": "2026-07-03T14:00:42.000Z",
      "headline": "Chromium: CVE-2026-13933 Insufficient policy enforcement in Passwords",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7318b48e51",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14153",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "Chromium: CVE-2026-14153 Inappropriate implementation in Glic",
      "topic": "security",
      "score": 39,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7af3736c61",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55945",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-55945 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability",
      "topic": "security",
      "score": 49,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1753aebc3b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56645",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-56645 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 68,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a2c0247c93",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57975",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57975 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 68,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-97fdc45ff6",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57983",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57983 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-d78cd52bc4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57984",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57984 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-ee2bf77621",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57985",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57985 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 66,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-65d12f2942",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57987",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57987 Microsoft Edge (Chromium-based) Spoofing Vulnerability",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-5f37422cb0",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57988",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57988 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 66,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f62d53b029",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57992",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57992 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-0e7f6de06b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57993",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-57993 Microsoft Edge (Chromium-based) Spoofing Vulnerability",
      "topic": "security",
      "score": 58,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-93e767f267",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56646",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-56646 Microsoft Edge (Chromium-based) Spoofing Vulnerability",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-437fb136fc",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58282",
      "published": "2026-07-03T14:00:00.000Z",
      "headline": "CVE-2026-58282 Microsoft Edge (Chromium-based) Spoofing Vulnerability",
      "topic": "security",
      "score": 55,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "vasil-michev-ca1e494993",
      "url": "https://michev.info/blog/post/8025/more-robust-external-sharing-controls-now-available-for-spo-odfb-dlp-policies",
      "published": "2026-07-03T13:06:47.000Z",
      "headline": "More robust external sharing controls now available for SPO/ODFB DLP policies",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "vasil-michev",
        "name": "Vasil Michev — Michev.info"
      },
      "summary": "Microsoft is rolling out two new DLP actions for SharePoint Online and OneDrive that can block access by external domains and users or move files to a quarantine location. The feature (MC1338823, roadmap 557191) remains in preview and appears only when a policy is scoped to SharePoint or OneDrive, giving IT admins more precise control over external sharing directly in SPO/ODFB DLP policies.",
      "image": "https://michev.info/wp-content/uploads/2026/07/DLPGranularActions.png"
    },
    {
      "id": "andrew-taylor-d00ac40b97",
      "url": "https://andrewstaylor.com/2026/07/03/intune-newsletter-3rd-july-2026/",
      "published": "2026-07-03T10:58:01.000Z",
      "headline": "Intune Newsletter – 3rd July 2026",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "andrew-taylor",
        "name": "Andrew Taylor (andrewstaylor.com)"
      }
    },
    {
      "id": "msendpointmgr-0fb35de478",
      "url": "https://msendpointmgr.com/2026/07/03/epm-part-3-writing-intune-endpoint-privilege-management-rules-for-the-real-world-file-hash-certificate-and-when-each-one-is-the-wrong-choice/",
      "published": "2026-07-03T09:00:39.000Z",
      "headline": "EPM Part 3: Writing Intune Endpoint Privilege Management rules for the real world: File hash, certificate, and when each one is the wrong choice",
      "topic": "endpoint",
      "score": 38,
      "source": {
        "id": "msendpointmgr",
        "name": "MSEndpointMgr"
      },
      "summary": "Part three of MSEndpointMgr’s EPM series shows how to turn a prioritized rule backlog into elevation rules that hold up in production, explaining when to use file hashes, certificates, or product versions as detection criteria and when each is the wrong choice. It is useful for Intune admins who want to prevent EPM rules from breaking after the next vendor update or elevating unintended files.",
      "image": "https://msendpointmgr.com/wp-content/uploads/2026/06/Designer-14.png"
    },
    {
      "id": "msrc-update-guide-1510175b44",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56405",
      "published": "2026-07-03T08:07:08.000Z",
      "headline": "CVE-2026-56405 libexpat before 2.8.2 has an integer overflow in getAttributeId.",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4a0e9b9070",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56406",
      "published": "2026-07-03T08:06:23.000Z",
      "headline": "CVE-2026-56406 libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-90f0133069",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56131",
      "published": "2026-07-03T08:05:57.000Z",
      "headline": "CVE-2026-56131 libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_ResumeParser from within handlers in cases of a policy violation. Thus, a use-after-free can occur (similar to the CVE-2026-50219 situation).",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4e3f840813",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53046",
      "published": "2026-07-03T08:04:36.000Z",
      "headline": "CVE-2026-53046 ksmbd: fix use-after-free from async crypto on Qualcomm crypto engine",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-cba5571ad3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53039",
      "published": "2026-07-03T08:04:26.000Z",
      "headline": "CVE-2026-53039 ocfs2: validate group add input before caching",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-47ae492210",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53045",
      "published": "2026-07-03T08:04:20.000Z",
      "headline": "CVE-2026-53045 memory: tegra124-emc: Fix dll_change check",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-68fa73b999",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53049",
      "published": "2026-07-03T08:04:14.000Z",
      "headline": "CVE-2026-53049 gfs2: add some missing log locking",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-319a9f3d1b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-52911",
      "published": "2026-07-03T08:04:01.000Z",
      "headline": "CVE-2026-52911 ksmbd: scope conn->binding slowpath to bound sessions only",
      "topic": "security",
      "score": 42,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-ff888a310b",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-14258",
      "published": "2026-07-03T08:03:50.000Z",
      "headline": "CVE-2026-14258 Dhcpcd: dhcpcd infinite loop and out-of-bounds read via zero-length ipv6 nd option in router advertisement handling",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-06caadf38a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53043",
      "published": "2026-07-03T08:03:26.000Z",
      "headline": "CVE-2026-53043 ocfs2/dlm: validate qr_numregions in dlm_match_regions()",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-99096d31e7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53357",
      "published": "2026-07-03T08:02:18.000Z",
      "headline": "CVE-2026-53357 Bluetooth: fix UAF in l2cap_sock_cleanup_listen() vs l2cap_conn_del()",
      "topic": "security",
      "score": 51,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-49c4541eec",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53048",
      "published": "2026-07-03T08:02:17.000Z",
      "headline": "CVE-2026-53048 gfs2: prevent NULL pointer dereference during unmount",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-62a0e5d039",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56149",
      "published": "2026-07-03T08:02:04.000Z",
      "headline": "CVE-2026-56149 Allocation of Resources Without Limits or Throttling in Elasticsearch Leading to Denial of Service",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-db7518842c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53010",
      "published": "2026-07-03T08:02:03.000Z",
      "headline": "CVE-2026-53010 ksmbd: fix use-after-free in smb2_open during durable reconnect",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-5940bce86e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-49090",
      "published": "2026-07-03T08:01:57.000Z",
      "headline": "CVE-2026-49090 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service",
      "topic": "security",
      "score": 46,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-3d4aa77614",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53097",
      "published": "2026-07-03T08:01:57.000Z",
      "headline": "CVE-2026-53097 wifi: mt76: mt7996: fix use-after-free bugs in mt7996_mac_dump_work()",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-87812b98e6",
      "url": "https://office365itpros.com/2026/07/03/teams-membership-snapshot/?utm_source=rss&utm_medium=rss&utm_campaign=teams-membership-snapshot",
      "published": "2026-07-03T07:00:00.000Z",
      "headline": "How to Record Snapshots for Teams Memberships",
      "topic": "identity",
      "score": 35,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond shows how to use PowerShell to save periodic snapshots of a team’s membership so organizations can later prove who had access to channels, files, and SharePoint content at a given time. Team membership effectively grants broad access to sensitive content, making this useful for legal recordkeeping requirements, while membership changes can also be tracked in the audit log.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/02/Teams-memberships-report.jpg?resize=840%2C544&ssl=1"
    },
    {
      "id": "ourcloudnetwork-d51af1d7d8",
      "url": "https://ourcloudnetwork.com/microsoft-purview-adds-native-role-assignment-time-limits/?utm_source=rss&utm_medium=rss&utm_campaign=microsoft-purview-adds-native-role-assignment-time-limits",
      "published": "2026-07-03T06:40:44.000Z",
      "headline": "Microsoft Purview Adds Native Role Assignment Time Limits",
      "topic": "identity",
      "score": 44,
      "source": {
        "id": "ourcloudnetwork",
        "name": "Our Cloud Network (Daniel Bradley)"
      }
    },
    {
      "id": "m365-roadmap-1e25d7c022",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567006",
      "published": "2026-07-02T23:12:48.000Z",
      "headline": "Outlook: Improvements to Save Contacts on iPhone and iPad",
      "topic": "endpoint",
      "score": 32,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-510c07322e",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566997",
      "published": "2026-07-02T23:12:48.000Z",
      "headline": "Microsoft Copilot Studio: Block the use of maker-provided credentials for authentication",
      "topic": "ai",
      "score": 45,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-95e28a6f61",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566866",
      "published": "2026-07-02T23:12:48.000Z",
      "headline": "Planner: Task Details Sidecar experience",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "jeffrey-appel-ffa8775f73",
      "url": "https://jeffreyappel.nl/defender-for-endpoint-performance-troubleshooting-on-linux/",
      "published": "2026-07-02T20:28:36.000Z",
      "headline": "Defender for Endpoint performance troubleshooting on Linux",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "jeffrey-appel",
        "name": "Jeffrey Appel — Microsoft Security"
      }
    },
    {
      "id": "defender-cloud-10134ff6b1",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/microsoft-defender-for-cloud-customer-newsletter/ba-p/4533200",
      "published": "2026-07-02T18:11:31.000Z",
      "headline": "Microsoft Defender for Cloud Customer Newsletter",
      "topic": "security",
      "score": 54,
      "source": {
        "id": "defender-cloud",
        "name": "Microsoft Defender for Cloud Blog"
      }
    },
    {
      "id": "msrc-blog-f92fb00d54",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/02/improving-security-posture-across-the-microsoft-partner-ecosystem/",
      "published": "2026-07-02T16:00:00.000Z",
      "headline": "Improving security posture across the Microsoft partner ecosystem",
      "topic": "security",
      "score": 40,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft’s deputy CISO explains how the company manages risks associated with Cloud Solution Providers (CSPs), which many organizations use to purchase and operate Microsoft 365 and Azure. The post offers organizations working with CSPs a framework for controls and expectations around partner access, focusing more on principles than concrete news but providing useful guidance for third-party access governance.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2025/10/thumbnail_image.webp"
    },
    {
      "id": "m365-copilot-f177638bbe",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-365-copilot-blog/available-today-anthropic-s-claude-sonnet-5-in-microsoft-365/ba-p/4532188",
      "published": "2026-07-02T15:55:25.000Z",
      "headline": "Available today: Anthropic’s Claude Sonnet 5 in Microsoft 365 Copilot",
      "topic": "ai",
      "score": 65,
      "source": {
        "id": "m365-copilot",
        "name": "Microsoft 365 Copilot Blog"
      }
    },
    {
      "id": "handsontek-09f151aa8f",
      "url": "https://handsontek.net/whats-new-copilot-june-2026/",
      "published": "2026-07-02T15:18:37.000Z",
      "headline": "What’s new for Copilot – June 2026",
      "topic": "ai",
      "score": 48,
      "source": {
        "id": "handsontek",
        "name": "HANDS ON tek (João Ferreira)"
      },
      "summary": "Copilot Cowork reached general availability in June but is not included in existing licenses and is billed per use through Copilot Credits, so admins must configure billing and consumption controls before it can be used. Other updates include curated organizational prompts in Copilot Chat, AI editing suggestions in Copilot Pages, more voice styles in Microsoft 365 Copilot, and usage-based billing for the Work IQ APIs.",
      "image": "https://handsontek.net/images/hot2/Whats%20new%20Copilot/hero.png"
    },
    {
      "id": "m365-copilot-7f2f41f3ae",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-365-copilot-blog/sales-agent-is-now-generally-available-bringing-customer-and/ba-p/4532629",
      "published": "2026-07-02T15:00:00.000Z",
      "headline": "Sales Agent is now generally available: Bringing customer and deal intelligence into the flow of work",
      "topic": "ai",
      "score": 59,
      "source": {
        "id": "m365-copilot",
        "name": "Microsoft 365 Copilot Blog"
      }
    },
    {
      "id": "msrc-update-guide-53807d8f62",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50521",
      "published": "2026-07-02T14:00:00.000Z",
      "headline": "CVE-2026-50521 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability",
      "topic": "security",
      "score": 65,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-0615a142d8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57100",
      "published": "2026-07-02T14:00:00.000Z",
      "headline": "CVE-2026-57100 Microsoft Entra Provisioning Service Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 67,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-e51d891cb4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45499",
      "published": "2026-07-02T14:00:00.000Z",
      "headline": "CVE-2026-45499 Azure OpenAI Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 63,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a4909852b0",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26145",
      "published": "2026-07-02T14:00:00.000Z",
      "headline": "CVE-2026-26145 Microsoft Azure Synapse Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 57,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-0f974e1c70",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-41106",
      "published": "2026-07-02T14:00:00.000Z",
      "headline": "CVE-2026-41106 Microsoft 365 Copilot Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 64,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a25379dad3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54998",
      "published": "2026-07-02T14:00:00.000Z",
      "headline": "CVE-2026-54998 Microsoft Exchange Online Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 60,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "smbtothecloud-31cd4bcb03",
      "url": "https://smbtothecloud.com/win32-app-deep-dive-whats-inside-an-intunewin-file-and-how-it-gets-into-intune/?utm_source=rss&utm_medium=rss&utm_campaign=win32-app-deep-dive-whats-inside-an-intunewin-file-and-how-it-gets-into-intune",
      "published": "2026-07-02T13:37:47.000Z",
      "headline": "Win32 App Deep Dive – What’s Inside an intunewin File and How it Gets Into Intune?",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "smbtothecloud",
        "name": "SMBtotheCloud"
      },
      "summary": "This detailed technical guide explains how Win32 apps work in Intune, including what an .intunewin file contains, how IntuneWinAppUtil packages it, and how it is uploaded to the service. It also shows how Win32 apps can support scripting and registry changes and provide an alternative to remediations for organizations without an Enterprise license, making it a useful reference for admins deploying RMM, EDR, and other agent-based apps.",
      "image": "https://smbtothecloud.com/wp-content/uploads/2026/06/image-1024x296.png"
    },
    {
      "id": "admindroid-35237594a8",
      "url": "https://blog.admindroid.com/network-data-security-in-microsoft-365/",
      "published": "2026-07-02T13:00:40.000Z",
      "headline": "Prevent Sensitive Data Leakage Across Unmanaged Apps with Purview and Entra",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "admindroid",
        "name": "AdminDroid Blog"
      },
      "summary": "Microsoft is launching Network Data Security, which extends Purview DLP to the network layer through Entra and detects sensitive data in motion, including text pasted into AI chatbots, files uploaded to personal cloud storage, and traffic sent to unauthorized SaaS apps beyond the reach of Microsoft 365’s built-in controls. It gives IT admins real-time visibility and the ability to block leaks that previously might only have been discovered afterward.",
      "image": "https://blog.admindroid.com/wp-content/uploads/2026/07/Microsoft-Extends-Data-Protection-to-the-Network-Layer-150x150.png"
    },
    {
      "id": "handsontek-f257bd472d",
      "url": "https://handsontek.net/hands-microsoft-365-pulse-weekly-updates-week-26/",
      "published": "2026-07-02T12:15:51.000Z",
      "headline": "Hands-On Microsoft 365 Pulse – Weekly Updates (Week 26)",
      "topic": "ai",
      "score": 30,
      "source": {
        "id": "handsontek",
        "name": "HANDS ON tek (João Ferreira)"
      },
      "summary": "The month’s first Pulse summarizes June updates across SharePoint, Teams, and Copilot, with the retirement of Remote Event Receivers in SharePoint Online being the most important change for admins because dependent custom solutions must now plan their transition. Custom domains can also be excluded from Copilot web grounding, while a new Recap app in Teams brings all meeting recaps together in one place.",
      "image": "https://handsontek.net//images/hot2/Week%2026%202026/hero.png"
    },
    {
      "id": "goodworkaround-63bcad3034",
      "url": "https://goodworkaround.com/2026/07/02/mass-convert-groups-from-ad-to-entra-id-using-powershell/",
      "published": "2026-07-02T08:27:32.000Z",
      "headline": "Mass convert groups from AD to Entra ID using PowerShell",
      "topic": "identity",
      "score": 42,
      "source": {
        "id": "goodworkaround",
        "name": "Good Workaround! (Marius Solbakken)"
      },
      "summary": "Entra’s new Group Source of Authority conversion allows synchronized AD groups to move to Entra ID management without losing their identity, membership, or access. Marius Solbakken provides a PowerShell script for bulk conversion with error handling and logging, saving admins from manually processing hundreds of groups during a cloud migration.",
      "image": "https://0.gravatar.com/avatar/653b94bfdefd1283bc049c2805c386b666c42454eec9db823172ba03b94c42b6?s=96&d=identicon&r=G"
    },
    {
      "id": "core-infra-security-f112247b42",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/building-c-and-c-apps-with-github-copilot-cli-and-visual-studio/ba-p/4531648",
      "published": "2026-07-02T08:00:00.000Z",
      "headline": "Building C# and C++ Apps with GitHub Copilot CLI and Visual Studio 2026",
      "topic": "ai",
      "score": 36,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "office365-itpros-c52369a93a",
      "url": "https://office365itpros.com/2026/07/02/external-chat-api/?utm_source=rss&utm_medium=rss&utm_campaign=external-chat-api",
      "published": "2026-07-02T07:00:00.000Z",
      "headline": "The Misleading Teams Remove External Chat from User View API",
      "topic": "identity",
      "score": 36,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "The removeAllAccessForUser Graph API, which Teams documentation recommends for removing external chats containing malicious content, does not remove the user from the chat as its name suggests and only partially hides the messages. Admins relying on it for content moderation should know that it provides much weaker control than expected.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/06/Teams-external-chat-warning.jpg?resize=840%2C604&ssl=1"
    },
    {
      "id": "m365-roadmap-8f56e606f0",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566998",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Copilot Studio: Invoke agents as workflow steps with the agent node",
      "topic": "ai",
      "score": 43,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-94bf27f806",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566873",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Copilot Studio: Enforce safe sharing by detecting credential oversharing",
      "topic": "security",
      "score": 45,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-45874faa5b",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566872",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Complex web search with Copilot in Excel",
      "topic": "ai",
      "score": 34,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-6e9024f315",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566871",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Edge: Enhanced Security Mode Plus",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-1601adc4f5",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566869",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Entra: Upcoming changes to federatedTokenValidationPolicy default settings",
      "topic": "identity",
      "score": 57,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-bd96030f86",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566867",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Planner: Local Custom Fields/Columns",
      "topic": "endpoint",
      "score": 14,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-b2f7547ffc",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566865",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Purview compliance portal: Admin assignment time limit",
      "topic": "security",
      "score": 35,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-cd3e26bd37",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566864",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Edge: Ask Copilot about an image",
      "topic": "ai",
      "score": 34,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-e0a9a4fbc9",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566695",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "OneDrive: Block screen capture for sensitivity-labeled PDFs in the OneDrive and SharePoint web viewer",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-0278c79d64",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566528",
      "published": "2026-07-01T23:03:18.000Z",
      "headline": "Microsoft Purview: Data Loss Prevention - Extend Purview data security to the network layer via Entra GSA integration",
      "topic": "security",
      "score": 50,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "windows-it-pro-63fdf59378",
      "url": "https://techcommunity.microsoft.com/t5/windows-it-pro-blog/windows-news-you-can-use-june-2026/ba-p/4532288",
      "published": "2026-07-01T22:00:00.000Z",
      "headline": "Windows news you can use: June 2026",
      "topic": "endpoint",
      "score": 54,
      "source": {
        "id": "windows-it-pro",
        "name": "Windows IT Pro Blog"
      }
    },
    {
      "id": "entra-blog-f19ee40d87",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/bring-business-logic-into-pim-role-activation-workflows/ba-p/4531380",
      "published": "2026-07-01T16:35:45.000Z",
      "headline": "Bring business logic into PIM role activation workflows",
      "topic": "identity",
      "score": 68,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      }
    },
    {
      "id": "entra-blog-f97f6738c0",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/protect-sensitive-data-in-motion-across-saas-and-ai-apps-with/ba-p/4529310",
      "published": "2026-07-01T16:32:24.000Z",
      "headline": "Protect sensitive data in motion across SaaS and AI apps with Microsoft Purview and Microsoft Entra",
      "topic": "security",
      "score": 70,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      }
    },
    {
      "id": "defender-cloud-db3786699f",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/now-generally-available-serverless-posture-coverage-in-microsoft/ba-p/4532353",
      "published": "2026-07-01T16:00:48.000Z",
      "headline": "Now generally available: Serverless posture coverage in Microsoft Defender CSPM",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "defender-cloud",
        "name": "Microsoft Defender for Cloud Blog"
      }
    },
    {
      "id": "security-community-53f679c049",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-security-community/extend-data-security-to-the-network-with-microsoft-purview-and/ba-p/4531929",
      "published": "2026-07-01T16:00:00.000Z",
      "headline": "Extend data security to the network with Microsoft Purview and Microsoft Entra",
      "topic": "security",
      "score": 56,
      "source": {
        "id": "security-community",
        "name": "Microsoft Security Community Blog"
      }
    },
    {
      "id": "intune-blog-985a1e0a27",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-intune-blog/advanced-microsoft-intune-capabilities-now-available-in/ba-p/4529335",
      "published": "2026-07-01T16:00:00.000Z",
      "headline": "Advanced Microsoft Intune capabilities now available in Microsoft 365 E3 and E5",
      "topic": "endpoint",
      "score": 68,
      "source": {
        "id": "intune-blog",
        "name": "Microsoft Intune Customer Success Blog"
      }
    },
    {
      "id": "msrc-blog-b4b95d203c",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/07/01/microsoft-named-a-leader-in-the-frost-radar-for-cloud-and-application-runtime-security/",
      "published": "2026-07-01T16:00:00.000Z",
      "headline": "Microsoft named a leader in the Frost Radar for cloud and application runtime security",
      "topic": "security",
      "score": 24,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      }
    },
    {
      "id": "msrc-update-guide-599c318bb5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32208",
      "published": "2026-07-01T14:00:00.000Z",
      "headline": "CVE-2026-32208 Microsoft Entra ID Spoofing Vulnerability",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "defender-xdr-b50e7e64ac",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-xdr-blog/monthly-news-july-2026/ba-p/4532402",
      "published": "2026-07-01T09:30:09.000Z",
      "headline": "Monthly news - July 2026",
      "topic": "security",
      "score": 45,
      "source": {
        "id": "defender-xdr",
        "name": "Microsoft Defender XDR Blog"
      }
    },
    {
      "id": "msrc-update-guide-1f5e92f2f3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-57062",
      "published": "2026-07-01T08:40:05.000Z",
      "headline": "CVE-2026-57062 CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes-ICVlen is supposed to be 12 bytes but 4 bytes is accepted. NOTE: this is related to CVE-2026-34182.",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "goodworkaround-9302f39d60",
      "url": "https://goodworkaround.com/2026/07/01/adding-custom-attributes-to-entra-cloud-sync-from-ad/",
      "published": "2026-07-01T08:31:13.000Z",
      "headline": "Adding custom attributes to Entra Cloud Sync from AD",
      "topic": "identity",
      "score": 35,
      "source": {
        "id": "goodworkaround",
        "name": "Good Workaround! (Marius Solbakken)"
      },
      "summary": "Marius Solbakken shows how to map custom AD attributes such as employee ID, cost center, and start and end dates into Entra ID with Cloud Sync. Unlike the older Connect Sync, this has no user interface, so attributes must be stored as extension properties on an app with an identifier URI in the format API://<tenantid>/CloudSyncCustomExtensionsApp, which is useful for hybrid identity environments needing additional attributes for automation, provisioning, and identity governance.",
      "image": "https://0.gravatar.com/avatar/653b94bfdefd1283bc049c2805c386b666c42454eec9db823172ba03b94c42b6?s=96&d=identicon&r=G"
    },
    {
      "id": "msrc-update-guide-9f0286b385",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-13218",
      "published": "2026-07-01T08:02:59.000Z",
      "headline": "CVE-2026-13218 Kubevirt: kubevirt: symlink following in writetocachedfile allows host file overwrite from virt-launcher",
      "topic": "security",
      "score": 29,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-26a39d38e9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-13208",
      "published": "2026-07-01T08:02:53.000Z",
      "headline": "CVE-2026-13208 Kubevirt: virt-handler-rhel9: kubevirt: virt-handler notify server trusts vmi identity from unauthenticated grpc request body",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-61aca326e3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-13322",
      "published": "2026-07-01T08:02:40.000Z",
      "headline": "CVE-2026-13322 Kubevirt: virt-handler-rhel9: kubevirt: unbounded virtio-serial readline in virt-handler causes oom denial of service",
      "topic": "security",
      "score": 22,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-62e9e0fc33",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58014",
      "published": "2026-07-01T08:02:21.000Z",
      "headline": "CVE-2026-58014 Glib: off-by-one error in glib/gkeyfile.c via \"g_key_file_get_locale_string_list\"",
      "topic": "security",
      "score": 13,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-209328ce4d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58013",
      "published": "2026-07-01T08:02:15.000Z",
      "headline": "CVE-2026-58013 Glib: buffer over-read in glib/giochannel.c via \"g_io_channel_read_line_backend\"",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-67712f7687",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58011",
      "published": "2026-07-01T08:02:07.000Z",
      "headline": "CVE-2026-58011 Glib: out-of-bounds read in glib/gdatetime.c:g_date_time_get_ymd via invalid gdatetime",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c0de765f75",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58012",
      "published": "2026-07-01T08:02:01.000Z",
      "headline": "CVE-2026-58012 Glib: buffer over-read in g_regex_replace() via glib/gregex.c:string_append() and g_utf8_next_char()",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1cabb658cb",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58016",
      "published": "2026-07-01T08:01:55.000Z",
      "headline": "CVE-2026-58016 Glib: integer underflow in gio/gdbusintrospection.c via \"g_dbus_node_info_new_for_xml\"",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-8989f12374",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58015",
      "published": "2026-07-01T08:01:49.000Z",
      "headline": "CVE-2026-58015 Glib: path traversal in glib/gio/gdbusauthmechanismsha1.c via keyring_lookup_entry and mechanism_client_data_receive",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f3f04f9bab",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58010",
      "published": "2026-07-01T08:01:42.000Z",
      "headline": "CVE-2026-58010 Glib: buffer over-read in glib/gvariant-serialiser.c via gvs_tuple_is_normal()",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-768e1674e2",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48779",
      "published": "2026-07-01T08:01:28.000Z",
      "headline": "CVE-2026-48779 ws: Memory exhaustion DoS from tiny fragments and data chunks",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7d21ef5783",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42055",
      "published": "2026-07-01T08:01:22.000Z",
      "headline": "CVE-2026-42055 NGINX ngx_http_proxy_v2_module and ngx_http_grpc_module vulnerability",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "vasil-michev-a903bb2e1c",
      "url": "https://michev.info/blog/post/8015/microsoft-365-for-it-pros-13th-edition-and-some-other-news",
      "published": "2026-07-01T07:12:39.000Z",
      "headline": "Microsoft 365 for IT Pros (13th Edition) and some other news",
      "topic": "identity",
      "score": 26,
      "source": {
        "id": "vasil-michev",
        "name": "Vasil Michev — Michev.info"
      },
      "summary": "Vasil Michev reports that the 2027 edition of “Microsoft 365 for IT Pros” has launched, now with two new standalone books alongside the main bundle. He also discusses Microsoft’s voluntary severance package taking effect and expresses concern about the expertise being lost as many veterans leave; for IT admins, this is primarily a reference and reading update rather than a technical change.",
      "image": "https://michev.info/wp-content/uploads/2026/07/MTC10Y.png"
    },
    {
      "id": "call4cloud-ff896e532a",
      "url": "https://patchmypc.com/blog/autopilot-0x800705b4-app-control-blocks-the-intune-management-extension/",
      "published": "2026-07-01T05:09:21.000Z",
      "headline": "Autopilot 0x800705b4: App Control Blocks the Intune Management Extension",
      "topic": "endpoint",
      "score": 40,
      "source": {
        "id": "call4cloud",
        "name": "Call4Cloud (Rudy Ooms)"
      },
      "summary": "An Autopilot provisioning process stalls at “Preparing your device for mobile management” and ends with error 0x800705b4 because an App Control policy (WDAC), rather than Autopilot itself, blocks the Intune Management Extension from running. Admins deploying App Control should explicitly allow IME or device provisioning will fail.",
      "image": "https://call4cloud.nl/wp-content/uploads/2026/07/image-34.png"
    },
    {
      "id": "office365-itpros-b5b1630f70",
      "url": "https://office365itpros.com/2026/07/01/microsoft-365-for-it-pros/?utm_source=rss&utm_medium=rss&utm_campaign=microsoft-365-for-it-pros",
      "published": "2026-07-01T00:02:00.000Z",
      "headline": "Announcing Microsoft 365 for IT Pros (2027 Edition)",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond’s “Microsoft 365 for IT Pros” book series is now in its thirteenth edition, with the 2027 content split so that Purview and Power Platform have their own books. The 330-page Purview book covers data lifecycle management, eDiscovery, DLP, information protection, and compliance, but it is a commercial Gumroad e-book rather than Microsoft product news.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/06/Four-book-covers.png?resize=840%2C298&ssl=1"
    },
    {
      "id": "m365-roadmap-eba7cd22d4",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=567005",
      "published": "2026-06-30T22:57:58.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Insights: Copilot Analytics - Cowork adoption and impact",
      "topic": "ai",
      "score": 39,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-2223417050",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566870",
      "published": "2026-06-30T22:57:58.000Z",
      "headline": "OneNote: Suggested Artifact Creation in Copilot Notebooks",
      "topic": "ai",
      "score": 34,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-90a0010e7e",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566314",
      "published": "2026-06-30T22:57:58.000Z",
      "headline": "Planner: Save AI-generated filters in Planner Agent chat",
      "topic": "ai",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-a5e943588a",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=562534",
      "published": "2026-06-30T22:57:58.000Z",
      "headline": "Microsoft Teams: Front-of-room view control for Town Hall\r\nand Webinar in Teams Rooms on Android",
      "topic": "endpoint",
      "score": 29,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "security-community-1959280b1f",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-security-community/introducing-a-unified-alert-experience-for-microsoft-purview/ba-p/4530714",
      "published": "2026-06-30T19:00:00.000Z",
      "headline": "Introducing a unified alert experience for Microsoft Purview Insider Risk Management",
      "topic": "security",
      "score": 46,
      "source": {
        "id": "security-community",
        "name": "Microsoft Security Community Blog"
      }
    },
    {
      "id": "msrc-blog-e3c87d41eb",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/06/30/microsoft-advances-quantum-safe-security-as-the-risk-timeline-shifts/",
      "published": "2026-06-30T19:00:00.000Z",
      "headline": "Accelerating the quantum-safe timeline",
      "topic": "security",
      "score": 61,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      }
    },
    {
      "id": "entra-blog-ace17dcb8b",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-entra-blog/microsoft-entra-backup-and-recovery-is-now-generally-available/ba-p/4521997",
      "published": "2026-06-30T18:27:57.000Z",
      "headline": "Microsoft Entra Backup and Recovery is now generally available",
      "topic": "identity",
      "score": 78,
      "source": {
        "id": "entra-blog",
        "name": "Microsoft Entra Blog"
      }
    },
    {
      "id": "prajwal-desai-00020b7c67",
      "url": "https://www.prajwaldesai.com/configmgr-upgrade-fails-with-asset-intelligence-role-installed/",
      "published": "2026-06-30T18:21:51.000Z",
      "headline": "ConfigMgr Upgrade fails with Asset Intelligence Role Installed",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "prajwal-desai",
        "name": "Prajwal Desai"
      }
    },
    {
      "id": "defender-cloud-086247ea0f",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-defender-for-cloud/microsoft-defender-for-cloud-expands-multicloud-coverage-across/ba-p/4532200",
      "published": "2026-06-30T17:36:56.000Z",
      "headline": "Microsoft Defender for Cloud expands multicloud coverage across AWS and Google Cloud",
      "topic": "security",
      "score": 65,
      "source": {
        "id": "defender-cloud",
        "name": "Microsoft Defender for Cloud Blog"
      }
    },
    {
      "id": "sentinel-blog-5d4b25aed2",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/what-s-new-in-microsoft-sentinel-june-2026/ba-p/4531902",
      "published": "2026-06-30T16:43:18.000Z",
      "headline": "What’s new in Microsoft Sentinel: June 2026",
      "topic": "security",
      "score": 53,
      "source": {
        "id": "sentinel-blog",
        "name": "Microsoft Sentinel Blog"
      }
    },
    {
      "id": "sentinel-blog-9479d7ef23",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/behind-the-build-with-gigamon-enriching-microsoft-sentinel-with/ba-p/4530360",
      "published": "2026-06-30T16:00:00.000Z",
      "headline": "Behind the Build with Gigamon: Enriching Microsoft Sentinel with Network-Derived Telemetry",
      "topic": "security",
      "score": 34,
      "source": {
        "id": "sentinel-blog",
        "name": "Microsoft Sentinel Blog"
      }
    },
    {
      "id": "sentinel-blog-2f40ece585",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/the-ai-first-soc-copilot-ueba-threat-intelligence-and-soc/ba-p/4528609",
      "published": "2026-06-30T16:00:00.000Z",
      "headline": "The AI-first SOC: Copilot, UEBA, threat intelligence, and SOC optimization",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "sentinel-blog",
        "name": "Microsoft Sentinel Blog"
      }
    },
    {
      "id": "msrc-blog-8db4e54de5",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/06/30/whats-new-in-microsoft-security-june-2026/",
      "published": "2026-06-30T16:00:00.000Z",
      "headline": "​​What’s new in Microsoft Security: June 2026",
      "topic": "security",
      "score": 52,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft’s monthly security update introduces “MDASH” in private preview, an agent-based AI system that scans complex code to find and validate vulnerabilities and route them directly into Defender workflows, while Defender is also extending endpoint protection to local AI agents. These developments give IT admins new vulnerability tools but also reflect a growing attack surface as AI agents are adopted.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/06/Picture1-4-1024x576.webp"
    },
    {
      "id": "msrc-blog-075d2f7a3a",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/06/30/securing-ai-agents-ai-tools-move-from-reading-acting/",
      "published": "2026-06-30T15:57:11.000Z",
      "headline": "Securing AI agents: When AI tools move from reading to acting",
      "topic": "security",
      "score": 64,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft Incident Response describes an attack pattern in which malicious Model Context Protocol (MCP) tools manipulate AI agents that can not only read content but also perform actions such as sending email or changing systems, and provides a practical playbook for detecting, containing, and preventing these attacks with Microsoft security controls. As agents in Microsoft 365 Copilot, Copilot Studio, and Azure AI Foundry gain write access, the attack surface grows and IT admins need to understand the risk.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/06/image-62.webp"
    },
    {
      "id": "m365-copilot-750d8d40c2",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-365-copilot-blog/the-workflow-is-the-product-copilot-cowork-plugins-change-what/ba-p/4531933",
      "published": "2026-06-30T15:30:00.000Z",
      "headline": "The workflow is the product: Copilot Cowork plugins change what AI can do for businesses",
      "topic": "ai",
      "score": 65,
      "source": {
        "id": "m365-copilot",
        "name": "Microsoft 365 Copilot Blog"
      }
    },
    {
      "id": "m365-copilot-d09dec5304",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-365-copilot-blog/what-s-new-in-microsoft-365-copilot-june-2026/ba-p/4529572",
      "published": "2026-06-30T15:30:00.000Z",
      "headline": "What’s New in Microsoft 365 Copilot | June 2026",
      "topic": "ai",
      "score": 50,
      "source": {
        "id": "m365-copilot",
        "name": "Microsoft 365 Copilot Blog"
      }
    },
    {
      "id": "msrc-update-guide-b46e68626a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-42910",
      "published": "2026-06-30T14:00:00.000Z",
      "headline": "CVE-2026-42910 Windows Hotpatch Monitoring Service Elevation of Privilege Vulnerability",
      "topic": "security",
      "score": 9,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "o365reports-fa8f0cf335",
      "url": "https://o365reports.com/cleanup-inactive-active-directory-user-accounts-using-powershell/?utm_source=rss&utm_medium=rss&utm_campaign=cleanup-inactive-active-directory-user-accounts-using-powershell",
      "published": "2026-06-30T10:28:10.000Z",
      "headline": "Cleanup Inactive Active Directory User Accounts Using PowerShell",
      "topic": "identity",
      "score": 27,
      "source": {
        "id": "o365reports",
        "name": "Office 365 Reports (AdminDroid)"
      },
      "summary": "AdminDroid has published a PowerShell script that finds inactive Active Directory accounts and automates cleanup in a controlled workflow by disabling them, moving them to a dedicated OU, and deleting them after a defined retention period. Forgotten accounts retain unnecessary access and increase the attack surface, while the script reduces the time and errors associated with manual cleanup and accounts for lastLogonTimestamp lagging by up to 14 days.",
      "image": "https://o365reports.com/wp-content/uploads/2026/06/Cleanup-inactive-user-accounts-in-Active-Directory-Sample-Output-300x75.png"
    },
    {
      "id": "msrc-update-guide-0c9904f53a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-11979",
      "published": "2026-06-30T08:02:15.000Z",
      "headline": "CVE-2026-11979 Stack-Based Buffer Overflow in libxml2",
      "topic": "security",
      "score": 43,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c7a608159a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-53325",
      "published": "2026-06-30T08:02:09.000Z",
      "headline": "CVE-2026-53325 agp/amd64: Fix broken error propagation in agp_amd64_probe()",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c58a557dba",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-41992",
      "published": "2026-06-30T08:02:02.000Z",
      "headline": "CVE-2026-41992 Global Buffer Overflow in GNU gzip",
      "topic": "security",
      "score": 40,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-731aece5da",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-41991",
      "published": "2026-06-30T08:01:56.000Z",
      "headline": "CVE-2026-41991 Predictable Temporary File in GNU gzip",
      "topic": "security",
      "score": 29,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-5a99fcfed5",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54371",
      "published": "2026-06-30T08:01:49.000Z",
      "headline": "CVE-2026-54371 attr < 2.6.0 Symlink Traversal Privilege Escalation via getfattr/setfattr",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7ffac6a2bb",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-54369",
      "published": "2026-06-30T08:01:43.000Z",
      "headline": "CVE-2026-54369 acl < 2.4.0 Symlink Traversal Privilege Escalation via libacl Functions",
      "topic": "security",
      "score": 36,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-79370d182a",
      "url": "https://office365itpros.com/2026/06/30/incoming-teams-call-window/?utm_source=rss&utm_medium=rss&utm_campaign=incoming-teams-call-window",
      "published": "2026-06-30T07:00:00.000Z",
      "headline": "Use the Small Window for Incoming Teams Calls",
      "topic": "endpoint",
      "score": 32,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "A Teams setting allows incoming calls to appear in a small window instead of the large default window, reducing disruption and letting users see what they were doing without switching windows. The optional feature is controlled under Calls in Teams settings and is described in Message Center notice MC1045221.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/06/Teams-Call-Small-Window.jpg?resize=840%2C365&ssl=1"
    },
    {
      "id": "m365-roadmap-eaf30ae1ca",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566701",
      "published": "2026-06-29T23:02:39.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Edit your document with Copilot in PowerPoint in Government Clouds",
      "topic": "ai",
      "score": 36,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-1d08372014",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566702",
      "published": "2026-06-29T23:02:39.000Z",
      "headline": "Microsoft Copilot (Microsoft 365): Edit your document with Copilot in PowerPoint in Government Clouds",
      "topic": "ai",
      "score": 35,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "m365-roadmap-c84fe5cf7e",
      "url": "https://www.microsoft.com/microsoft-365/roadmap?id=566700",
      "published": "2026-06-29T23:02:39.000Z",
      "headline": "Microsoft Teams: IntelliFrame people labels in Teams Rooms on Windows",
      "topic": "endpoint",
      "score": 31,
      "source": {
        "id": "m365-roadmap",
        "name": "Microsoft 365 Roadmap"
      }
    },
    {
      "id": "security-community-ab1d21c572",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-security-community/understand-your-sentinel-tables-at-a-glance-monitor-with-table/ba-p/4530738",
      "published": "2026-06-29T17:48:32.000Z",
      "headline": "Understand your Sentinel tables at a glance: Monitor with table insights",
      "topic": "security",
      "score": 48,
      "source": {
        "id": "security-community",
        "name": "Microsoft Security Community Blog"
      }
    },
    {
      "id": "petervanderwoude-b39c7ccef8",
      "url": "https://petervanderwoude.nl/post/getting-started-with-android-enterprise-personally-owned-devices-with-work-profile/",
      "published": "2026-06-29T17:45:00.000Z",
      "headline": "Getting started with Android Enterprise personally owned devices with work profile",
      "topic": "endpoint",
      "score": 45,
      "source": {
        "id": "petervanderwoude",
        "name": "All about Microsoft Intune (Peter van der Woude)"
      }
    },
    {
      "id": "msrc-blog-dc401e0641",
      "url": "https://www.microsoft.com/en-us/security/blog/2026/06/29/chromium-extension-uses-airelated-branding-redirect-browser-search/",
      "published": "2026-06-29T16:27:46.000Z",
      "headline": "Chromium extension uses AI‑related branding to redirect browser search",
      "topic": "security",
      "score": 55,
      "source": {
        "id": "msrc-blog",
        "name": "Microsoft Security Blog"
      },
      "summary": "Microsoft Threat Intelligence uncovered a Chromium extension impersonating Perplexity AI that secretly redirects address-bar searches using Manifest V3 and declarativeNetRequest rules to capture search traffic and collect data for profiling or advertising. Google removed it after notification, but organizations should consider allowlisting browser extensions because they remain an underestimated attack surface.",
      "image": "https://www.microsoft.com/en-us/security/blog/wp-content/uploads/2026/06/image-56.webp"
    },
    {
      "id": "sentinel-blog-1fb6e495cd",
      "url": "https://techcommunity.microsoft.com/t5/microsoft-sentinel-blog/your-readiness-playbook-adoption-helper-costs-apis-and-the/ba-p/4528608",
      "published": "2026-06-29T16:00:00.000Z",
      "headline": "Your readiness playbook: adoption helper, costs, APIs, and the checklist",
      "topic": "security",
      "score": 47,
      "source": {
        "id": "sentinel-blog",
        "name": "Microsoft Sentinel Blog"
      }
    },
    {
      "id": "msrc-update-guide-b3a6beab6e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58058",
      "published": "2026-06-29T08:06:47.000Z",
      "headline": "CVE-2026-58058 Nmap - Integer Underflow in IPv6 Extension Header Parsing",
      "topic": "security",
      "score": 33,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-69f7f6713c",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58055",
      "published": "2026-06-29T08:06:34.000Z",
      "headline": "CVE-2026-58055 nghttp2 nghttpx - HTTP Request/Response Smuggling via Upgrade Request with Content-Length",
      "topic": "security",
      "score": 59,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-8a5e787601",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58051",
      "published": "2026-06-29T08:06:18.000Z",
      "headline": "CVE-2026-58051 libssh2 - Free of Uninitialized Pointer in publickey List Cleanup",
      "topic": "security",
      "score": 37,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-4316ed597d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-58050",
      "published": "2026-06-29T08:05:57.000Z",
      "headline": "CVE-2026-58050 libssh2 - Integer Overflow in publickey Subsystem Attribute Allocation",
      "topic": "security",
      "score": 37,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-cb381d28c2",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-52908",
      "published": "2026-06-29T08:05:37.000Z",
      "headline": "CVE-2026-52908 RDMA: During rereg_mr ensure that REREG_ACCESS is compatible",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-1be2fb2662",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-52909",
      "published": "2026-06-29T08:05:23.000Z",
      "headline": "CVE-2026-52909 ip6_vti: set netns_immutable on the fallback device.",
      "topic": "security",
      "score": 27,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-69450a8298",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-52910",
      "published": "2026-06-29T08:05:09.000Z",
      "headline": "CVE-2026-52910 bpf: Free reuseport cBPF prog after RCU grace period.",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "office365-itpros-64eab38036",
      "url": "https://office365itpros.com/2026/06/29/copilot-memory-updates/?utm_source=rss&utm_medium=rss&utm_campaign=copilot-memory-updates",
      "published": "2026-06-29T07:00:00.000Z",
      "headline": "Two Microsoft 365 Copilot Changes That Just Make Sense",
      "topic": "ai",
      "score": 36,
      "source": {
        "id": "office365-itpros",
        "name": "Office 365 for IT Pros (Tony Redmond)"
      },
      "summary": "Tony Redmond highlights two recent Microsoft 365 Copilot Chat changes announced in message center posts MC1174856 and MC1158329: conversations are now saved as continuous threads, and Copilot's memory is improving. The client-side changes require no admin action, but IT teams should understand them amid the flood of Copilot-related notifications they cannot influence.",
      "image": "https://i0.wp.com/office365itpros.com/wp-content/uploads/2026/06/Copilot-memories.jpg?resize=785%2C646&ssl=1"
    },
    {
      "id": "core-infra-security-7954d2e12d",
      "url": "https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/authenticating-aws-workloads-to-azure-functions-using-workload/ba-p/4531603",
      "published": "2026-06-29T04:38:32.000Z",
      "headline": "Authenticating AWS Workloads to Azure Functions using Workload Identity Federation",
      "topic": "identity",
      "score": 44,
      "source": {
        "id": "core-infra-security",
        "name": "Core Infrastructure and Security Blog"
      }
    },
    {
      "id": "msrc-update-guide-5c0b04bf24",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21696",
      "published": "2026-06-28T09:05:29.000Z",
      "headline": "CVE-2025-21696 mm: clear uffd-wp PTE/PMD state on mremap()",
      "topic": "security",
      "score": 23,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-955b2903a6",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-31419",
      "published": "2026-06-28T09:05:24.000Z",
      "headline": "CVE-2026-31419 net: bonding: fix use-after-free in bond_xmit_broadcast()",
      "topic": "security",
      "score": 22,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a0008e063a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21672",
      "published": "2026-06-28T09:05:14.000Z",
      "headline": "CVE-2025-21672 afs: Fix merge preference rule failure condition",
      "topic": "security",
      "score": 13,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-86496bad6a",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-5119",
      "published": "2026-06-28T09:04:37.000Z",
      "headline": "CVE-2026-5119 Libsoup: libsoup: information disclosure via cleartext transmission of cookies during https tunnel establishment",
      "topic": "security",
      "score": 20,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-bcee154200",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23371",
      "published": "2026-06-28T09:03:44.000Z",
      "headline": "CVE-2026-23371 sched/deadline: Fix missing ENQUEUE_REPLENISH during PI de-boosting",
      "topic": "security",
      "score": 32,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-9e4985cbf4",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23383",
      "published": "2026-06-28T09:03:12.000Z",
      "headline": "CVE-2026-23383 bpf, arm64: Force 8-byte alignment for JIT buffer to prevent atomic tearing",
      "topic": "security",
      "score": 34,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-49231ef553",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23377",
      "published": "2026-06-28T09:02:56.000Z",
      "headline": "CVE-2026-23377 ice: change XDP RxQ frag_size from DMA write length to xdp.frame_sz",
      "topic": "security",
      "score": 34,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-d90d8367b1",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-42107",
      "published": "2026-06-28T09:02:05.000Z",
      "headline": "CVE-2024-42107 ice: Don't process extts if PTP is disabled",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7f3729ac5d",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3632",
      "published": "2026-06-28T09:01:38.000Z",
      "headline": "CVE-2026-3632 Libsoup: libsoup: http smuggling and server-side request forgery via malformed hostnames",
      "topic": "security",
      "score": 25,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-7c220485a8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3634",
      "published": "2026-06-28T09:01:23.000Z",
      "headline": "CVE-2026-3634 Libsoup: libsoup: http header injection and response splitting via crlf injection in content-type header",
      "topic": "security",
      "score": 22,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c2df532e54",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23276",
      "published": "2026-06-28T09:01:08.000Z",
      "headline": "CVE-2026-23276 net: add xmit recursion limit to tunnel xmit functions",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-57c3f7b6b2",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23278",
      "published": "2026-06-28T09:00:53.000Z",
      "headline": "CVE-2026-23278 netfilter: nf_tables: always walk all pending catchall elements",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-3c61115299",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23207",
      "published": "2026-06-28T09:00:39.000Z",
      "headline": "CVE-2026-23207 spi: tegra210-quad: Protect curr_xfer check in IRQ handler",
      "topic": "security",
      "score": 7,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-a9f7ed1ab3",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3644",
      "published": "2026-06-28T09:00:24.000Z",
      "headline": "CVE-2026-3644 Incomplete control character validation in http.cookies",
      "topic": "security",
      "score": 38,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-585d3d08dd",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23247",
      "published": "2026-06-28T08:59:53.000Z",
      "headline": "CVE-2026-23247 tcp: secure_seq: add back ports to TS offset",
      "topic": "security",
      "score": 41,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-f9afd92865",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23240",
      "published": "2026-06-28T08:59:39.000Z",
      "headline": "CVE-2026-23240 tls: Fix race condition in tls_sw_cancel_work_tx()",
      "topic": "security",
      "score": 39,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-24827d4d7e",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21870",
      "published": "2026-06-28T08:59:24.000Z",
      "headline": "CVE-2025-21870 ASoC: SOF: ipc4-topology: Harden loops for looking up ALH copiers",
      "topic": "security",
      "score": 14,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-fde6b698c8",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-71227",
      "published": "2026-06-28T08:59:10.000Z",
      "headline": "CVE-2025-71227 wifi: mac80211: don't WARN for connections on invalid channels",
      "topic": "security",
      "score": 11,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-dd469aaa90",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-21888",
      "published": "2026-06-28T08:59:08.000Z",
      "headline": "CVE-2025-21888 RDMA/mlx5: Fix a WARN during dereg_mr for DM type",
      "topic": "security",
      "score": 18,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-c447f98f19",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23214",
      "published": "2026-06-28T08:58:54.000Z",
      "headline": "CVE-2026-23214 btrfs: reject new transactions if the fs is fully read-only",
      "topic": "security",
      "score": 19,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-943c5c6211",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-71225",
      "published": "2026-06-28T08:58:39.000Z",
      "headline": "CVE-2025-71225 md: suspend array while updating raid_disks via sysfs",
      "topic": "security",
      "score": 19,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-831687a6c7",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23213",
      "published": "2026-06-28T08:58:23.000Z",
      "headline": "CVE-2026-23213 drm/amd/pm: Disable MMIO access during SMU Mode 1 reset",
      "topic": "security",
      "score": 16,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    },
    {
      "id": "msrc-update-guide-377e5ebcc9",
      "url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-40213",
      "published": "2026-06-28T08:58:16.000Z",
      "headline": "CVE-2025-40213 Bluetooth: MGMT: fix crash in set_mesh_sync and set_mesh_complete",
      "topic": "security",
      "score": 9,
      "source": {
        "id": "msrc-update-guide",
        "name": "MSRC Security Update Guide (RSS)"
      }
    }
  ]
}
