Live
Hyper-V PowerShell Direct Flaw Lets Attackers Impersonate Admins, Microsoft Urges Patching·MSFT +2.1%Microsoft Patches CVE-2025-53798: RRAS Memory Leak Exposes VPN Gateways to Data Theft·NVDA +0.2%Windows RRAS Out-of-Bounds Read Flaw Exposes Memory to Remote Attackers·GOOGL +1.7%Critical RRAS Memory Leak CVE-2025-53797 Puts VPN Gateways at Risk – Patch Immediately·AMZN +1.1%Rockwell Patches Critical SSRF Flaw in ThinManager That Exposes NTLM Hashes to Attackers·MSFT +2.1%CISA Flags Rockwell CompactLogix 5480 Flaw That Lets Attackers Run Code Via Physical Access·NVDA +0.2%ABB Patches Critical Authentication Bypass in ASPECT, NEXUS, and MATRIX BMS·GOOGL +1.7%Microsoft Copilot Outage Strikes on September 8, Leaving Users Scrambling for Workarounds·AMZN +1.1%Hyper-V PowerShell Direct Flaw Lets Attackers Impersonate Admins, Microsoft Urges Patching·MSFT +2.1%Microsoft Patches CVE-2025-53798: RRAS Memory Leak Exposes VPN Gateways to Data Theft·NVDA +0.2%Windows RRAS Out-of-Bounds Read Flaw Exposes Memory to Remote Attackers·GOOGL +1.7%Critical RRAS Memory Leak CVE-2025-53797 Puts VPN Gateways at Risk – Patch Immediately·AMZN +1.1%Rockwell Patches Critical SSRF Flaw in ThinManager That Exposes NTLM Hashes to Attackers·MSFT +2.1%CISA Flags Rockwell CompactLogix 5480 Flaw That Lets Attackers Run Code Via Physical Access·NVDA +0.2%ABB Patches Critical Authentication Bypass in ASPECT, NEXUS, and MATRIX BMS·GOOGL +1.7%Microsoft Copilot Outage Strikes on September 8, Leaving Users Scrambling for Workarounds·AMZN +1.1%

Incident Response

The latest Incident Response coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 9:04 PM
Latest Most Read Breaking
Sort
Blue Team · Cve-2025-49734

Hyper-V PowerShell Direct Flaw Lets Attackers Impersonate Admins, Microsoft Urges Patching

Microsoft has disclosed a new elevation-of-privilege vulnerability (CVE-2025-49734) in Windows Hyper-V’s PowerShell Direct feature that lets a locally authenticated attacker with low privileges...

Advertisement
rockwell_patches_critical_ssrf.jpg
Credential Theft · Cve-2025-9065

Rockwell Patches Critical SSRF Flaw in ThinManager That Exposes NTLM Hashes to Attackers

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) reissued a high-severity advisory on September 9, 2025, for a server-side request forgery (SSRF) vulnerability in Rockwell...

SE Security Desk·45w ago
Arbitrary Code · Cisa

CISA Flags Rockwell CompactLogix 5480 Flaw That Lets Attackers Run Code Via Physical Access

Three words can make any plant manager’s blood run cold: arbitrary code execution. That’s what CISA is warning about with a newly republished advisory for the Rockwell Automation CompactLogix...

SE Security Desk·45w ago
abb_patches_critical_authentication.jpg
Abb · Aspect-enterprise

ABB Patches Critical Authentication Bypass in ASPECT, NEXUS, and MATRIX BMS

{ "title": "ABB Patches Critical Authentication Bypass in ASPECT, NEXUS, and MATRIX BMS", "content": "ABB has rushed out firmware updates for its ASPECT, NEXUS, and MATRIX building management...

SE Security Desk·45w ago
Ai Reliability · Authentication

Microsoft Copilot Outage Strikes on September 8, Leaving Users Scrambling for Workarounds

On Monday evening, September 8, 2025, Microsoft’s Copilot AI assistant became inaccessible for a wave of users, triggering a spike in outage reports across community forums and monitoring services....

AI AI & Copilot Desk·45w ago
Admin Center · Adversarial Testing

Copilot Studio Now Intercepts Agent Actions for Real-Time Security Vetoes

Microsoft has shifted the security model for its Copilot Studio from passive guardrails to active, inline enforcement. Organizations can now route an AI agent’s planned actions—including prompts,...

AI AI & Copilot Desk·45w ago
Admin Center · Ai

Copilot Studio Now Lets Security Teams Block Agent Actions in Under One Second

Microsoft has handed enterprise defenders a powerful new capability: the ability to inspect and veto every planned action of an autonomous AI agent before execution, all within a single second....

AI AI & Copilot Desk·45w ago
Ai Security · Audit Logs

Copilot Studio's New Runtime Security Lets Enterprises Veto AI Agent Actions Instantly

Microsoft is giving enterprise security teams a new way to block dangerous AI agent actions in near real time. A public preview feature in Copilot Studio, announced March 2025, lets organizations...

AI AI & Copilot Desk·45w ago
Azure Service Health · Bgp

Red Sea Cable Damage Triggers Azure Latency Surge, Microsoft Reroutes Traffic

Microsoft has confirmed that multiple undersea fiber-optic cables in the Red Sea were severed, triggering a surge in latency for Azure customers as traffic is forced onto longer alternative paths....

SE Security Desk·45w ago