Security Updates
The latest Security Updates coverage — news, analysis, and updates from the WindowsNews.AI desk.
GPT-5 Now Open to All on Windows: How to Use It and Avoid Malware Traps
OpenAI has made GPT-5 the default model in ChatGPT, and Windows users can access it immediately—no separate download or subscription required. But as the AI rush intensifies, so do the risks: fake...
Microsoft Switches on GPT-5 Across Copilot, Office, and GitHub with New Smart Mode
Microsoft has flipped the switch on GPT-5 across its entire product range, making OpenAI’s newest reasoning model the default engine for Copilot, Microsoft 365, GitHub, and Azure AI Foundry as of...
Chrome 139 Patches UI Spoofing Flaw That Tricks Users Into Giving Away Permissions—Edge Users Are Protected Too
Google has shipped a critical security fix for Chrome that plugs a user interface spoofing hole attackers could use to trick people into giving websites access to their camera, microphone, or...
CVE-2025-8581: The Low-Risk Chrome Extension Bug That Still Requires an Immediate Update on Edge and Chrome
Google has patched a security vulnerability in Chrome’s Extensions framework that could have allowed attackers to siphon sensitive cross-origin data from unsuspecting users. Tracked as...
Akira Ransomware Exploits Intel ThrottleStop Driver to Disable Windows Defender in Stealthy BYOVD Campaign
A potent ransomware campaign has turned a trusted Intel CPU tuning driver into a weapon, allowing attackers to evade Windows 11's built-in defenses by disabling Microsoft Defender with surgical...
Windows 11 Privacy:Real-Time Alerts and Controls for Camera & Microphone Access
Microsoft has quietly built a privacy fortress around your webcam and microphone, and most users are unaware of its full capabilities. As video calls, remote work, and cloud-based collaboration...
CISA Orders Emergency Fix for Exchange Hybrid Bug Allowing 'Total Domain Compromise'
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive requiring federal agencies to patch a severe Microsoft Exchange vulnerability by August 11, warning...
Critical Exchange Hybrid Flaw CVE-2025-53786 Allows Undetectable Privilege Escalation—Patch Now
A dangerous authentication bypass has surfaced in Microsoft Exchange hybrid deployments, prompting coordinated alerts from both Microsoft and the U.S. Cybersecurity and Infrastructure Security Agency...
The Phishing Pipeline: How Attackers Weaponize Microsoft 365 Direct Send to Evade Every Defense
Microsoft 365’s Direct Send feature has become a double-edged sword. Designed to let printers, scanners, and applications relay mail without a dedicated mailbox, it now enables attackers to slip...
Battlefield 2042 Now Demands Secure Boot: A Step-by-Step Guide to UEFI and Anti-Cheat
EA’s latest anti-cheat salvo for Battlefield 2042 has detonated across the PC gaming community, leaving a trail of error messages and frantic BIOS navigation in its wake. With the v8.8.0 update,...
Microsoft’s $101.8B Profit Overshadowed by 17,000 Layoffs as AI Investment Hits $85B
Microsoft just delivered a fiscal year that would be the envy of any tech giant—record revenues, soaring profits, and a market cap that surpassed $4 trillion for the first time. But beneath the...
CrashPlan Touts Free OneDrive Backup for Microsoft 365 at TechCon 365 Atlanta
Ransomware attacks have paralyzed organizations of every size, and boardrooms are demanding more than just backup—they want ironclad cyber resilience that can restore critical Microsoft 365 data in...