advisory

Winsage
August 3, 2026
Microsoft is updating Secure Boot certificates for Windows 11 PCs, as the previous certificates are 15 years old and nearing expiration. Users can check their certificate status easily. An advisory was issued in early September regarding changes for Windows Insider channels, particularly affecting the Experimental and Beta channels, with a deadline for certificate updates set for August 11, 2026. The Release Preview builds will not be affected by this update requirement. Users in the impacted channels must update to specific builds to obtain the new certificates, or they may stop receiving updates after the deadline. The minimum build requirements for each channel are outlined, and users can check their current Windows 11 Insider build by using the winver command. Microsoft has confirmed that these updates will not impact activation or licensing status.
AppWizard
July 23, 2026
GitHub will reject command-line support bundle uploads from outdated versions of GitHub Enterprise Server lacking security patches starting August 18, 2026. The npm package @copilot-mcp/apex has been identified as a post-install dropper that installs a macOS infostealer, phishing for sensitive information and maintaining a connection to an attacker's server. A rogue extension on the Microsoft Visual Studio Code marketplace, "Markdown All Pro," impersonates a legitimate tool and opens a backdoor after installation. A phishing campaign targeting Portuguese users delivers the Lampion banking malware, which has been active since 2019. DoubleVerify reports a rise in "AfterCall" apps that exploit user permissions for ad fraud. The GhostCommit attack method hides malicious instructions within PNG images in pull requests. The U.S. government has updated its advisory on Iranian-affiliated cyber activity targeting operational technology devices. An Android app posing as a civil defense alert system has been found to contain malware for data harvesting. An Iranian threat actor is distributing MarkiRAT malware through fake applications. An analysis of 28 AI-coded applications revealed 434 vulnerabilities, prompting Cisco to introduce Antares to identify vulnerabilities in codebases. A Russian-speaking threat actor is dismantling guardrails on AI models to create offensive tools.
Winsage
July 15, 2026
Cursor, a development tool, has a security vulnerability that allows arbitrary code execution by simply opening a project repository on Windows. This flaw, reported by AI security firm Mindgard, is due to the presence of a file named git.exe in the project root, which Cursor executes automatically without user prompts. Mindgard demonstrated this vulnerability by renaming Windows Calculator to git.exe and placing it in the project root, leading to multiple instances of Calculator launching upon opening the repository. Cursor has not yet released a patch or advisory for this issue, which was first reported on December 15, 2025, and remains in the latest version, 3.11, released on July 10, 2026. Users are advised to implement workarounds, such as using AppLocker or Windows App Control to block executables by name and path. Other vendors, including GitHub and Google, have encountered similar vulnerabilities, but none have released fixes. The issue highlights the risks associated with untrusted search paths in software development.
Winsage
July 10, 2026
Microsoft advises organizations to expedite their Windows update deployment timelines due to advancements in artificial intelligence that allow cyber attackers to quickly exploit vulnerabilities after security updates are released. Jeremy Chapman, Director of Microsoft 365, warns that delaying critical quality updates with security fixes increases the risk of exploitation. Microsoft recommends a quality update deferral period of fewer than three days, update deadlines of zero or one day, and a grace period of no more than two days. The Windows Autopatch report within Microsoft Intune helps identify unpatched devices, allowing administrators to adjust update deferral policies. Organizations can configure update delivery settings through policy controls in Windows Autopatch and Microsoft Intune, as well as other management tools like Microsoft Configuration Manager and Windows Server Update Services. Microsoft also promotes the use of Hotpatch for quicker installation of security updates without rebooting and encourages Conditional Access policies to restrict access to corporate resources for devices that lack required updates.
Tech Optimizer
July 3, 2026
Percona has formed a strategic alliance with HexaCluster to assist organizations in migrating from proprietary databases to open-source alternatives, specifically PostgreSQL, MySQL, and MariaDB. The partnership combines Percona's migration assessment and production support with HexaCluster's migration software for diverse database environments. The migration process will begin with a comprehensive assessment by Percona to outline the scope and plan the transition. Percona will lead the migration efforts, while HexaCluster will provide software solutions for complex migrations. This collaboration aims to help enterprises reduce costs associated with proprietary databases and minimize risks during migration. HexaCluster specializes in PostgreSQL migration and offers tools for migration assessment, schema conversion, data migration, and live replication. Percona supports various database systems and emphasizes open-source solutions to give organizations more control over their data infrastructure.
AppWizard
June 30, 2026
Robert Henrysson has announced his departure as CEO of Supermassive Games, two months after the launch of Directive 8020. He reflected on his tenure with pride, noting the studio's expansion and commitment to quality. Nordisk Games recognized his contributions and leadership during a transformative period. Directive 8020, part of the Dark Pictures series, received mixed user ratings on Steam but was praised by critics, achieving an 85% rating. Henrysson's leadership occurred amid industry challenges, including layoffs. He plans to spend the summer with his family while remaining open to future opportunities in the gaming industry.
Tech Optimizer
June 24, 2026
EDB's per-core pricing model offers predictable costs compared to consumption-based cloud data platforms, aiding organizations in budgeting. However, predictable billing does not guarantee lower costs, as high-speed operational data processing requires more expensive hardware than lakehouse storage solutions. EDB's architecture, built on a unified Postgres-Iceberg foundation, streamlines data governance by reducing the need for multiple specialized data stores, leading to fewer platforms to manage and enhancing operational efficiency and data governance protocols.
Search