domain

Winsage
May 14, 2026
Microsoft has introduced MDASH (Multi-Model Agentic Scanning Harness), a security solution that uses over 100 specialized AI agents to identify software vulnerabilities. On May 12, 2026, MDASH identified 16 new vulnerabilities (CVEs) in the Windows networking and authentication stack, four of which were critical, including remote code execution vulnerabilities in tcpip.sys, ikeext.dll, netlogon.dll, and dnsapi.dll. Ten of these vulnerabilities can be accessed over the network without authentication. MDASH operates through a four-stage pipeline: analyzing source code, scrutinizing for suspicious elements, debating the exploitability of issues, and attempting to exploit vulnerabilities. The system is model-agnostic and allows integration of new models and domain-specific knowledge. MDASH scored 88.45 percent on the CyberGym benchmark, ranking first among competitors, although the comparison may not be entirely fair as it contrasts a comprehensive framework with individual models. The models used to achieve this score are not specified. MDASH is supported by Microsoft's Autonomous Code Security Team and is currently in a limited private preview for select customers.
Winsage
May 11, 2026
A security researcher has developed a proof-of-concept tool called GhostLock, which exploits a vulnerability in the Windows file API, specifically the 'CreateFileW' function. By manipulating the 'dwShareMode' parameter to grant exclusive access to files, GhostLock can prevent other users or applications from opening those files, resulting in a 'STATUSSHARINGVIOLATION' error. The tool automates the process of opening multiple files on SMB shares, causing access disruptions without requiring elevated privileges. This technique is intended as a disruption attack rather than a destructive one, similar to ransomware, and can serve as a diversion during intrusions. Detection of this attack relies on monitoring the open-file count with ShareAccess set to 0 at the file server layer. Dvash has provided resources for IT teams to enhance detection capabilities against this threat.
TrendTechie
May 11, 2026
Playground Games accidentally uploaded an unencrypted 155 GB repository of their racing arcade title to Steam, leading to its appearance on torrent sites before the official launch scheduled for May 19. Additionally, Supermassive Games' interactive cinematic experience, Directive 8020, was also leaked shortly before its release. Xbox owners gained early access to LEGO Batman: Legacy Of The Dark Knight, set to officially release on May 22, due to an error during the pre-load phase that allowed players to access additional content.
Winsage
May 11, 2026
Omnissa has integrated Windows Server management into its Workspace ONE Unified Endpoint Management (UEM) platform, allowing organizations to manage Windows Server alongside various endpoints from a single cloud-based system. This integration aims to address challenges faced by IT teams that rely on separate tools for server management, which can increase costs and complicate operations. The inclusion of Windows Server enables IT teams to apply policies, automate tasks, and maintain visibility across devices. Hemant Sahani, Vice President of Product Management at Omnissa, noted that this approach offers cost benefits compared to traditional solutions like Microsoft System Centre Configuration Manager, enhancing security and streamlining server lifecycle management. The new support includes over-the-air configuration management, allowing enforcement of security policies and automation of patching. Administrators will have access to remote inventory data and insights into system performance and security issues, leveraging AI and machine learning. The integration allows for the consolidation of management tools, reducing the number of consoles IT staff must navigate. CDW has endorsed this launch, highlighting its potential to simplify operations and improve security for customers. Omnissa currently serves 26,000 customers globally in various domains, including unified endpoint management and security compliance.
AppWizard
May 9, 2026
On May 9, 2012, Microsoft released Minecraft: Xbox 360 Edition, marking the first console version of the popular sandbox survival game. This release significantly broadened the game's audience, allowing many players who were previously unable to access it on PC to enjoy it on consoles. The Xbox 360 version featured a controller-friendly interface, simplified crafting systems, and more intuitive online multiplayer, making it more accessible to casual gamers. The success of this edition led to the development of distinct versions of Minecraft, resulting in the separation between Minecraft Java Edition and Minecraft Bedrock Edition. The popularity of the Xbox 360 version contributed to Microsoft's acquisition of Mojang in 2014 for .5 billion, solidifying Minecraft's role in Xbox's offerings. The release also paved the way for spin-offs like Minecraft: Story Mode and Minecraft Dungeons, and established a consistent update and engagement strategy from Mojang, allowing Minecraft to remain relevant across multiple platforms and generations.
AppWizard
May 8, 2026
Google has launched the Google Health app, rebranding the existing Fitbit application, but it will phase out several features that longtime Fitbit users relied on. The badge system will be completely removed, and users will lose unique usernames, profile pictures, direct messaging, and community feeds. Child profiles will no longer allow adding friends, and the weekly leaderboard will only focus on steps and cardio load. In health and wellness, minute-by-minute stress check graphs will no longer be available, and detailed skin temperature data will be replaced with daily and weekly trends. Users cannot set calorie targets through food plans anymore, although they can set macronutrient goals. Recipes for Google Health Premium users will also be discontinued, and daily fitness plans will shift to weekly ones. Sleep features will be reduced, with the discontinuation of sleep profiles, monthly sleep animals, and the Estimated Oxygen Variation (EOV) feature. Premium subscribers will now use the Health Coach for personalized sleep responses, and snore detection on certain devices will be eliminated. The app will maintain compatibility with Health Connect and Apple Health but will no longer support connections to Lifescan devices, affecting users who monitor blood glucose levels. Users can log glucose data manually, but reminders and symptom tracking will be removed.
Winsage
May 6, 2026
Microsoft's partnership with OpenAI has shifted from an exclusive agreement to a non-exclusive one, allowing OpenAI to offer its products on various cloud platforms while Microsoft remains its primary cloud partner. Microsoft is facing potential challenges, including its worst quarterly performance since 2008 and internal sales cuts due to low interest in its AI offerings. Despite this, CEO Satya Nadella reported that Microsoft 365 Copilot has reached 20 million paid enterprise seats, with user engagement increasing. However, there are concerns about the willingness of Microsoft 365 and Office 365 users to pay for Copilot. The non-exclusive agreement may weaken Microsoft's competitive edge, as OpenAI can now license its models to competitors. Microsoft is developing its own in-house AI models and has made leadership changes within its Copilot division to secure its position in the AI market. The future of Copilot in Windows 11 remains uncertain, but Microsoft continues to innovate with AI features across its platforms.
Search