file security

Winsage
September 24, 2026
Security researchers from Graz University of Technology in Austria have discovered significant vulnerabilities in the file notification systems of major operating systems: Android, Linux, macOS, and Windows. These flaws have existed for decades and can lead to the leakage of sensitive system information. The affected systems include inotify on Linux (since 2005), FileObserver on Android (since 2008), ReadDirectoryChangesW on Windows (since 2000), and FSEvents on macOS (since 2007). The vulnerabilities allow unprivileged users to monitor file events without explicit read permissions, enabling potential attacks such as inter-keystroke timing attacks and website fingerprinting. For example, on Linux, monitoring a readable directory can leak events on files that cannot be read, allowing attackers to achieve a 93.1% to 100% accuracy rate in monitoring keystrokes. Specific vulnerabilities include CVE-2025-68788 on Linux, which received a partial fix in December 2025, and issues on Android where FileObserver can bypass app storage isolation. On macOS, limited information is available due to a lack of bypasses for private directories, while on Windows, monitoring the root directory can reveal the full path of every accessed file, allowing real-time tracking of web activity with a 97.8% accuracy rate. Microsoft has described the issue as "by-design," which has faced criticism. The researchers propose stronger mitigations, such as disallowing monitoring of entire drives on Windows and introducing a permission system for file monitoring on Windows and macOS. Their findings will be presented at the ACM CCS 2026 conference in November in The Hague, Netherlands.
Winsage
May 2, 2026
Microsoft will begin rolling out the May 2026 Security Update for Windows 11 on May 12, 2026. Key features of this update include: 1. Xbox Mode: Transforms PCs into a console-like experience, prioritizing system resources for gaming and freeing up to 2GB of memory. 2. Voice Typing Improvements: Redesign of Voice Typing elements on the touch keyboard. 3. New Arabic 101 Legacy Keyboard Layout: Available for addition from the Region page in Settings. 4. Drop Tray Changes: Renamed from Drag Tray and can be disabled in Settings > System > Multitasking. 5. Taskbar AI Agents Support: Allows monitoring of AI agents directly from the Taskbar, starting with the Microsoft 365 Copilot app. 6. Debloat Policy with Dynamic List Support: Enables administrators to specify additional apps for removal beyond the default list. 7. Windows Driver Policy Update: Changes how the kernel manages trust for third-party drivers, eliminating default trust for cross-signed drivers. 8. Batch File Security Changes: Enhances security for batch files and Command Prompt scripts, with an option for a hardened processing mode. 9. Format FAT32 up to 2TB: The format command-line tool now supports formatting volumes up to 2TB using FAT32.
Tech Optimizer
April 5, 2026
z3soft is developing the Agentic Security Platform (ASP), which integrates large language models, antivirus solutions, and comprehensive file security to shift from passive to proactive cybersecurity measures. CEO Park Ju-seon highlights the need for a broader market strategy to address challenges in the domestic security market, which is dominated by a few players. The ASP aims to combine legacy security systems with AI technology for enhanced security management. z3soft is focusing on creating a 'cyber immunity' solution for AI environments, integrating Zero Trust principles for data protection. The company plans to foster an integrated security ecosystem through partnerships with smaller firms and aims to make advanced security solutions accessible to small and medium-sized enterprises (SMEs) via a subscription model. z3soft intends to validate its business model in Japan and the U.S. before introducing it to South Korea, with goals set for market entry by 2027 and the launch of zero-trust firewalls in Japan and an integrated security platform in the U.S. Park anticipates that significant changes in the domestic market may take five to ten years.
AppWizard
March 2, 2026
Perplexity allows users to access multiple AI models with cited sources for verification. Google Docs enables collaborative document creation and editing with features like commenting, automatic cloud saving, and offline access. Notion serves as a hub for to-do lists, notes, documents, and project management, with AI capabilities for transcribing and summarizing notes. Microsoft To Do offers a user-friendly interface for creating to-do lists, setting reminders, and collaborating with others, while syncing across devices. Proton Drive provides end-to-end encryption for file security, automatic backups, and additional security features like PIN or biometric protection and secure file sharing options.
Winsage
February 28, 2026
Microsoft has released new Windows 11 Insider Preview builds that enhance security and performance for batch files and CMD scripts. IT administrators can now activate a secure processing mode by adding the LockBatchFilesInUse registry value, which prevents modifications to batch files while they are running. This update also requires signature validation only once per batch file, improving performance. Additionally, the Shared Audio feature has been refined, allowing users to share audio across multiple devices with individual volume sliders and a new taskbar indicator. The feature now supports more Bluetooth LE Audio accessories, including Samsung Galaxy Buds 4, Sony WF-1000XM6, and Xbox Wireless Headset. These updates are available for Windows Insiders in the Beta and Dev channels with specific preview builds installed.
Winsage
November 6, 2025
A phased removal schedule for Office version 2612 has been established, with the Current Channel's full removal by December 2026, the Monthly Enterprise Channel by February 2027, and the Semi-Annual Enterprise Channel by July 2027. A final removal date is set for December 2027 for customers with extended support licenses. Additionally, MDAG (Malware Detection and Guard) has been introduced to enhance security by using a Hyper-V sandbox for file execution, isolating potential malware from the operating system. However, this may result in slower document load times, impacting productivity.
Tech Optimizer
June 24, 2025
Zero Trust addresses the issue of misplaced trust in cybersecurity, particularly the assumption that files from known senders are safe. This assumption can lead to security breaches, as malware can be hidden in documents from internal employees, vendors, or customers. Familiar interactions often bypass essential security checks, creating vulnerabilities. Security tools may fail to detect modern threats, which can evade traditional defenses. Compromised accounts and infected devices can introduce risks regardless of the sender's identity. To mitigate these risks, Votiro's solution cleanses every file using Content Disarm and Reconstruction (CDR) technology, removing harmful elements while maintaining functionality. Votiro's approach ensures that file security does not disrupt business operations, providing a seamless and efficient solution for organizations.
Winsage
March 26, 2025
BleachBit is an open-source system cleaning tool that helps users enhance disk capacity by removing unnecessary files and improving privacy. It permanently deletes files to prevent recovery, making it suitable for users handling sensitive information. The tool offers features such as shredding unused disk space, clearing browser histories, and removing software logs. BleachBit is free to use, lightweight, and compatible with various operating systems, including Windows, Linux, and macOS (with limited functionality). It supports cleaning for multiple applications and provides command-line functionality for advanced users. Additionally, BleachBit can be run from a USB drive without installation. Alternatives to BleachBit include CCleaner, Advanced SystemCare, and DaisyDisk, each offering different functionalities and features.
Search