network connectivity

Winsage
December 26, 2025
A new runtime standby ABI has been proposed in the Linux kernel community through a post-Christmas patch series led by Antheas Kapenekakis. This initiative aims to implement a feature similar to Microsoft's "Modern Standby," allowing devices to maintain network connectivity while appearing to be in a sleep state. The patches provide a more robust solution than previous efforts, enabling user-space control over ACPI LPS0 display notifications. The series introduces a mechanism for firing Modern Standby firmware notifications without suspending the kernel, allowing the device to appear asleep while still performing basic computations. The first part of the series modifies the existing DSMs to be called at the beginning of the suspend sequence and exposes a transition function through /sys/power/standby for user-space interaction. The RFC patch series, including documentation on the proposed interface, is available for review.
Winsage
December 11, 2025
Microsoft resolved an issue in Windows 11 where users experienced bright white flashes when launching File Explorer in dark mode after installing the KB5070311 update. This glitch affected various actions within the application. The KB5072033 cumulative update fixed this issue, improving the experience in File Explorer. Additionally, the KB5072033 update addressed network connectivity loss on virtual machines and introduced enhancements to Windows PowerShell, including warnings for potentially harmful scripts. Microsoft also acknowledged a bug affecting system components like File Explorer and the Start Menu during the provisioning of Windows 11 24H2 and 25H2 devices. Furthermore, Microsoft is testing a feature to preload File Explorer in the background to enhance performance.
BetaBeacon
December 8, 2025
Blockchain games use distributed ledgers to store assets and data, including progress tracking and digital economies. Blockchain technology and cryptocurrency integration have transformed digital entertainment, leading to the development of popular Web3 RPG titles like Axie Infinity. Games built on blockchain networks require devices with minimum requirements for Android version compatibility, CPU and GPU performance, RAM, storage, wallet integration, network connectivity, security, and battery life.
Winsage
December 2, 2025
Updates in the Windows ecosystem are essential for enhancing stability, performance, and security. However, users of Windows 11 have expressed frustration due to frequent updates disrupting functionalities like network connectivity and printer access. Automatic updates can interrupt productivity, with unexpected restart prompts leading to potential loss of unsaved work. Issues with third-party programs and drivers often arise post-update, and older PCs experience significant performance degradation due to background updates. Many users face limitations with internet access, as substantial update sizes can consume data quickly, especially under fair usage policies. Storage constraints on older devices can lead to operational issues, and attempts to pause updates may not always be effective. While updates are crucial for delivering new features and security fixes, their frequency can diminish their perceived importance, causing users to delay addressing issues. Disabling automatic updates can be complicated, requiring adjustments in the Windows Update service, Group Policy Editor, or Registry, which may not be accessible or user-friendly. A simple one-click "Disable" button in the Windows Update settings would enhance user control over update installations, allowing them to manage updates according to their schedules.
Tech Optimizer
November 18, 2025
A newly released open-source tool called SilentButDeadly, developed by Ryan Framiñán and launched on November 2, 2025, can disable Endpoint Detection and Response (EDR) systems and antivirus software without terminating processes. It exploits the Windows Filtering Platform to sever cloud connectivity for security products, leaving systems vulnerable to attacks. SilentButDeadly operates through a seven-phase execution sequence, starting with verifying administrator privileges, then scanning for active EDR processes like SentinelOne and Windows Defender. It establishes network filters that block communications for these security applications, preventing them from receiving updates or transmitting telemetry data. The tool also attempts to disable EDR services by changing their startup types. SilentButDeadly features dynamic, self-cleaning filters and builds on techniques from EDRSilencer, introducing enhanced operational safety. Organizations using cloud-based threat detection face risks when their security solutions lose connectivity. Security teams are advised to monitor Windows event logs for specific filter creation events and implement real-time monitoring and redundant communication channels for EDR telemetry.
Tech Optimizer
November 17, 2025
A new endpoint detection and response (EDR) evasion technique called SilentButDeadly has been identified, which exploits vulnerabilities in security software by using a network communication blocker that leverages the Windows Filtering Platform (WFP). This technique disrupts EDR and antivirus solutions' cloud connectivity without terminating processes or manipulating the kernel. SilentButDeadly operates through a seven-phase execution sequence, starting with verifying administrator privileges and discovering EDR solutions like SentinelOne and Windows Defender. It establishes dynamic WFP sessions with high-priority filtering rules to block outbound telemetry and inbound command-and-control communications, preventing EDR solutions from receiving updates and executing remote management commands. Additionally, it attempts to disable EDR services, hindering automatic restarts and background monitoring. This technique highlights a significant architectural vulnerability in EDR systems that rely on network connectivity. To mitigate this threat, security teams can monitor Windows event logs for specific Event IDs related to WFP filter creation and implement real-time monitoring and redundant communication channels. SilentButDeadly requires administrator privileges and is ineffective against EDR solutions protected by kernel-level network drivers.
Winsage
November 6, 2025
Microsoft is addressing an issue affecting users of Intel-based PCs running Windows 11 versions 25H2 and 24H2, as well as some Windows 10 users, who are unexpectedly entering BitLocker recovery mode without changes to their system configurations. This problem is linked to a newly identified bug that prompts the recovery key request. The issue has been associated with Windows Updates released on or after October 14, 2025, specifically update KB5066835 for Windows 11 and KB5066791 for Windows 10 version 22H2. The Connected Standby feature may be related to the problem, which primarily affects Intel systems. Microsoft is rolling out a fix for this issue, and users are advised to back up their recovery keys and apply the latest updates to mitigate risks.
Winsage
November 5, 2025
Microsoft has acknowledged an issue affecting Windows 11 versions 24H2 and 25H2, as well as Windows 10 version 22H2, where users of specific Intel-based devices encounter unexpected BitLocker recovery screens after installing updates released on or after October 14, 2025. This problem is linked to devices with Connected Standby technology, which affects the startup process but does not indicate a continuous encryption issue. Entering the recovery key resolves the prompt, and subsequent boots do not trigger additional prompts. Microsoft has activated a Known Issue Rollback (KIR) to address the issue without requiring users to uninstall previous patches. Server editions of Windows are unaffected, and users are advised to monitor the Windows Release Health dashboard for updates.
Search