out-of-band update

Winsage
January 26, 2026
Microsoft's January 2026 Patch Tuesday updates for Windows 11 have caused significant user frustration, leading to two emergency out-of-band updates within a week to address critical issues. The latest emergency update, KB5078127, was released to fix problems that made applications like Outlook, OneDrive, and Dropbox inoperable after the January 13 updates. Initially, users were advised to uninstall the updates as a temporary fix. The first emergency update on January 17 aimed to resolve shutdown and hibernation failures for version 23H2 and issues with Remote Desktop sign-in, but it inadvertently caused further disruptions to essential applications. The Windows release health dashboard remains a key resource for users seeking updates on ongoing issues.
Winsage
January 26, 2026
Microsoft has issued two emergency fixes for issues arising from its January 2026 update for Windows 11. The first patch aimed to resolve various problems but resulted in shutdown issues for certain machines, particularly those using the Enterprise and IoT editions of Windows 11 version 23H2. In response, Microsoft released an out-of-band update to fix these shutdown problems. A week later, another out-of-band update was required to address crashes in OneDrive and Dropbox for users on Windows 11 versions 24H2 and 25H2. Additionally, Microsoft is investigating reports of boot failures linked to the January update, with some machines experiencing bluescreen errors and requiring manual recovery. This situation mirrors a previous incident where a security update was initially blamed for SSD issues, which were later attributed to firmware and motherboard BIOS problems.
Winsage
January 19, 2026
Some users of Windows 11 have experienced a problem where their PCs reboot instead of shutting down after the Patch Tuesday security update KB5073455. This issue primarily affects devices with Secure Launch on Windows 11 version 23H2. Microsoft has confirmed this behavior, which disrupts the usual power-off sequence and can drain battery life for laptops and complicate remote management processes. An out-of-band update, KB5077797, has been released to restore normal shutdown and hibernation functionalities for affected systems. Users can check for this update in Windows Update or download it from the Microsoft Update Catalog. To determine if they are affected, users should look for immediate restarts when selecting Shut Down or Hibernate and check if Secure Launch is enabled in System Information.
Winsage
January 16, 2026
Jen Easterly has been appointed as the new Chief Executive Officer of the RSA Conference. She is a cybersecurity expert and former Director of the Cybersecurity and Infrastructure Security Agency (CISA). Palo Alto Networks has released security updates for a vulnerability (CVE-2026-0227) with a CVSS score of 7.7 affecting its GlobalProtect Gateway and Portal, which can cause a denial-of-service condition in PAN-OS software. The January 2026 security update from Microsoft has caused connection and authentication failures in Azure Virtual Desktop and Windows 365, affecting users across various Windows versions. Microsoft is working on a resolution. The chief constable of West Midlands Police acknowledged an error by Microsoft’s Copilot AI in generating a fictional intelligence report. Microsoft has not confirmed Copilot's involvement. Britain’s National Cyber Security Centre (NCSC) has collaborated with Five Eyes partners to provide guidance on securing industrial operational technology, highlighting risks associated with remotely monitored systems. Kyowon, a South Korean conglomerate, confirmed a ransomware attack on January 10 that may have compromised customer information, affecting approximately 5.5 million members. Researchers at Varonis have identified a new attack technique called "Reprompt" that allows data exfiltration from Microsoft Copilot via a malicious link, exploiting a Parameter 2 Prompt (P2P) injection technique. Central Maine Healthcare is notifying over 145,000 patients about a data breach that compromised personal, treatment, and health insurance information, discovered on June 1.
Winsage
January 15, 2026
Microsoft's January security update, released on January 13, 2026, has caused connection and authentication failures for users of Azure Virtual Desktop and Windows 365, particularly affecting those using the Windows App. The update has resulted in credential prompt failures during Remote Desktop connections across all supported Windows versions, from Enterprise LTSC 2016 to Windows 11 25H2, as well as Windows Servers from 2019 to 2025. Microsoft is investigating the issue and plans to release an out-of-band update soon. Users have been advised to either uninstall the update or use the Remote Desktop Client or the Windows App web client as workarounds. Reports indicate persistent issues, including an "Unable to Authenticate" error when attempting to connect via the Windows App. Microsoft has also made a Known Issue Rollback available to address these credential problems.
Winsage
December 23, 2025
Microsoft has released an out-of-band update to fix a Message Queuing (MSMQ) issue that arose after the December 2025 update. This patch is available for several Windows versions, including Windows 10 22H2 ESU, Windows 10 Enterprise LTSC 2021, and Windows 10 LTSB 2016, as well as various Windows Server versions from 2008 to 2019. The issue primarily impacted enterprise environments, while users on Pro and Home editions were "very unlikely" to experience it. The root cause was a change requiring MSMQ to have write access to areas typically restricted, leading to message queuing disruptions and misleading error logs. Microsoft documented the known issue on December 12, 2025, after several days of recognition, during which administrators had to implement workarounds. The update addresses the problem but raises concerns about Microsoft's quality assurance practices, especially given MSMQ's importance in corporate infrastructures. Users expressed dissatisfaction due to service disruptions caused by the issue.
Winsage
December 19, 2025
Microsoft released an out-of-band update (KB5074976) on December 19 to address Message Queuing (MSMQ) errors caused by December 2025 security updates. These updates have led to operational disruptions in business applications and IIS websites, particularly on systems running Windows 10 22H2, Windows Server 2019, and Windows Server 2016, which received updates KB5071546, KB5071544, and KB5071543. Users reported issues such as inactive MSMQ queues, IIS sites generating "insufficient resources" error messages, and applications unable to write messages to queues. The problems stem from modifications in the MSMQ security model, which altered permissions for the system folder C:WindowsSystem32msmqstorage, requiring MSMQ users to have write access typically reserved for administrators. Systems with full administrative rights do not experience these issues. Microsoft is investigating the matter but has not provided a timeline for a resolution.
Search