security updates

Winsage
May 1, 2026
Microsoft resolved an issue affecting the display of security warnings when opening Remote Desktop (.rdp) files across all supported Windows versions, including Windows 11, Windows 10, and Windows Server. This problem was particularly evident on devices with multiple monitors having different display scaling settings. The fix was included in the optional KB5083631 preview cumulative update for Windows 11. The issue arose after the installation of the April 2026 security update, which introduced security warnings to enhance protection against phishing attacks. Users reported misalignment and obscured buttons in the security dialog, making it difficult to interact with. Additionally, the April security updates caused issues with third-party backup applications on Windows 11 systems and led to restart loops and failures during update installations on Windows Server.
Winsage
May 1, 2026
Cookies worden gebruikt voor het leveren en onderhouden van Google-services, het bijhouden van uitval, bescherming tegen spam, het meten van doelgroepbetrokkenheid en sitestatistieken. Bij het kiezen van 'Alles accepteren' worden cookies ook gebruikt voor het ontwikkelen van nieuwe services, het tonen van advertenties, het meten van hun effectiviteit, en het aanbieden van gepersonaliseerde content en advertenties. Bij 'Alles afwijzen' worden cookies niet voor deze aanvullende doeleinden gebruikt, wat leidt tot niet-gepersonaliseerde content en advertenties. Gepersonaliseerde content kan variëren van videoaanbevelingen tot advertenties afgestemd op eerdere activiteiten. Cookies helpen ook bij het waarborgen van leeftijdsgeschikte functionaliteit. Voor privacyinstellingen kunnen gebruikers 'Meer opties' selecteren of g.co/privacytools bezoeken.
Winsage
May 1, 2026
The KB5083769 security update released in April 2026 has disrupted the functionality of various third-party backup applications on Windows 11 versions 24H2 and 25H2, primarily due to issues with the Volume Shadow Copy Service (VSS). Affected applications include Acronis Cyber Protect Cloud, Macrium Reflect, NinjaOne Backup, and UrBackup Server. Users have reported receiving an error message indicating that backups have failed due to VSS timeouts. Acronis has acknowledged the issue, stating it affects both Windows 11 Pro and Home editions, and warns of potential broader system issues. A temporary solution involves uninstalling the KB5083769 update or pausing Windows updates. Additionally, Microsoft has issued out-of-band updates for critical issues affecting Windows Server systems and warned that some Windows Server 2025 devices may encounter BitLocker recovery prompts after installing the KB5082063 update.
Winsage
April 30, 2026
Windows 11 has faced criticism from users regarding its user experience and strict hardware requirements. Many users feel the OS is overloaded with features, including unwanted AI elements and pre-installed applications. In response, a customization community has emerged, with developers like Raditya Aryaputra proposing alternative designs, such as a "Refined" version of Windows 11 that focuses on a streamlined experience. Aryaputra's concept includes a compact Start menu without ads, a revamped Windows Search, and a simplified Widget panel. Microsoft is reportedly planning to reintroduce the movable and resizable project feature in its Windows K2 initiative, set for 2026. User options are limited as mainstream support for Windows 10 ended on October 14, 2025, although an Extended Security Updates program is available temporarily. Microsoft has also redesigned the Start menu based on user feedback and is actively seeking input through Windows Insider meetups. Additionally, Microsoft has streamlined its AI strategy within Windows 11, removing Copilot from certain applications. A status tracker is available for users to follow changes related to the Windows K2 initiative.
Winsage
April 29, 2026
Microsoft is implementing changes to the Windows Update process in Windows 11 to address user frustrations. Key updates include: 1. Users can delay updates indefinitely by selecting specific end dates for pauses, extending up to 35 days at a time. 2. The Power menu will now include options for "Update and shut down" and "Update and restart," giving users more control over when updates are finalized. 3. Microsoft is consolidating updates to reduce the number of restarts to one per month. 4. Users will no longer be forced to install updates during the setup of a new Windows PC, allowing updates to occur in the background. 5. Microsoft will provide more detailed information on updates, particularly for driver updates, by clarifying the device class in the titles. These changes are expected to be tested in the Windows Insider program before being released to the general public.
Winsage
April 28, 2026
A new vulnerability in Microsoft Windows, designated as CVE-2026-32202, has been discovered due to an incomplete security patch for a previous flaw (CVE-2026-21510). This new vulnerability allows attackers to execute zero-click attacks by processing specially crafted shortcut files, enabling automatic authentication requests without user interaction. The vulnerabilities are linked to another flaw (CVE-2026-21513) in Microsoft’s MSHTML framework, and cybercriminals, specifically the APT28 group, have exploited these issues in attacks against Ukraine and the European Union. Microsoft has released a fix for the new vulnerability in its April 2026 security updates.
Winsage
April 28, 2026
Microsoft has introduced a new enterprise policy setting that allows IT administrators to silently uninstall the Microsoft Copilot app from managed Windows 11 devices. The RemoveMicrosoftCopilotApp policy became available after the April 2026 Patch Tuesday security updates and is compatible with enterprise management solutions like Microsoft Intune and System Center Configuration Manager (SCCM). Administrators can find the policy in the Group Policy Editor under User Configuration > Administrative Templates > Windows AI > Remove Microsoft Copilot App. It specifically targets Windows 11 Pro, Enterprise, and Education SKUs, excluding Home edition users. The uninstallation process is triggered when three conditions are met: Microsoft 365 Copilot is installed on the device, it was provisioned (not user-installed), and it has not been launched by the user in the last 28 days. The policy was initially available for Windows Insiders in January 2026 and became generally accessible afterward. However, future updates or user reinstalls from the Microsoft Store may reintroduce the Copilot app, necessitating ongoing policy enforcement for permanent removal. Organizations seeking broader exclusion may need to use PowerShell scripts or additional MDM configurations.
Winsage
April 27, 2026
India’s cybersecurity agency, CERT-In, has issued an advisory regarding high-severity vulnerabilities in various Microsoft products, including multiple versions of Windows, Windows Server, Microsoft Office, and the Chromium-based Microsoft Edge browser. These vulnerabilities can allow attackers to execute malicious code, elevate system privileges, access sensitive data, or disrupt services. They arise from issues such as improper input validation, memory corruption, insufficient access control, and inadequate memory object handling. Exploitation can occur remotely or locally, sometimes requiring user interaction. CERT-In advises users and organizations to apply the latest security updates from Microsoft to mitigate these risks.
Winsage
April 27, 2026
Microsoft has introduced a policy allowing IT administrators to remove the Microsoft Copilot app from managed enterprise devices. This "Remove Microsoft Copilot App" policy will be available as a Policy CSP and Group Policy after the April 2026 Windows security updates for Windows 11 devices on the 25H2 update, specifically for Enterprise, Professional, and Education editions. The policy will uninstall Copilot under certain conditions: both Microsoft 365 Copilot and Microsoft Copilot must be installed, the user must not have manually installed the app, and the app must not have been launched in the past 28 days. Administrators can enable the policy through the Group Policy Editor or configure it via Microsoft Intune and SCCM after the April 2026 updates. The policy aligns with Microsoft's recent changes in managing Copilot, including the cessation of automatic installations and the cancellation of plans to integrate Copilot into system notifications and other features. The policy was initially available to Windows Insiders in January before becoming generally accessible in April 2026.
Search