third-party software

Winsage
June 17, 2026
Microsoft's June Windows update has caused issues for users of third-party applications that use Object Linking and Embedding (OLE) automation to interact with Office applications, leading to failed document launches without error messages. Affected applications include CCH Engagement, Workpaper Manager, Dentrix, Softdent, and Zotero. Microsoft has suggested a workaround of opening documents directly, but has stated that the responsibility for these issues lies with third-party developers, asserting no warranty on their performance. Users unable to resolve issues by opening files directly must wait for a fix in a future update, and organizations can contact Microsoft support for assistance. This is the first issue Microsoft has publicly acknowledged in the recent patch, amid ongoing complaints about other functionalities like OneDrive and BitLocker.
Winsage
June 17, 2026
The Windows variant of SprySOCKS malware, developed by the Chinese threat group Earth Lusca, targets government entities globally and features advanced capabilities such as rootkit-level stealth and extensive command-and-control (C2) functionalities. It operates on Windows systems, utilizing two main variants: WINDRV, which includes kernel drivers for stealth operations, and WINPLUS, a streamlined backdoor. The malware can communicate over TCP, UDP, and WebSocket, offering over 30 C2 commands for various operations, including system information gathering and keystroke logging. WINDRV loads a driver named ‘RawWNPF’ into memory using another signed kernel driver, allowing it to conceal processes and achieve persistence. The malware's design incorporates open-source elements and exploits vulnerabilities in the software supply chain, notably using a leaked certificate for driver signing. To combat SprySOCKS, organizations are advised to implement advanced endpoint detection and response (EDR) solutions, maintain regular patching, and manage supply chain risks vigilantly. The malware's adaptability and reliance on legitimate certificates complicate detection efforts, necessitating continuous refinement of security practices.
Winsage
June 16, 2026
Windows 11 update KB5094126 (Build 26200.8655), released on June 9, 2026, has caused boot failures, blue screens, and BitLocker recovery prompts for users, particularly affecting business devices from HP and Dell, including models like HP EliteBook 840 G10 and Dell Precision 7530. The issues stem from changes in Secure Boot and EFI partition modifications, with insufficient EFI partition space leading to errors. A workaround involves disabling Secure Boot in BIOS. Additionally, users have reported disruptions with OneDrive and Microsoft Word integration, particularly in enterprise environments. Microsoft has not yet acknowledged these problems.
AppWizard
June 12, 2026
The Netherlands' Consumer Competition Claims Foundation (CCCF) has launched a campaign against Valve, the parent company of Steam, alleging unfair commercial practices related to Valve's 30% commission on game sales, which they claim inflates prices across all PC storefronts. The CCCF argues that this commission structure pressures publishers and developers to raise prices, affecting competitive pricing on other platforms like the Epic Games Store and Microsoft Store. They also allege that Valve prohibits publishers from offering lower prices on competing platforms and has engaged in "geo-blocking" to restrict the activation of Steam keys purchased in Eastern Europe for use in Western Europe. Valve president Gabe Newell denies these allegations, asserting that there is no policy preventing lower pricing on other platforms. The CCCF claims that Dutch gamers may have overpaid by more than 220 million euros due to these practices. Legal challenges against Valve are mounting, including a class-action lawsuit concerning loot boxes and an antitrust suit from Wolfire Games.
AppWizard
June 4, 2026
Valve's Steam is facing multiple legal challenges, including a class-action antitrust lawsuit regarding its microtransaction strategies and a 30% commission on transactions. Gabe Newell, Valve's co-founder, is defending the platform against claims of monopolistic behavior, asserting that gamers have "enormous choice" in where to purchase games. Allegations suggest Valve has threatened developers who price their games lower outside of Steam, including a warning to Ubisoft about removing Rainbow Six Siege from the platform. Newell denies these allegations, stating that Valve does not dictate prices to third-party developers on other platforms. The outcomes of the lawsuits could significantly impact how games are marketed and sold.
AppWizard
June 3, 2026
Gabe Newell, founder and president of Valve, denied allegations that Steam operates as a monopoly, stating that gamers have numerous purchasing options beyond Steam, including consoles and other platforms like the Epic Games Store. Steam has maintained its dominance in the digital PC gaming market for over a decade, with a 60% increase in its user base in the past five years, reaching around 42 million active users. Despite competition from Epic Games, which offers an 88% revenue share to developers, it has not displaced Steam. Newell also addressed claims that Valve restricts pricing strategies for publishers on non-Steam platforms, asserting that Valve does not dictate pricing to third-party developers. Valve is currently facing multiple lawsuits, including an antitrust case and another related to loot boxes.
Tech Optimizer
June 3, 2026
Microsoft stated that for many Windows 11 users, Microsoft Defender Antivirus offers sufficient protection without the need for additional software. Some users agree, believing that third-party antivirus solutions are becoming less necessary. However, others argue that the choice to use third-party software depends on individual usage patterns and feature needs. Microsoft acknowledged this, suggesting that users managing multiple devices or seeking extra services might still benefit from third-party options. An article promoting Microsoft Defender's adequacy was removed from the Learning Center, leading to a more balanced message that recognizes Defender as a strong baseline while acknowledging that third-party tools can provide additional capabilities. Microsoft promotes Defender as typically sufficient when Windows 11 is properly configured, offering features like automatic threat scanning and cloud-based intelligence updates, but also notes that some third-party tools offer features such as identity monitoring and built-in VPNs.
Tech Optimizer
June 2, 2026
In April, Microsoft published a blog post discussing the security features of Windows 11, emphasizing that its built-in protections, such as Microsoft Defender Antivirus and SmartScreen, may eliminate the need for third-party antivirus solutions for many users. The blog highlighted that adequate security could be maintained with default settings, regular updates, and intentional software downloads. However, it also noted that users with specific needs, like managing multiple devices or requiring additional features, might still consider third-party software. The blog post was removed from the Microsoft Learning Center without formal announcement, raising questions about the company's communication strategy.
Winsage
May 19, 2026
Microsoft has acknowledged that faulty third-party drivers have caused significant battery drain and performance issues in Windows 11 and earlier versions. This issue, referred to as a "blind spot," has affected users through high latency, audio glitches, graphics errors, and micro-stuttering. To address this, Microsoft is implementing a more rigorous driver evaluation process that assesses the impact of drivers on power consumption and performance. Changes include improved battery management during standby mode, enhanced scrutiny of driver performance, early collaboration with developers, a stricter approval process for third-party drivers, and an automatic rollback feature via Windows Update to revert to older, compliant drivers.
Winsage
May 15, 2026
Microsoft has released an extensive update for Azure Linux 3.0 and CBL Mariner 2.0, addressing 191 open-source Common Vulnerabilities and Exposures (CVEs) across various technologies, including the Linux kernel, Go runtime, Apache httpd, PHP, CoreDNS, Valkey, Ruby, GnuTLS, Apache Thrift, Node.js, Rust, Java implementations, Vim, Postfix, Expat, Nmap, Prometheus, KEDA, and PgBouncer. Additionally, Microsoft has fixed a critical vulnerability (CVE-2026-41103) in its Single Sign-On (SSO) Plugin for Jira and Confluence, which allows an attacker to forge a Microsoft Entra ID identity through a manipulated SAML response; however, patching this vulnerability is the responsibility of the users of Atlassian's platforms.
Search