News & Insights on Microsoft Technologies

For people interested in Microsoft technologies

AllMicrosoft 365IntunePower PlatformEntra IDSecurityAzureSharePoint
Security

Microsoft Teams IT Support Scam Enables Enterprise Access

Microsoft Threat Intelligence detailed a human-operated attack that abuses Microsoft Teams external collaboration to impersonate IT support and trick users into granting remote access. Once inside, attackers use legitimate tools like PowerShell, MSI installers, Node.js, and WinRM to establish persistence, conduct reconnaissance, and move laterally toward high-value systems such as domain controllers.

3 min read · Sep 3, 2026
Security

Counterfeit Software Installers Drive New Malware Campaign

Microsoft is tracking an active malware campaign that uses fake software download sites to impersonate trusted brands and deliver malicious installers. The activity has affected multiple industries, with a focus on China-based operations and Chinese-speaking users, making it important for security teams to strengthen download controls and ensure Defender protections are enabled.

2 min read · Sep 3, 2026
Entra ID

Microsoft Entra September 2026: Key Identity Updates

Microsoft Entra's September 2026 updates introduce new tenant governance, user-centric access reviews, lifecycle workflow cloning, and passwordless resource accounts for Teams devices. The release also adds cloud-to-AD provisioning, AI-focused MCP Firewall protections, and important deadlines for MemberOf-based configurations and permission scope changes.

3 min read · Sep 3, 2026
Security

Cybersecurity IR Workshop Helps Test Response Plans

Microsoft is promoting its Cybersecurity Incident Response Readiness Workshop, a 2- to 3-day engagement led by the Detection and Response Team (DART) to help organizations test incident response plans against realistic attack scenarios. The workshop gives security teams practical feedback on people, processes, tools, and telemetry so they can identify gaps before a live incident exposes them.

3 min read · Sep 1, 2026
SharePoint

SharePoint Online Classic Pages Retirement Timeline

Microsoft is starting a phased retirement of classic SharePoint Online experiences, with new classic publishing creation blocked from March 1, 2027 and classic pages becoming read-only for all tenants on October 1, 2028. The change matters because classic content is used by a small share of tenants, lacks modern governance and security capabilities, and is not fully represented for Microsoft 365 Copilot.

3 min read · Sep 1, 2026
Security

TerminalFix Campaign Uses Reverse Tunnel for Network Access

Microsoft Threat Intelligence has detailed a TerminalFix campaign that tricks users into pasting a fake Cloudflare verification command into Windows Terminal or PowerShell. The attack goes beyond typical ClickFix activity by using DLL sideloading, steganographic payloads, Active Directory reconnaissance, and a reverse tunnel that can give attackers persistent access into internal networks.

3 min read · Aug 29, 2026