Vue lecture

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.

Windows 11 driver signing will require SBOMs, VEX files and newer hardware

Windows 11 driver signing will require SBOMs, VEX files and newer hardware
Microsoft will significantly tighten Windows Hardware Compatibility Program (WHCP) driver signing from March 2027. Drivers targeting Windows 11 25H2 or later and Windows Server 2025 or later will need validated Software Bill of Materials (SBOM) and Vulnerability Exploitability Exchange (VEX) files, while submissions will also need to target relatively modern hardware.

Source

New identity governance and access features in Microsoft Entra

MCP firewall discovered tools rule (image Microsoft)
Microsoft released several generally available and preview updates for Microsoft Entra in September 2026. The changes focus on tenant governance, user-centric access reviews, lifecycle workflow management, passwordless Teams device identities, hybrid identity provisioning, and AI traffic controls. You should also plan for three upcoming changes that affect dynamic group rules, API permissions, and the Security Administrator role.

Source

OpenAI limits Astra’s opaque reasoning after AI safety alarm

OpenAI limits Astra’s opaque reasoning after AI safety alarm
OpenAI is limiting the use of recurrent depth in its Astra model after concerns that the technique could hide more of the model’s reasoning from safety systems. The looped approach processes information repeatedly inside the model instead of producing a clearly sequential chain of thought, but OpenAI says Astra will retain readable reasoning and receive additional monitoring.

Source

GitSpawn lets poisoned repositories run code through AI coding agents

GitSpawn lets poisoned repositories run code through AI coding agents
A repository’s own `.git/config` can still trigger attacker-controlled code through Claude Code, Codex, Cursor, goose, and other AI coding agents before trust prompts, authentication, model calls, or tool approvals occur. Manifold Security’s GitSpawn research found eight flaws across seven agents; fixes are available for several tools, but Hermes Agent, Qwen Code, Grok Build, and a second Claude Code path remained vulnerable during September testing.

Source

Microsoft Purview DSPM adds bulk fixes for Copilot data risks

Microsoft Purview DSPM adds bulk fixes for Copilot data risks
Microsoft is expanding Purview Data Security Posture Management (DSPM) from a data-risk dashboard into a broader remediation workflow for AI deployments. The updated experience can identify overshared or unlabeled content across Microsoft 365 and Fabric, incorporate signals from external platforms, and help administrators fix exposure before Copilot or other AI agents can surface it.

Source

OpenAI’s Astra reaches “critical” cyber capability threshold

OpenAI’s Astra reaches “critical” cyber capability threshold
OpenAI says its unreleased Astra model is the first of its systems to reach the “Critical” cybersecurity level, meaning it can autonomously discover unknown vulnerabilities and chain them into attacks against hardened environments. The designation has already changed Astra’s rollout: parts of training were paused, safeguards were strengthened, and advanced cyber capabilities will initially be restricted to selected testers and the Daybreak Blue defensive program. Astra is expected soon, but no public release date has been confirmed.

Source

Microsoft offers workshop for incident response plans

Microsoft offers workshop for incident response plans
Microsoft is offering organizations a two- or three-day Cybersecurity Incident Response Workshop to test whether their incident response plans work under pressure—not just on paper. Led by Microsoft’s Detection and Response Team (DART), the exercise uses simulated attacks, threat hunting, and guided decisions to expose gaps in roles, tools, telemetry, and coordination before a real breach does.

Source

Sift scans Microsoft 365, Slack, and Jira for forgotten secrets

Sift scans Microsoft 365, Slack, and Jira for forgotten secrets
Sift, a free open-source command-line tool from Stratus Security, searches for passwords, API keys, and other secrets across local storage, Windows file shares, Active Directory, Microsoft 365, Slack, Jira, and Confluence. Its broad coverage addresses a common blind spot: finding credentials in collaboration and ticketing systems that conventional file-share scans never reach.

Source

SharePoint’s hero link brings safer defaults to OneDrive sharing

SharePoint’s hero link brings safer defaults to OneDrive sharing
Microsoft is expanding the SharePoint Online and OneDrive sharing upgrade built around a reusable “hero link,” with broader tenant rollout scheduled from mid-September through late October 2026. New links default to “Only people added to the file,” so possessing a URL alone does not grant access, while existing links and permissions continue working unchanged.

Source

Microsoft Defender mistakenly blocks legitimate Google search links

Microsoft Defender mistakenly blocks legitimate Google search links
Microsoft Defender for Office 365 is incorrectly classifying legitimate Google search URLs as malicious, blocking users with “Opening this website might not be safe” warnings. Microsoft is investigating the Safe Links incident, tracked as MO1465962, while administrators may also see related detections in the Defender portal and Microsoft Sentinel.

Source

AI agents ran malware from llms.txt files in Fortune 500 supply-chain test

AI agents ran malware from llms.txt files in Fortune 500 supply-chain test
Researchers triggered arbitrary code execution in AI agents by planting malicious package references in llms.txt files, exposing a new supply-chain risk for systems that treat machine-readable documentation as trusted instructions. In a test of 8,565 files, 237 contained references to missing, abandoned, mistyped, or otherwise questionable packages—and some frontier AI models followed the resulting installation guidance more than 90 percent of the time.

Source

Anthropic’s Fable 5.1 arrives as a slightly better benchmark hack with yet another price hike

Anthropic’s Fable 5.1 delivers marginal gains at massive cost
Anthropic’s new Fable 5.1 and Mythos 5.1 models promise stronger performance and major savings for repeated agent workloads, but independent testing cited by Matthew Berman suggests Fable 5.1 still costs more per completed task. The release also introduces so-called customer-controlled data storage—little more than window dressing—along with new anti-distillation safeguards and model watermarking.

Source

Deploy the Microsoft Edge 151 security baseline

Microsoft Edge policies in Group Policy (image Microsoft)
Microsoft released a security baseline for Microsoft Edge version 151 on August 25, 2026. The package adds six enforced isolation and data-protection policies plus one optional HTTPS setting for evaluation. For a summary of what each control does and why Microsoft recommends it, see Microsoft Edge 151 baseline adds six security controls. This article focuses on how to deploy and verify those settings in Active Directory and Intune.

Source

❌