azure arc

  1. Azure Policy Brings CIS Linux Benchmarks to Hybrid Cloud via azure-osconfig

    Microsoft Azure now exposes the Center for Internet Security (CIS) Linux Benchmarks as a built‑in Azure Policy Machine Configuration capability, bringing CIS‑certified, audit‑grade Linux benchmark assessments into a supported, cloud‑native compliance workflow and enabling continuous evaluation...
  2. Windows Server 2025: Hotpatching Rewrites Patch Strategy and TCO

    Microsoft’s new native server capabilities in Windows Server 2025 are changing long‑standing assumptions about maintenance windows, uptime and operational cost — and the company’s hotpatching rollout in particular is already forcing datacenter teams to rethink update strategy, risk posture, and...
  3. Azure Policy Adds CIS Certified Linux Benchmarks via Azure osconfig (Preview)

    Microsoft Azure has added official, CIS‑certified Linux benchmarks as a built‑in Azure Policy Machine Configuration capability, allowing organizations to run continuous, audit‑grade assessments of Linux hosts across cloud, on‑premises, and Azure Arc‑connected fleets using the new azure‑osconfig...
  4. Azure CIS Linux Benchmarks Built In via Policy and Arc (Preview)

    Microsoft and the Center for Internet Security (CIS) have made official CIS Linux security benchmarks available natively on Microsoft Azure, delivered as a built‑in Azure Policy Machine Configuration capability powered by the new azure‑osconfig compliance engine — a move that brings...
  5. Microsoft Expands AI at the Edge with Azure Local Arc and IoT Operations

    Microsoft has pushed a major update to its edge and hybrid portfolio that stitches together Azure Local, Azure IoT Operations, Azure Arc, and Fabric to deliver AI-enabled compute, stronger device identity controls, and new offline and sovereign-cloud options for mission‑critical and highly...
  6. Azure Local and Arc Unite Sovereign Cloud with Edge AI

    Microsoft’s latest push to bring AI, resiliency, and sovereignty together in a single, unified cloud story is more than incremental product updates — it’s a strategic pivot that gives organizations new choices for running mission‑critical systems where control, compliance, and uptime can't be...
  7. Azure Virtual Desktop Hybrid with Arc Enabled On Prem Hosts

    Microsoft has opened a new hybrid chapter for desktop virtualization: Azure Virtual Desktop (AVD) can now use Azure Arc–enabled servers as session hosts, letting organizations run cloud‑managed virtual desktops on existing on‑premises hypervisors, physical Windows Servers, and HCI platforms such...
  8. Nutanix Azure Virtual Desktop on AHV for Hybrid Cloud VDI

    Nutanix’s announcement at Microsoft Ignite 2025 that the Nutanix Cloud Platform will support Microsoft Azure Virtual Desktop (AVD) for hybrid environments, enabling AVD session hosts to run on Nutanix AHV on premises while using Azure’s control plane for brokering and management, marks a notable...
  9. Nutanix AVD on AHV: Hybrid Azure Virtual Desktop for On Prem VDI

    Nutanix and Microsoft have taken a significant step toward a more flexible, partner-driven VDI landscape by announcing that the Nutanix Cloud Platform will support Azure Virtual Desktop (AVD) for hybrid environments, enabling organizations to run AVD session hosts on-premises on Nutanix AHV...
  10. Telefónica Brazil Goes Hybrid with Azure Local and Arc for On Premises Workloads

    Telefónica’s Brazil unit has moved from public-cloud experimentation to a concrete hybrid strategy by adopting Azure Local for on‑premises workloads, using Azure Arc to unify management and planning IaaS-first deployments today with AKS and Azure Virtual Desktop on the roadmap. This marks a...
  11. Azure Arc azcmagent Local Privilege Escalation: Patch Guidance and CVE Fragmentation

    Microsoft’s advisory ecosystem has flagged an elevation‑of‑privilege issue affecting Azure compute management components that can let an authenticated local user escalate to system/root on an affected host and, crucially, potentially abuse machine‑assigned identities and extension management...
  12. Azure Storage Mover Enables Direct AWS S3 to Azure Blob Migrations

    Azure’s Storage Mover now supports direct cloud-to-cloud migrations from AWS S3 to Azure Blob Storage, delivering a fully managed, agentless path for moving large object stores into Azure with built-in orchestration, incremental sync, and observability—an offering that could reshape how...
  13. HITS in the Cloud: Elevate SQL Server with Azure Arc for Hybrid IT

    The webinar “HITS in the cloud: elevate your SQL Server strategy with Azure Arc” delivered a practical, business‑focused playbook for modernising SQL Server estates across hybrid and multi‑cloud environments — emphasising unified management, automated compliance, flexible licensing, and...
  14. Azure Connected Machine Agent EOP: CVE Fragmentation and KB Mapping

    A high‑impact, local elevation‑of‑privilege issue has been reported in Microsoft’s Azure agent ecosystem that can let a low‑privileged local actor escalate to SYSTEM/root on affected hosts and potentially abuse machine‑assigned identities and extension management functionality — but the numeric...
  15. Azure Arc azcmagent Local EoP: Map CVEs to Vendor Advisories and Patch Fast

    A new elevation-of-privilege (EoP) vulnerability in the Azure Connected Machine (Azure Arc) agent — tracked publicly under multiple CVE identifiers including CVE-2025-58724 in recent feeds — has been confirmed as an improper access control issue that allows an authorized local user to escalate...
  16. Azure Arc Connected Machine EoP: Local Privilege Escalation on Arc Agents

    A high‑impact elevation‑of‑privilege flaw has been disclosed in the Azure Connected Machine (Azure Arc) agent that can let an authenticated local user — or an attacker with low‑privileged local execution — escalate to SYSTEM/root on Arc‑enabled servers, and potentially abuse machine identities...
  17. Azure Arc Agent Local Privilege Escalation: Patch and Hunt for EoP

    Microsoft’s advisory record for the CVE identifier you supplied (CVE‑2025‑47989) does not resolve to a public MSRC advisory; however, a confirmed elevation‑of‑privilege (EoP) defect in the Azure Connected Machine (Azure Arc / azcmagent) family has been published, tracked in vendor advisories and...
  18. Bloomberg Windows Services Infra Engineer: Modernizing Global Active Directory and Hybrid Identity

    Bloomberg’s Managed Systems Engineering team is hiring an Infrastructure Engineer — Windows Services to lead a global effort to modernize and harden the company’s Active Directory (AD) estate, manage the Windows server fleet, and operate identity and access services at massive scale; the role is...
  19. atQor Renewal as Azure Expert MSP Emphasizes AI First Cloud Modernization

    atQor says it has renewed its Microsoft Azure Expert Managed Service Provider (MSP) designation — and the company is using that renewal to recast itself as a global leader in secure cloud modernization and AI‑first transformation, while making an unusually specific operational claim: the renewal...
  20. atQor Renews Azure Expert MSP in One Day Audit Focusing on Secure Cloud Modernization

    atQor has announced that it has successfully renewed its Microsoft Azure Expert Managed Service Provider (MSP) designation — a high‑bar credential in the Microsoft partner ecosystem — and says the renewal audit was completed in a single day, underscoring the company’s focus on secure cloud...