azure security

  1. Microsoft Azure, Dynamics 365 & Microsoft 365 IRAP Update for Protected Workloads in Australia

    Modern governments do not buy cloud trust on faith, and Australia is no exception. Microsoft’s latest independent IRAP assessments for Azure, Dynamics 365, and Microsoft 365 are more than a routine compliance update; they are a signal that the company wants to keep its core cloud stack aligned...
  2. Adactin AFIVE: Trusted AI Knowledge Search Across Enterprise Documents

    Adactin’s launch of AFIVE lands squarely in one of the busiest corners of enterprise software: the race to make internal knowledge searchable, trustworthy and useful through natural language. The Sydney-based services firm is pitching the platform as an AI knowledge layer that can unify...
  3. Microsoft 2026 Certifications: Living Credentials That Stay Current

    Microsoft certifications remain one of the clearest, most portable ways for IT professionals to prove current skills in cloud computing, security, data, and business applications. But the real story in 2026 is not just that the badges still matter; it is that Microsoft has turned certification...
  4. März Patch Tuesday 2026: Office, Azure Arc MCP und KI Agenten erhöhen Angriffsflächen

    Microsofts März‑Patch‑Cycle hat erneut gezeigt: Die Verbindung von Office‑Software, Azure‑Clouddiensten und agentischen KI‑Komponenten schafft neue, teils überlappende Angriffsflächen — und bringt zugleich komplexe Patch‑ und Mitigationsaufgaben für IT‑Teams. Die Kurzanalyse von BornCity fasst...
  5. Upwind brings runtime-first cloud security to Azure Marketplace

    Upwind’s arrival in the Microsoft ecosystem marks a deliberate push to make runtime-first cloud security a native option for Azure customers — a move that bundles runtime detection, container and registry scanning, posture management, and compliance controls into a single...
  6. Upwind Microsoft Partnership Brings Runtime-First Cloud Security to Azure Marketplace

    Upwind’s new partnership with Microsoft moves runtime security from the margins into Azure’s native procurement and operational flow, delivering a single, runtime-first experience for protection, compliance, and vulnerability management across Azure workloads. The announcement—detailed in the...
  7. Upwind and Microsoft Bring Runtime First Security to Azure Marketplace

    Upwind’s new partnership with Microsoft signals a clear market shift: runtime-first security is moving from specialized add‑ons into Azure’s native procurement and operational flow, promising real‑time protection, prioritized vulnerability guidance, and a tighter path to enterprise deployment...
  8. Azure Marketplace Integrates Upwind Runtime-First CNAPP with Sentinel and Defender for Cloud

    Microsoft Azure customers now have a new native option to close a longstanding visibility gap: Upwind’s runtime-first security platform is officially integrated into the Azure ecosystem, available through the Azure Marketplace and engineered to feed runtime telemetry into Microsoft Sentinel and...
  9. Upwind Microsoft Deliver Runtime Security for Azure Workloads

    Microsoft and Upwind have quietly formalized a practical step toward making runtime security for Azure workloads a first-class citizen in enterprise cloud strategies, and the deal reshapes how defenders think about protecting live services rather than just scanning infrastructure and...
  10. Urgent Patch for Azure Management RCE CVE-2026-21228: What Admins Must Do

    Microsoft’s advisory listing for CVE-2026-21228 has elevated the alarm for Azure administrators and cloud defenders alike: the vendor has recorded a local remote-code-execution (RCE) class vulnerability affecting Azure management components, but key technical details remain limited in the public...
  11. Microsoft OneVet Cuts Fake Accounts with Au10tix Deepfake Checks and Verifiable Credentials

    Microsoft’s internal partner-vetting platform OneVet has cut fake account openings by an astonishing figure that — while company-reported and requiring independent audit — signals a notable advance in how large cloud platforms combine biometric identity verification, deepfake detection, and...
  12. Waratek Locker BYOS RASP for Java on Azure: Claims vs Validation

    Waratek’s Locker promised a practical "bring your own security" (BYOS) approach for Java applications on Microsoft Azure — a lightweight, JVM‑embedded container that applies Runtime Application Self‑Protection (RASP) policies without touching application code — and while the idea remains...
  13. MahaCrimeOS AI: Maharashtra Cloud Powered Cybercrime Investigation Platform

    Maharashtra’s government and Microsoft unveiled MahaCrimeOS AI on December 12, 2025 — an AI-powered, cloud-native investigative platform that promises to fast‑track cybercrime investigations across the state and expand from a pilot in 23 Nagpur police stations to an intended rollout across all...
  14. Understanding MSRC Confidence for CVE-2025-64657 in Azure Application Gateway

    Microsoft’s advisory that a newly recorded vulnerability, tracked as CVE‑2025‑64657, affects Azure Application Gateway and can lead to elevation of privilege has raised immediate operational questions for cloud teams: what exactly is known, how confident should defenders be in the published...
  15. CVE-2025-64656: Urgent Application Gateway Elevation of Privilege Mitigation

    Microsoft’s Security Update Guide lists CVE-2025-64656 as an Elevation of Privilege affecting Application Gateway, but public technical detail is currently limited and the vendor’s confidence metric indicates uncertainty about how much of the exploit chain has been independently validated...
  16. Cohesity and Microsoft Deepen AI Driven Data Resilience Across Azure

    Cohesity’s recent announcement that its partnership with Microsoft has deepened across Azure, Microsoft 365, and Microsoft Security marks a consequential step in the industry’s push to couple data resilience with generative AI capabilities—an initiative the vendor says produced near‑term...
  17. Azure DDoS Protection Absorbs Largest Cloud Attack 15.72 Tbps from Aisuru Botnet

    Microsoft says Azure's DDoS protection automatically detected and absorbed an unprecedented cloud-scale flood on October 24 that peaked at 15.72 terabits per second (Tbps) and nearly 3.64 billion packets per second (pps) — an event the company describes as the largest DDoS attack ever observed...
  18. AvePoint Elements Expands Azure Protection for MSPs with Channel Focus

    AvePoint’s push to deepen Azure data protection inside its AvePoint Elements MSP platform is a clear signal that the company intends to make managed Azure protection a channel-first capability, adding misconfiguration detection, Azure environment monitoring, and enhanced anomaly detection to its...
  19. EY 4TB SQL Backup Leak Highlights Cloud Security Gaps

    A 4‑terabyte SQL Server backup file belonging to Ernst & Young (EY) was discovered publicly accessible on Microsoft Azure, exposing an unencrypted .BAK backup that researchers say could have contained database schemas, stored procedures, authentication tokens, API keys, service‑account...
  20. CVE-2025-55697: Azure Local Heap Overflow Elevates Privilege

    CVE-2025-55697 is a newly catalogued heap‑based buffer overflow in an Azure local component that allows an authorized local user to elevate privileges on an affected host; Microsoft assigned a high severity rating (CVSS 3.1 base score 7.8) and published vendor guidance that administrators should...