<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[THE Security Insights Show]]></title><description><![CDATA[Hosted by Edward Walton, Frank Grimberg and Rod Trent, THE Insights Show provides conversation, information, news, tips on industry security solutions.]]></description><link>https://www.microsoftsecurityinsights.com</link><image><url>https://substackcdn.com/image/fetch/$s_!ZngQ!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1bf84d0b-fceb-44b4-ae5f-10662ecc7e8b_500x500.png</url><title>THE Security Insights Show</title><link>https://www.microsoftsecurityinsights.com</link></image><generator>Substack</generator><lastBuildDate>Wed, 29 Apr 2026 11:36:24 GMT</lastBuildDate><atom:link href="https://www.microsoftsecurityinsights.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Rod Trent]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[securityinsights@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[securityinsights@substack.com]]></itunes:email><itunes:name><![CDATA[Rod Trent]]></itunes:name></itunes:owner><itunes:author><![CDATA[Rod Trent]]></itunes:author><googleplay:owner><![CDATA[securityinsights@substack.com]]></googleplay:owner><googleplay:email><![CDATA[securityinsights@substack.com]]></googleplay:email><googleplay:author><![CDATA[Rod Trent]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[The "AI" Security Insights Show Episode 289 - The RSA Recap Part 2 The Microsoft Partner Edition. ]]></title><description><![CDATA[Prin. Program Manager, James Key returns to give us the scope on how MSFT partners received all the announcements from Microsoft about security, AI, MSSP services and more.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-f4c</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-f4c</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Wed, 15 Apr 2026 16:03:21 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/194243238/c2392ff2ce3527db8b7a6f5224a8fcae.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>AI Pen Testing Power- What is the deal with Mythos? </p><p>Sentinel Cost Estimator Tool is a go. - <a href="https://cb-cefrontdoor-noe-ppe-fde-apb6dygvb5bsd8ee.b02.azurefd.net/en-us/security/pricing/microsoft-sentinel/cost-estimator">Sentinel Cost Estimator</a></p><h1><em><strong>Words of Wisdom:</strong></em></h1><p><em>&#8220;Don&#8217;t believe everything you think you believe&#8221;</em></p><p><em>&#8220;Actual great opportunities do NOT have &#8220;Great Opportunies&#8221; in the subject line&#8221;</em></p><p><strong>General</strong></p><p>&#183; <a href="https://www.microsoft.com/en-us/security/blog/2026/03/09/secure-agentic-ai-for-your-frontier-transformation/">Secure agentic AI for your Frontier Transformation</a> <a href="https://agenticainews.net/2026/03/10/secure-agentic-ai-for-your-frontier-transformation/">[agenticainews.net]</a></p><p>&#183; <a href="https://www.microsoft.com/en-us/security/blog/2026/03/20/secure-agentic-ai-end-to-end/">Secure agentic AI end-to-end</a> <a href="https://www.microsoft.com/en-us/security/blog/2025/11/18/ambient-and-autonomous-security-for-the-agentic-era/">[microsoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/microsoft-pre-day-your-first-look-at-what%E2%80%99s-next-in-security/4500047">Microsoft Pre-Day: Your first look at what&#8217;s next in Security</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/microsoft-pre-day-your-first-look-at-what%E2%80%99s-next-in-security/4500047">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/strengthening-your-security-posture-with-microsoft-security-store-innovations-at/4504026">Strengthening your Security Posture with Microsoft Security Store Innovations at RSAC 2026</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/strengthening-your-security-posture-with-microsoft-security-store-innovations-at/4504026">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/crawl-walk-run-a-practitioners-guide-to-ai-maturity-in-the-soc/4500433">Crawl, Walk, Run: A Practitioner&#8217;s Guide to AI Maturity in the SOC</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/crawl-walk-run-a-practitioners-guide-to-ai-maturity-in-the-soc/4500433">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/from-manual-vetting-to-continuous-trust-automating-publisher-screening-with-ai/4505695">From Manual Vetting to Continuous Trust: Automating Publisher Screening with AI</a></p><p><strong>AI Security</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/agent-365-blog/join-the-agent-365-ask-microsoft-anything-session-on-march-18/4499817">Join the Agent 365 &#8220;Ask Microsoft Anything&#8221; session on March 18</a> <a href="https://techcommunity.microsoft.com/blog/agent-365-blog/join-the-agent-365-ask-microsoft-anything-session-on-march-18/4499817">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/agent-365-blog/get-to-know-these-agent-365-community-all-stars/4501056">Get to know these Agent 365 community all-stars</a> <a href="https://techcommunity.microsoft.com/blog/agent-365-blog/get-to-know-these-agent-365-community-all-stars/4501056">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/agent-365-blog/icymi-microsoft-agent-365-ama/4503596">ICYMI: Microsoft Agent 365 AMA</a> <a href="https://techcommunity.microsoft.com/blog/agent-365-blog/icymi-microsoft-agent-365-ama/4503596">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/governing-ai-agent-behavior-aligning-user-developer-role-and-organizational-inte/4503551">Governing AI Agent Behavior: Aligning User, Developer, Role, and Organizational Intent</a></p><p><strong>Azure Security &amp; Defender for Cloud News</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/microsoft-defender-for-cloud-customer-newsletter/4498717">Microsoft Defender for Cloud Customer Newsletter (March edition)</a> <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/microsoft-defender-for-cloud-customer-newsletter/4498717">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/malware-scan-results-now-in-blob-tags-adls-gen2-hns--public-preview/4498822">Malware scan results now in blob tags (ADLS Gen2 HNS | Public Preview)</a> <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/malware-scan-results-now-in-blob-tags-adls-gen2-hns--public-preview/4498822">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/defending-container-runtime-from-malware-with-microsoft-defender-for-containers/4499264">Defending Container Runtime from Malware with Microsoft Defender for Containers</a> <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/new-innovations-in-microsoft-defender-to-strengthen-multi-cloud-containers-and-a/4503886">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/defending-the-ai-era-new-microsoft-capabilities-to-protect-ai/4503885">Defending the AI Era: New Microsoft Capabilities to Protect AI</a> <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/defending-the-ai-era-new-microsoft-capabilities-to-protect-ai/4503885">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/new-innovations-in-microsoft-defender-to-strengthen-multi-cloud-containers-and-a/4503886">New innovations in Microsoft Defender to strengthen multi-cloud, containers, and AI model security</a> <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/new-innovations-in-microsoft-defender-to-strengthen-multi-cloud-containers-and-a/4503886">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/secure-ai-workloads-in-azure-join-our-next-azure-decoded-session-on-april-8th/4504207">Secure AI Workloads in Azure: Join Our Next Azure Decoded Session on April 8th</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/secure-ai-workloads-in-azure-join-our-next-azure-decoded-session-on-april-8th/4504207">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/detect-correlate-contain-new-azure-firewall-idps-detections-in-microsoft-sentine/4502128">Detect, correlate, contain: New Azure Firewall IDPS detections in Microsoft Sentinel and XDR</a> <a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/azure-network-security-ninja-training/2356101">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/azure-bastion-enterprise-grade-secure-access-made-simple/4503833">Azure Bastion: Enterprise-grade secure access made simple</a></p><p><strong>Threat Intelligence</strong></p><p><a href="https://techcommunity.microsoft.com/blog/microsoftsecurityexperts/when-trust-becomes-the-attack-vector-analysis-of-the-emeditor-supply-chain-compr/4499552">When Trust Becomes the Attack Vector: Analysis of the EmEditor Supply-Chain Compromise</a> <a href="https://techcommunity.microsoft.com/blog/microsoftsecurityexperts/when-trust-becomes-the-attack-vector-analysis-of-the-emeditor-supply-chain-compr/4499552">[techcommun...rosoft.com]</a></p><p><strong>Microsoft Entra</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/secure-access-in-the-age-of-ai-key-findings-from-our-2026-report/4486060">Secure access in the age of AI: Key findings from our 2026 Report</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/secure-access-in-the-age-of-ai-key-findings-from-our-2026-report/4486060">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-innovations-announced-at-rsac-2026/4502146">Microsoft Entra innovations announced at RSAC 2026</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-innovations-announced-at-rsac-2026/4502146">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-tenant-governance-secure-and-manage-multi-tenant-environments-at/4462427">Microsoft Entra Tenant Governance: Secure and Manage Multi-Tenant Environments at Scale</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-tenant-governance-secure-and-manage-multi-tenant-environments-at/4462427">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/evolving-identity-security-how-the-conditional-access-optimization-agent-helps-y/4488927">Evolving Identity Security: How the Conditional Access Optimization Agent Helps You Adapt</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/evolving-identity-security-how-the-conditional-access-optimization-agent-helps-y/4488927">[techcommun...rosoft.com]</a></p><p><strong>Device Management &amp; Protection (Intune)</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftintuneblog/announcing-three-new-partners-for-multi-tenant-management-with-microsoft-intune/4501339">Announcing three new partners for multi-tenant management with Microsoft Intune</a> <a href="https://techcommunity.microsoft.com/blog/microsoftintuneblog/announcing-three-new-partners-for-multi-tenant-management-with-microsoft-intune/4501339">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftintuneblog/secure-apps-where-people-data-and-ai-intersect/4493201">Secure apps: Where people, data, and AI intersect</a></p><p><strong>Defender XDR &amp; Sentinel</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---march-2026/4498458">Monthly news &#8211; March 2026 (Microsoft Defender)</a> <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender?</a> <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/security-copilot-in-defender-empowering-the-soc-with-assistive-and-autonomous-ai/4503047">Security Copilot in Defender: empowering the SOC with assistive and autonomous AI</a> <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/introducing-ai-powered-incident-prioritization-in-microsoft-defender/4483834">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/from-impersonation-calls-to-transparent-reporting-defending-the-new-front-door-o/4503050">From Impersonation Calls to Transparent Reporting: Defending the New Front Door of Attacks</a> <a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/from-impersonation-calls-to-transparent-reporting-defending-the-new-front-door-o/4503050">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/what%E2%80%99s-new-in-microsoft-sentinel-march-2026/4499508">What&#8217;s New in Microsoft Sentinel: March 2026</a> <a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/update-new-timeline-for-transitioning-sentinel-experience-to-defender-portal/4490464">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/what%E2%80%99s-new-in-microsoft-sentinel-rsac-2026/4503971">What&#8217;s new in Microsoft Sentinel: RSAC 2026</a> <a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/what%E2%80%99s-new-in-microsoft-sentinel-rsac-2026/4503971">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/how-granular-delegated-admin-privileges-gdap-allows-sentinel-customers-to-delega/4503123">How Granular Delegated Admin Privileges (GDAP) allows Sentinel customers to delegate access</a></p><p><strong>Copilot for Security</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/securitycopilotblog/introducing-secret-finder-finding-real-credentials-where-traditional-tools-fail/4500983">Introducing Secret Finder: Finding Real Credentials Where Traditional Tools Fail</a> <a href="https://techcommunity.microsoft.com/blog/securitycopilotblog/introducing-secret-finder-finding-real-credentials-where-traditional-tools-fail/4500983">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/securitycopilotblog/from-alert-overload-to-decisive-action-how-security-copilot-agents-are-transform/4504213">From alert overload to decisive action: How Security Copilot agents are transforming security and IT</a></p><p><strong>Purview - Compliance &amp; Governance</strong></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-purview-blog/ai%E2%80%91powered-troubleshooting-for-microsoft-purview-data-lifecycle-management/4502660">AI&#8209;Powered Troubleshooting for Microsoft Purview Data Lifecycle Management</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-purview-blog/consolidate--conquer-driving-business-transformation-with-integrated-security/4466867">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-purview-blog/priority-cleanup-v2-faster-simpler-data-purging-for-exchange-online/4503363">Priority Cleanup V2: Faster, Simpler Data Purging for Exchange Online</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-purview-blog/ai%E2%80%91powered-troubleshooting-for-microsoft-purview-data-lifecycle-management/4502660">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/microsoft-purview-securing-data-and-enabling-apps-and-agents-across-your-ai-stac/4503806">Microsoft Purview securing data and enabling apps and agents across your AI stack</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/microsoft-purview-securing-data-and-enabling-apps-and-agents-across-your-ai-stac/4503806">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/secure-data-as-ai-scales-new-microsoft-purview-innovations-at-rsa-2026/4503665">Secure data as AI scales: New Microsoft Purview innovations at RSA 2026</a> <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/welcome-to-the-microsoft-security-community/4471927">[techcommun...rosoft.com]</a></p><p>&#183; <a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/new-microsoft-purview-innovations-for-fabric-to-safely-accelerate-your-ai-transf/4502156">New Microsoft Purview innovations for Fabric to safely accelerate your AI transformation</a></p><h2>&#10024; Featured Items This Week</h2><h2>New Roadmap Items:</h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1269864">Microsoft Teams: New chat sections for muted and meeting chats</a></strong><br>ID: MC1269864 | Service: Microsoft Teams | Tags: New feature, User impact, Admin impact<br>Microsoft Teams will introduce two new chat sections&#8212;Muted chats (enabled by default) and Meeting chats (disabled by default)&#8212;to organize chats. These...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1267867">Microsoft 365 Copilot (Premium): Choose your AI model when editing presentations in PowerPoint</a></strong><br>ID: MC1267867 | Service: Microsoft 365 apps, Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Microsoft 365 Copilot (Premium) in PowerPoint will let users choose AI models, including OpenAI and Anthropic&#8217;s Claude, when editing presentations. Th...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1266905">Microsoft Secure Score: New recommendation for Microsoft Defender for Endpoint</a></strong><br>ID: MC1266905 | Service: Microsoft Defender XDR | Tags: New feature, User impact, Admin impact<br>Microsoft Secure Score will add a new recommendation to block outbound traffic from mshta.exe in Microsoft Defender for Endpoint, starting public prev...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1265767">Copilot Cowork now available in Frontier</a></strong><br>ID: MC1265767 | Service: Microsoft Copilot (Microsoft 365), Microsoft 365 Copilot Chat | Tags: New feature, User impact<br>Copilot Cowork is now available in Frontier for Microsoft 365 Copilot Premium users, enabling multi-step task orchestration across apps with user appr...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1265765">Auto Critique and Model Council features in Researcher (Frontier program)</a></strong><br>ID: MC1265765 | Service: Microsoft Copilot (Microsoft 365), Microsoft 365 Copilot Chat | Tags: New feature, User impact, Admin impact<br>Researcher&#8217;s new Auto Critique improves draft quality by reviewing structure, sources, and citations. Model Council compares reports from multiple AI ...</p></li></ul><h2>Updated Roadmap Items:</h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=559606">Microsoft Teams: Sharing recap access</a></strong><br>ID: 559606 | Product: Microsoft Teams, Microsoft Copilot (Microsoft 365) | Status: In development<br>Recording and transcript owners can now grant recording and transcript access to specified people when copying or sharing recap link, and the specifie...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=559617">Microsoft Purview: Purview in Microsoft Admin Center</a></strong><br>ID: 559617 | Product: Microsoft Purview | Status: In development<br>AI and IT admins in Microsoft Admin Center can 1) gain visibility around oversharing risks and drive remediations 2) Understand how much of sensitive ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=559611">Microsoft Teams: Annotations on Teams Single Window Sharing on macOS</a></strong><br>ID: 559611 | Product: Microsoft Teams | Status: In development<br>Presenters can now share a single application window and enable participants to annotate directly on top of that content, without exposing their entir...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558565">Microsoft Purview: Data Loss Prevention &#8211; Inline DLP for Prompts for Microsoft Foundry apps and agents</a></strong><br>ID: 558565 | Product: Microsoft Purview | Status: In development<br>With Purview enabled in Microsoft Foundry, Purview admins can setup inline DLP policies to prompts on Foundry built apps and agents to ensure data los...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=559266">Microsoft Viva: Viva Glint and Viva Insights Integration - Exclusion List for data sharing</a></strong><br>ID: 559266 | Product: Microsoft Viva | Status: In development<br>Viva Glint admins will be able to manage an exclusion list in Viva Feature Access Management that prevents selected people and groups from being inclu...</p></li></ul><h2>New Message Center Items:</h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=541831">Microsoft Teams: Meeting Notes now available for instant meetings</a></strong><br>ID: 541831 | Product: Microsoft Teams | Status: Rolling out<br>Teams meeting Notes, powered by Loop, are now available for instant meetings that started via &#8216;Meet now&#8217; from the calendar. Notes are Loop components ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=512430">Microsoft 365 app: Overview Page in Copilot Notebooks</a></strong><br>ID: 512430 | Product: Microsoft 365, Microsoft 365 app, Microsoft Copilot (Microsoft 365) | Status: Launched<br>Users will find Copilot-powered Notebook summaries and insights as a landing page within their Copilot Notebook.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=531758">Microsoft Copilot (Microsoft 365): Now smarter with visuals: Declarative Agents leverage embedded images for richer, more accurate answers</a></strong><br>ID: 531758 | Product: Microsoft Copilot (Microsoft 365) | Status: Launched<br>Declarative Agents have been enhanced to interpret and ground responses using images embedded in files such as Word documents (.docx), PowerPoint pres...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=516568">Outlook: Prepare for your meeting with Copilot chat in Outlook mobile</a></strong><br>ID: 516568 | Product: Outlook | Status: Launched<br>Outlook mobile users can now prepare for their meetings using Copilot chat in a single tap. This feature requires a Microsoft 365 Copilot license.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=519570">Microsoft Copilot (Microsoft 365): Files found via Chat search can be now analyzed by code interpreter</a></strong><br>ID: 519570 | Product: Microsoft Copilot (Microsoft 365) | Status: Launched<br>Code interpreter runs on files you upload in your agent or that the user explicitly attaches in the interaction. Files that Copilot Chat finds via ent...</p></li></ul><h2>Updated Message Center Items:</h2><p><strong><a href="https://deltapulse.app/dashboard?message=MC1174856">(Updated) Microsoft 365 Copilot: Session persistence enhancement for Copilot chat</a></strong><br>ID: MC1174856 | Service: Microsoft Copilot (Microsoft 365), Microsoft 365 Copilot Chat | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft 365 Copilot chat will preserve conversations by creating session entries in the navigation pane upon prompt submission, allowing users to re...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251200">(Updated) Microsoft Viva Engage | Email sender domain migration from @yammer.com to @engage.mail.microsoft</a></strong><br>ID: MC1251200 | Service: Microsoft Viva | Tags: Updated message, Feature update, User impact, Admin impact<br>Microsoft Viva Engage email sender domains have migrated from @yammer.com to @engage.mail.microsoft (and @eu.engage.mail.microsoft for Europe) as of M...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1188234">(Updated) Microsoft 365 Copilot: Manage and deploy user-level connectors in Microsoft 365 admin center</a></strong><br>ID: MC1188234 | Service: Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft 365 Copilot introduces federated connectors enabling real-time access to external apps like Notion and Canva within Copilot. Admins control ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1234569">(Updated) Microsoft Defender for Office 365 quarantine content read permission update</a></strong><br>ID: MC1234569 | Service: Microsoft Defender XDR | Tags: Updated message, Feature update, Admin impact<br>Microsoft Defender for Office 365 will introduce a new permission for granular access to quarantined email content via Defender XDR Unified RBAC. Roll...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1151241">Microsoft Teams | VDI for Azure Virtual Desktops/Windows 365 and Citrix: macOS support with new SlimCore optimization</a></strong><br>ID: MC1151241 | Service: Microsoft Teams | Tags: Updated message, New feature, User impact<br>Microsoft Teams now supports SlimCore media engine optimization for macOS users on Azure Virtual Desktop, Windows 365, and Citrix, replacing WebRTC. T...</p>]]></content:encoded></item><item><title><![CDATA[The "AI" Security Insights Show Episode (Coming) - The RSA Recap Part 2 The Microsoft Partner Edition. ]]></title><description><![CDATA[We will do our on Tuesday April 14th. Partner Program Manager - James Key is back on the show to talk about his experience at RSA 2026 from a Microsoft Security Partner perspective. Stay tuned.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-fa3</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-fa3</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Wed, 08 Apr 2026 14:56:12 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!ZngQ!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1bf84d0b-fceb-44b4-ae5f-10662ecc7e8b_500x500.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p></p>]]></content:encoded></item><item><title><![CDATA[The "AI" Security Insights Show Episode 288 - The Recap Edition. OOOO...Anthropic made a BooBoo! We got to meet the security legends, Clive Watson and Craig Fretwell!]]></title><description><![CDATA[We give an update, as best we can, on the highlights and lowlights from the RSA conference. Ed and Rod are hosts with the most for the MVP Summit in Redmond. Frank hates backpacks or does he.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-e10</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-e10</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Thu, 02 Apr 2026 23:47:37 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/192779559/aec1c71b5d0e87284d199e9ba9ad001f.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Let&#8217;s talk Sentinel, AI Security or lack thereof and we think Agent365 is pretty cool when mixed with Microsoft Purview.</p><h1><em><strong>Words of Wisdom:</strong></em></h1><p>&#8220;Anything you say before the word &#8220;but&#8221; does not count!</p><p>&#8220;Ask anyone that you admire: Their lucky breaks happened on a detour from their main goal. So embrace detours. Life is NOT a straight line for anyone.&#8221;</p><h1><em><strong>Security News:</strong></em></h1><p><strong>General</strong></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2026/03/20/secure-agentic-ai-end-to-end/">Secure agentic AI end-to-end</a> | Microsoft Security Blog</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender?</a> | Microsoft Community Hub</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---march-2026/4498458">Monthly news &#8211; March 2026</a> | Microsoft Defender XDR Blog</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-innovations-announced-at-rsac-2026/4502146">Microsoft Entra innovations announced at RSAC 2026</a> | Microsoft Community Hub</p></li></ul><p><strong>AI Security</strong></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2026/03/20/secure-agentic-ai-end-to-end/">Secure agentic AI end-to-end</a> | Microsoft Security Blog</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender? (Security Copilot &amp; AI expansions)</a> | Microsoft Community Hub</p></li></ul><p><strong>Azure Security &amp; Defender for Cloud News</strong></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---march-2026/4498458">Monthly news &#8211; March 2026</a> | Microsoft Defender XDR Blog</p></li><li><p><a href="https://learn.microsoft.com/en-us/azure/defender-for-cloud/release-notes">What&#8217;s new in Defender for Cloud features (March/April 2026 updates)</a> | Microsoft Learn</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender?</a> | Microsoft Community Hub</p></li></ul><p><strong>Threat Intelligence</strong></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender?</a> | Microsoft Community Hub</p></li></ul><p><strong>Microsoft Entra</strong></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-innovations-announced-at-rsac-2026/4502146">Microsoft Entra innovations announced at RSAC 2026</a> | Microsoft Community Hub</p></li></ul><p><strong>Defender XDR &amp; Sentinel</strong></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender?</a> | Microsoft Community Hub</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/what%E2%80%99s-new-in-microsoft-sentinel-march-2026/4499508">What&#8217;s New in Microsoft Sentinel: March 2026</a> | Microsoft Community Hub</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/what%E2%80%99s-new-in-microsoft-sentinel-rsac-2026/4503971">What&#8217;s new in Microsoft Sentinel: RSAC 2026</a> | Microsoft Community Hub</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/rsac-2026-new-microsoft-sentinel-connectors-announcement/4503042">RSAC 2026: New Microsoft Sentinel Connectors Announcement</a> | Microsoft Community Hub</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---march-2026/4498458">Monthly news &#8211; March 2026</a> | Microsoft Defender XDR Blog</p></li></ul><p><strong>Copilot for Security</strong></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender? (Security Copilot expansions)</a> | Microsoft Community Hub</p></li></ul><p><strong>Purview &#8211; Compliance &amp; Governance</strong></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/rsa-2026-what%E2%80%99s-new-in-microsoft-defender/4503046">RSA 2026: What&#8217;s new in Microsoft Defender? (Purview AI &amp; data innovations)</a> | Microsoft Community Hub</p><h2>&#10024; Featured Items This Week</h2></li><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1261596">Notice: Security Copilot will be included as part of your Microsoft 365 E5 plan soon</a></strong><br>ID: MC1261596 | Service: Microsoft Entra, Microsoft Intune | Tags: New feature, User impact, Admin impact<br>Security Copilot will be included with Microsoft 365 E5 via a phased rollout from April 20 to June 30, 2026, providing 400 Security Compute Units </p></li><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1260708">Microsoft Entra ID: Improved readability for Authentication Methods Policy Update audit logs</a></strong><br>ID: MC1260708 | Service: Microsoft Entra | Tags: Feature update, Admin impact<br>Microsoft Entra ID audit logs for Authentication Methods Policy Updates will now show only changed properties with old and new values</p></li><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1259828">Microsoft Purview: Credential scanning in Data Security Posture Agent</a></strong><br>ID: MC1259828 | Service: Microsoft Purview | Tags: New feature, User impact, Admin impact<br>Microsoft Purview&#8217;s Data Security Posture Agent will add a credential scanning feature by mid-2026, using LLM-powered detection to find exposed cred&#8217;s</p></li></ul><h2>New Roadmap Items:</h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558539">Microsoft Teams: Enhanced cross-platform join via SIP for Teams Rooms on Android</a></strong><br>ID: 558539 | Product: Microsoft Teams | Status: In development<br>Enable Teams Rooms on Android to join third-party meetings via SIP, delivering seamless cross-platform interoperability. This capability ensures users...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=559475">Microsoft Viva: Copilot Analytics: &#8220;All&#8221;- licensed user page Copilot dashboard</a></strong><br>ID: 559475 | Product: Microsoft Viva, Microsoft Copilot (Microsoft 365) | Status: In development<br>The Copilot Dashboard adoption landing page will be updated to show a unified view of Copilot adoption across the organization. Instead of the default...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=559387">Microsoft Teams: Add Breakout Room Participants in Bulk Using CSV</a></strong><br>ID: 559387 | Product: Microsoft Teams | Status: In development<br>Support for bulk breakout room participant assignment using a CSV file, helping organizers save time when setting up breakout rooms.</p></li></ul><h2>Updated Roadmap Items:</h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557169">Microsoft Teams: Simplified Teams app bar to create a cleaner and more focused experience.</a></strong><br>ID: 557169 | Product: Microsoft Teams | Status: Rolling out<br>We&#8217;ve simplified the app bar to help you focus on what matters. Apps are easier to scan in a cleaner View more apps list, the overflow menu is less cl...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=554931">Microsoft Teams: Microsoft Teams: Secure Reliable Transport (SRT) Support for Teams town halls</a></strong><br>ID: 554931 | Product: Microsoft Teams | Status: In development<br>Microsoft Teams will soon support Secure Reliable Transport (SRT) streaming in Teams town halls. SRT is a network protocol designed to deliver high-qu...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557371">Microsoft Copilot (Microsoft 365): [Copilot Extensibility] IT Admins will be able to enable Anthropic models by specific users and groups in the tenant</a></strong><br>ID: 557371 | Product: Microsoft 365, Microsoft Copilot (Microsoft 365) | Status: In development<br>This feature introduces admin controls for managing Anthropic as a model provider for specific users and groups in the tenant.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=496655">Microsoft Viva: Satisfaction Rate Metric for Microsoft 365 Copilot in Copilot Dashboard</a></strong><br>ID: 496655 | Product: Microsoft Viva, Microsoft Copilot (Microsoft 365) | Status: Launched<br>Track user sentiment of Microsoft 365 Copilot. Understand how users perceive Copilot value by analyzing the breakdown of thumbs up and thumbs down rat...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=492625">Microsoft Teams: share file in chat with external users</a></strong><br>ID: 492625 | Product: Microsoft Teams | Status: Launched<br>Collaborating with users outside your organization has become more streamlined. You can now share files and Loop components with external users in 1:1...</p></li></ul><h2>New Message Center Items:</h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1263278">Microsoft Teams: AI-powered live interpretation on Teams Phone devices</a></strong><br>ID: MC1263278 | Service: Microsoft Teams | Tags: New feature, User impact, Admin impact<br>AI-powered live interpretation will be available on certified Microsoft Teams Phone devices for users with a Microsoft 365 Copilot license starting mi...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1263276">Microsoft 365 Copilot: Admins will be able to enable third&#8209;party model providers for specific users and groups</a></strong><br>ID: MC1263276 | Service: Microsoft 365 suite, Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Admins will soon be able to assign third-party AI model providers like Anthropic and xAI to specific users or groups in Microsoft 365 Copilot via a ne...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1262590">Planner tab support for Shared and Private Channels in Microsoft Teams</a></strong><br>ID: MC1262590 | Service: Planner, Microsoft Teams | Tags: New feature, User impact, Admin impact<br>Microsoft Planner tabs will be supported in Microsoft Teams Shared and Private channels starting mid-May 2026. Users can add new or existing plans dir...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1262589">New M365 group creation and editing in My Groups</a></strong><br>ID: MC1262589 | Service: Microsoft Entra | Tags: Feature update, User impact, Admin impact<br>Microsoft 365 group creation and editing in My Groups will be enhanced by late March 2026, allowing owners to configure usage guidelines, email aliase...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1262588">Microsoft Teams: Retirement of CAPTCHA for meeting join</a></strong><br>ID: MC1262588 | Service: Microsoft Teams | Tags: User impact, Retirement<br>Microsoft Teams will retire CAPTCHA for meeting joins by August 2026, replacing it with a default-on bot detection feature that requires organizer app...</p></li></ul><h2>Updated Message Center Items:</h2><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240704">(Updated) Copilot entry point changes in Word and handoff to Agent in chat</a></strong><br>ID: MC1240704 | Service: Microsoft 365 apps | Tags: Updated message, Feature update, User impact, Admin impact<br>Copilot entry points in Word are updated to unify access and introduce Word Agent in the chat pane as the primary interface. Rollout begins early Apri...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1193695">(Updated) Microsoft 365 Copilot: Email triage with pin, flag, archive, and mark read</a></strong><br>ID: MC1193695 | Service: Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft 365 Copilot now supports natural language commands for email triage&#8212;pinning, flagging, marking complete, archiving, and marking read/unread&#8212;...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1223821">(Updated) Microsoft 365 Copilot: Create and view Outlook rules</a></strong><br>ID: MC1223821 | Service: Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft 365 Copilot now lets Outlook users create and view Inbox rules via natural language in chat, streamlining email management. Available from A...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240703">(Updated) Microsoft Teams: Code block line numbers and improved keyboard accessibility</a></strong><br>ID: MC1240703 | Service: Microsoft Teams | Tags: Updated message, Feature update, User impact, Admin impact<br>Microsoft Teams will enhance the code block experience by adding default line numbers, improved keyboard navigation, consistent language selection, an...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1245216">(Updated) Targeted file and folder restores in Microsoft 365 Backup</a></strong><br>ID: MC1245216 | Service: Microsoft 365 suite, SharePoint Online | Tags: Updated message, New feature, Admin impact<br>Microsoft 365 Backup now supports granular restore, allowing admins to browse, search, and restore individual files or folders from SharePoint and One...</p>]]></content:encoded></item><item><title><![CDATA[The "AI" Security Insights Show Episode 287 - Principal Cloud Advocate April Gittens. If AI is so smart, then why aren't Robots doing our dishes!]]></title><description><![CDATA[Principal Cloud Advocate April Gittens, gives us the skinny on why getting AI adoption via robots to interact with humans to do human centric tasks may be more of challenge than the tech itself.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-4c1</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-4c1</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Fri, 20 Mar 2026 14:39:57 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/191123065/e2280eda1a9ed74f352e481679011d4e.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Edward does MCP. Franks says 3 is a magic number. Rod returns with tales from the other side of the pond? We will talk about the new E7 license from Microsoft and other top of mind security trends and news.</p><p></p><h1><em><strong>Words of Wisdom:</strong></em></h1><p>&#8220;To rapidly reveal the true character of a person you just met, move them onto an abysmally slow internet connection. Observe&#8221;</p><h2><em><strong>Cool AI Tools and Security Links:</strong></em></h2><ul><li><p><a href="https://lnkd.in/ebQ7nCRK">XDR Convertor </a></p></li></ul><ul><li><p>Tool to read the Legal Terms and conditions for you: <a href="https://aiterms-miwtrptubqmqg.azurewebsites.net/">AITermsScore &#8211; AI Legal Terms Analyzer</a></p></li></ul><ul><li><p><strong>All the admin portal and API endpoints:</strong> <a href="https://cmd.ms/">&#128421; Home | [cmd.ms]</a></p><p></p></li></ul><h2><em><strong>Microsoft M365 Changes</strong></em></h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251206">Microsoft Teams: Identify external bots joining your Teams meetings</a></strong><br>ID: MC1251206 | Service: Microsoft Teams | Tags: New feature, User impact, Admin impact<br>Microsoft Teams will detect and label external meeting assistant bots joining meetings, giving organizers control to approve, deny, or remove them. A ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251203">Copilot extensibility: Microsoft 365 Copilot Declarative Agents model upgrade to GPT&#8209;5.2</a></strong><br>ID: MC1251203 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Microsoft 365 Copilot Declarative Agents will upgrade to the GPT-5.2 model by late March 2026, enhancing quality, accuracy, and multi-step workflows. ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1249432">Microsoft Teams: Live transcription in Teams Rooms on Android</a></strong><br>ID: MC1249432 | Service: Microsoft Teams | Tags: New feature, User impact, Admin impact<br>Microsoft Teams Rooms on Android will gain live transcription with speaker attribution, timestamps, and optional translation, requiring a Teams Rooms ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1248388">Plan for Change: Windows Autopatch is enabling hotpatch updates by default</a></strong><br>ID: MC1248388 | Service: Microsoft Intune, Windows Autopatch | Tags: Admin impact<br>Starting May 2026, Windows Autopatch will enable hotpatch security updates by default for eligible Intune devices, speeding up security without restar...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1248343">RSAT capabilities arrive on Arm-based Windows 11 PCs</a></strong><br>ID: MC1248343 | Service: Windows | Tags: Admin impact</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558436">Microsoft Purview: Credential Scanning in Data Security Posture Agent</a></strong><br>ID: 558436 | Product: Microsoft Purview | Status: In development<br>We&#8217;re expanding the Data Security Posture Agent with a new credential scanning capability. Discover exposed credentials and data security risks across...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1247893">Microsoft Entra passkeys on Windows now support phishing-resistant sign-in</a></strong><br>ID: MC1247893 | Service: Microsoft Entra | Tags: New feature, User impact, Admin impact<br>Microsoft Entra passkeys on Windows enable phishing-resistant, passwordless sign-in using Windows Hello on Entra-protected resources, including unmana...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1247880">Anthropic Claude Sonnet is now available in Microsoft 365 Copilot</a></strong><br>ID: MC1247880 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Anthropic Claude Sonnet is now available in Microsoft 365 Copilot for licensed users, except in EU/EFTA, UK, government, and sovereign clouds. It can ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1247859">Windows Autopatch is enabling hotpatch updates by default</a></strong><br>ID: MC1247859 | Service: Windows | Tags: Admin impact</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1247637">(Updated) Microsoft 365 Copilot: Draft and send Outlook email directly in Copilot Chat</a></strong><br>ID: MC1247637 | Service: Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft 365 Copilot Chat will enable drafting, editing, and sending Outlook emails directly within the chat starting late March 2026. This feature, ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1247634">Microsoft Agent 365 Generally Available May 1, 2026</a></strong><br>ID: MC1247634 | Service: Microsoft 365 suite | Tags: New feature, Admin impact<br>Microsoft Agent 365 will be generally available on May 1, 2026, following the Frontier early-access program. Frontier participants retain access and c...</p><h2>New Roadmap Items </h2><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558688">Microsoft Purview: Endpoint Data Loss Prevention - Add support of hyperlinks in warn &amp; block toast messages for Edge browser</a></strong><br>ID: 558688 | Product: Microsoft Purview | Status: In development<br>With this feature, data officers can now complete their coverage story by now embedding hyperlinks within toast messages for the Edge browser. When th...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557974">Microsoft Teams: Honor Windows Do not disturb setting</a></strong><br>ID: 557974 | Product: Microsoft Teams | Status: In development<br>Microsoft Teams integrates with the Do not disturb setting in Windows to help reduce interruptions. Teams notifications are paused when Do not disturb...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558681">Microsoft Purview: Data Loss Prevention &#8211; Enrich Defender alerts Graph API with DLP event data</a></strong><br>ID: 558681 | Product: Microsoft Purview | Status: In development<br>Enhance current API infrastructure to provide easy and simple way for customers to export data to integrate with SIEM tools, create automated workflow...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558540">Microsoft Teams: Video recap in Teams</a></strong><br>ID: 558540 | Product: Microsoft Teams, Microsoft Copilot (Microsoft 365) | Status: In development<br>Intelligent meeting recap will now include video-based recaps. Video recap creates narrated video highlights from recorded meetings, featuring key tak...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=558441">SharePoint: Plan and Create Pages with AI</a></strong><br>ID: 558441 | Product: SharePoint | Status: In development<br>This feature allows you to edit new and existing pages with an AI chat pane. Now, with just prompts, you can add webparts, grounding documents, and re...</p><p></p><h2>Updated Roadmap Items </h2><p><strong><a href="https://deltapulse.app/dashboard?roadmap=392328">Microsoft Teams: Chat for organizers and presenters in structured meetings and webinars</a></strong><br>ID: 392328 | Product: Microsoft Teams | Status: In development<br>Organizers, co-organizers, and presenters can chat privately in a separate chat from attendees. This chat is available to access before, during, and a...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=511820">Planner: Planner Agent in basic plans</a></strong><br>ID: 511820 | Product: Planner, Microsoft Copilot (Microsoft 365) | Status: In development<br>Planner Agent will now be available for M365 Copilot licensed users in all Planner plans, including basic plans.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557165">Microsoft Teams: Chat for organizers and presenters in structured meetings and webinars on Teams Rooms on Windows</a></strong><br>ID: 557165 | Product: Microsoft Teams | Status: In development<br>When a Teams Rooms on Windows acts as an organizer, co-organizer or presenter in a structured meeting or webinar, you have access to the private chat ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557168">Microsoft Teams: Book future meetings directly from Teams panels</a></strong><br>ID: 557168 | Product: Microsoft Teams | Status: In development<br>You can now make an upcoming meeting reservation from a Teams panel by browsing the calendar on the device and choosing any open time slot through mid...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=523223">Microsoft Copilot (Microsoft 365): Deep citations in Copilot</a></strong><br>ID: 523223 | Product: Microsoft Copilot (Microsoft 365) | Status: In development<br>Deep citations let users quickly verify Copilot&#8217;s results by linking directly to the relevant part of the reference, boosting trust. </p><p></p><h2>New Message Center Items </h2><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251207">Microsoft Secure Score: New recommendations for Microsoft Defender for Endpoint</a></strong><br>ID: MC1251207 | Service: Microsoft Defender XDR | Tags: Feature update, User impact, Admin impact<br>New Microsoft Secure Score recommendations for Microsoft Defender for Endpoint will roll out in public preview from late February to mid-March 2026. T...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251206">Microsoft Teams: Identify external bots joining your Teams meetings</a></strong><br>ID: MC1251206 | Service: Microsoft Teams | Tags: New feature, User impact, Admin impact<br>Microsoft Teams will detect and label external meeting assistant bots joining meetings, giving organizers control to approve, deny, or remove them. A ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251203">Copilot extensibility: Microsoft 365 Copilot Declarative Agents model upgrade to GPT&#8209;5.2</a></strong><br>ID: MC1251203 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Microsoft 365 Copilot Declarative Agents will upgrade to the GPT-5.2 model by late March 2026, enhancing quality, accuracy, and multi-step workflows. ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251200">Microsoft Viva Engage | Email sender domain migration from @yammer.com to @engage.mail.microsoft</a></strong><br>ID: MC1251200 | Service: Microsoft Viva | Tags: Feature update, User impact, Admin impact<br>Microsoft Viva Engage is migrating email sender domains from @yammer.com to @engage.mail.microsoft (and @eu.yammer.com to @eu.engage.mail.microsoft) b...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1251199">Planned Maintenance: Windows 365 Service</a></strong><br>ID: MC1251199 | Service: Windows 365 | Tags: User impact, Admin impact<br>Planned maintenance for Windows 365 will occur March 23-27, 2026, during non-peak hours by region, with no service downtime. Users may experience brie...</p><h2>Updated Message Center Items </h2><p><strong><a href="https://deltapulse.app/dashboard?message=MC1221452">(Update)Microsoft Entra ID: General Availability of passkey profiles and migration for existing Passkeys (FIDO2) tenants</a></strong><br>ID: MC1221452 | Service: Microsoft Entra | Tags: Updated message, New feature, User impact, Admin impact<br>Starting March 2026, Microsoft Entra ID will GA passkey profiles and synced passkeys for tenants with Passkeys (FIDO2) enabled. Existing configuration...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1234566">(Updated) Outlook: retiring &#8220;Contact Masking&#8221; (hide suggested recipients) - March 31, 2026</a></strong><br>ID: MC1234566 | Service: Microsoft 365 suite | Tags: Updated message, User impact, Admin impact, Retirement<br>Outlook is retiring the &#8220;Contact Masking&#8221; feature on March 31, 2026, which allowed users to hide suggested recipients. Hidden contacts may reappear af...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1193419">(Updated) Content Security Policies (CSP) are coming to SharePoint Online and might impact your custom SPFx solutions</a></strong><br>ID: MC1193419 | Service: SharePoint Online | Tags: Updated message, New feature, User impact, Admin impact<br>Starting March 1, 2026, SharePoint Online will enforce Content Security Policy (CSP), blocking scripts from untrusted sources in custom SPFx solutions...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1102784">Microsoft Teams on the web: New Private Preview for Sign in with Apple and Google for consumers may affect enterprise</a></strong><br>ID: MC1102784 | Service: Microsoft Teams | Tags: Updated message, Feature update, User impact, Admin impact<br>Microsoft Teams on the web plans a new sign-in preview with &#8220;Continue with Apple&#8221; and &#8220;Continue with Google&#8221; for consumer accounts via login.microsoft...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1188222">(Updated) Microsoft Teams: Private chat for organizers and presenters in structured meetings, webinars, and town halls</a></strong><br>ID: MC1188222 | Service: Microsoft Teams | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft Teams will introduce a private chat for organizers, co-organizers, and presenters in structured meetings, webinars, and town halls, unifying...</p></li></ul><div><hr></div><h2><em><strong>Microsoft Security News and Events:</strong></em></h2><ul><li><p> <a href="https://learn.microsoft.com/en-us/microsoft-365/fasttrack/microsoft-security-copilot">Microsoft Security Copilot - FastTrack &#8211; Microsoft 365 | Microsoft Learn</a>-</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/CoreInfrastructureandSecurityBlog/active-directory-hardening-series---part-8-%E2%80%93-disabling-ntlm/4485782">Active Directory Hardening Series </a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/securing-the-browser-era---from-cloud-to-ai-a-blog-series-on-protecting-the-mode/4485131">Protect the Browser</a></p></li></ul><h2><em><strong>Watch the live show:</strong></em></h2><p></p><div id="youtube2-9gTwENsXvls" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;9gTwENsXvls&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/9gTwENsXvls?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div>]]></content:encoded></item><item><title><![CDATA[The "AI" Security Insights Show Episode 286 - Chris Stelzer Returns! Sentinel + XDR + MCP = SoC Automation Goodness!]]></title><description><![CDATA[One of favorite guest returns to the show. In this episode, Chris talks about how the emergence of MCP servers and Agents is boosting the power of Sentinel!]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-45f</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-45f</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Fri, 06 Mar 2026 17:10:38 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/189678959/1ca9de004716e22116873fccfebe98f9.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Edward gets someone else to do his homework.  Rod returns...or does he?  Franks can&#8217;t decide if he wants to live in Florida or Virginia. We will also do a run down about all the security and AI. </p><p></p><h1><em><strong>Words of Wisdom:</strong></em></h1><p>Speak confidently as if you are right, but listen carefully as if you are wrong.</p><h2><em><strong>Cool Tools and Links:</strong></em></h2><ul><li><p><a href="https://lnkd.in/ebQ7nCRK">XDR Convertor </a></p></li></ul><h2><em><strong>TOP AI and Security Links to take a look-see:</strong></em></h2><p></p><ul><li><p><strong>All the admin portal and API endpoints:</strong> <a href="https://cmd.ms/">&#128421; Home | [cmd.ms]</a></p></li><li><p>Microsoft Community Hub - <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---february-2026/4491826">Monthly news - February 2026 | Microsoft Community Hub</a></p></li></ul><h2><em><strong>Weekly Microsoft 365 Announced Changes:</strong></em></h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557716">Microsoft Teams: Multiple phone number assignment to a single user</a></strong><br>ID: 557716 | Product: Microsoft Teams | Status: In development<br>Administrators will be able to assign multiple phone numbers (up to 10) to a single user. Users will be able to make and receive phone calls using any...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1239934">Microsoft Teams: Flexible layout for meetings with resizable divider</a></strong><br>ID: MC1239934 | Service: Microsoft Teams | Tags: New feature, User impact, Admin impact<br>Microsoft Teams will introduce a resizable divider in meetings (April 2026) allowing users to adjust and swap the space between shared content and vid...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1239932">Collaborate with Copilot in Outlook while drafting email</a></strong><br>ID: MC1239932 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Microsoft 365 Copilot will be integrated into Outlook&#8217;s compose window starting March 2026, enabling real-time collaboration for email drafting. Avail...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1239187">Defender for Office 365 URL click alerts now include Microsoft Teams</a></strong><br>ID: MC1239187 | Service: Microsoft Defender XDR | Tags: New feature, User impact, Admin impact<br>Microsoft Defender for Office 365 URL click alerts will now include Microsoft Teams, enabling detection of malicious link clicks in Teams messages. Th...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1239186">Microsoft 365 Copilot: Turn Copilot Pages into SharePoint News posts</a></strong><br>ID: MC1239186 | Service: Microsoft 365 apps, Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact<br>Microsoft 365 Copilot will enable users to transfer content from Copilot Pages directly into SharePoint News posts for seamless editing and publishing...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1238434">Microsoft Purview | Data Lifecycle Management - Separate Retention policies for Copilots and AI Apps</a></strong><br>ID: MC1238434 | Service: Microsoft Purview | Tags: New feature, User impact, Admin impact<br>Admins can now set separate retention policies for Copilot and AI app interactions in Microsoft Purview, allowing faster deletion if needed. This feat...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1238433">Updates to filtered message viewing in Outlook for iOS and Android</a></strong><br>ID: MC1238433 | Service: Microsoft 365 apps | Tags: Feature update, User impact, Admin impact<br>Outlook for iOS and Android will add an option to search all filtered messages when more exist beyond locally synced items, improving clarity without ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1238409">Windows first sign-in restore experience now available</a></strong><br>ID: MC1238409 | Service: Windows | Tags: Admin impact</p><h2>New Roadmap Items </h2><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557977">Microsoft Purview: Data Loss Prevention- Security Store now available within Purview DLP to browse, purchase, and enable partner integrations</a></strong><br>ID: 557977 | Product: Microsoft Purview | Status: In development<br>Security Store is now integrated into the Microsoft Purview DLP experience, giving admins an in-product way to discover, purchase, and enable a curate...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557976">Microsoft Purview: Data Loss Prevention- New policy configuration options available for inline network and Edge for Business policies</a></strong><br>ID: 557976 | Product: Microsoft Purview | Status: In development<br>Admins can now scope Purview collection policies for unmanaged cloud apps based on the presence of sensitivity labels, enabling more precise discovery...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557947">Microsoft Copilot (Microsoft 365): Share agents to Teams</a></strong><br>ID: 557947 | Product: Microsoft Copilot (Microsoft 365) | Status: In development<br>With this feature, users will be able to share their agent with a Microsoft Teams team. Users can search for and find teams in the agent sharing dialo...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557716">Microsoft Teams: Multiple phone number assignment to a single user</a></strong><br>ID: 557716 | Product: Microsoft Teams | Status: In development<br>Administrators will be able to assign multiple phone numbers (up to 10) to a single user. Users will be able to make and receive phone calls using any...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=553215">Microsoft Copilot (Microsoft 365): Create Videos in the Clipchamp Start Page</a></strong><br>ID: 553215 | Product: Microsoft Clipchamp, Microsoft Copilot (Microsoft 365) | Status: In development<br>Users can use Copilot to create videos directly from the Clipchamp Start page. Turn a simple prompt or existing document into a polished video in minutes</p><p></p><h2>Updated Roadmap Items </h2><p><strong><a href="https://deltapulse.app/dashboard?roadmap=518286">Microsoft Teams: New SlimCore-based optimization for Microsoft Teams in VDI - support for Windows endpoints on Omnissa environments</a></strong><br>ID: 518286 | Product: Microsoft Teams | Status: Rolling out<br>This feature allows Windows endpoints to optimize Microsoft Teams in VDI environments with the new SlimCore-based media engine, providing an expanded ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=549286">Outlook: New search folder types</a></strong><br>ID: 549286 | Product: Outlook | Status: Launched<br>Search Folders are being moved to the Settings experience in the new Outlook for Web and Windows, improving discoverability and alignment with modern ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=536572">Microsoft Teams: External Domains Anomalies Report</a></strong><br>ID: 536572 | Product: Microsoft Teams | Status: In development<br>This new report helps admins proactively spot unusual or risky interactions with external organizations. By analyzing communication trends and detecti...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=549287">Outlook: New search folder types</a></strong><br>ID: 549287 | Product: Outlook | Status: Launched<br>Search folders are being moved to the Settings experience in the new Outlook for Windows and web, improving discoverability and alignment with modern ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=531761">Microsoft Defender for Office 365: Admins can hunt on calls in Microsoft Teams</a></strong><br>ID: 531761 | Product: Microsoft Defender for Office 365 | Status: In development<br>Security admins with Defender for Office 365 Plan 2 can hunt on calls and meetings made inside Microsoft Teams for their organization</p><p></p><h2>New Message Center Items </h2><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240748">Retiring the Impala connector</a></strong><br>ID: MC1240748 | Service: Microsoft Power Automate in Microsoft 365 | Tags: User impact, Admin impact, Retirement<br>The Impala connector will be retired and removed from Copilot Studio, Logic Apps, Power Apps, and Power Automate between April 1-14, 2026. Existing co...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240743">SharePoint page template gallery improvements and new templates</a></strong><br>ID: MC1240743 | Service: SharePoint Online | Tags: New feature, User impact<br>SharePoint is enhancing its page template gallery with 31 new templates, improved browsing, filtering, search, and unified Pages and News creation. En...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240742">Microsoft Viva &#8211; Microsoft 365 Copilot adoption (Power BI) report update with power user insights</a></strong><br>ID: MC1240742 | Service: Microsoft Viva, Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>The Microsoft 365 Copilot adoption (Power BI) report in Viva Insights will be updated by mid-March 2026 with a streamlined layout and new power user i...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240741">Microsoft Viva &#8211; Copilot Analytics: &#8220;All&#8221; licensed user page added to the Copilot Dashboard</a></strong><br>ID: MC1240741 | Service: Microsoft Viva, Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>The Copilot Dashboard will add an &#8220;All&#8221; view combining licensed Microsoft 365 Copilot and unlicensed Copilot Chat usage, enabled by default with no ad...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1240704">Copilot entry point changes in Word and handoff to Agent in chat</a></strong><br>ID: MC1240704 | Service: Microsoft 365 apps | Tags: Feature update, User impact, Admin impact<br>Copilot entry points in Word are being unified and moved to a consistent corner, with contextual access via selection floatie (Windows/Web) or right-c...</p><h2>Updated Message Center Items </h2><p><strong><a href="https://deltapulse.app/dashboard?message=MC1151241">Microsoft Teams | VDI for Azure Virtual Desktops/Windows 365 and Citrix: macOS support with new SlimCore optimization</a></strong><br>ID: MC1151241 | Service: Microsoft Teams | Tags: Updated message, New feature, User impact<br>Microsoft Teams now supports macOS with a new SlimCore media engine for Azure Virtual Desktop, Windows 365, and Citrix, improving performance, meeting...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1193414">(Updated) Microsoft 365 Copilot: Add web links as references in Copilot Notebooks</a></strong><br>ID: MC1193414 | Service: Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft 365 Copilot Notebooks will allow users with a Copilot license to add public web links as references, expanding beyond file types like Word a...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC804771">(Updated) Microsoft Teams: Hiding inactive channels</a></strong><br>ID: MC804771 | Service: Microsoft Teams | Tags: Updated message, New feature, User impact<br>Microsoft Teams paused the rollout of automated hiding of inactive channels, now offering opt-in suggestions for users to review and hide inactive cha...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1134737">(Updated) Microsoft Teams: Private channels increased limits and transition to group compliance</a></strong><br>ID: MC1134737 | Service: Microsoft Teams | Tags: Updated message, New feature, User impact, Admin impact<br>Microsoft Teams is updating private channels by increasing limits to 1000 channels per team and 5000 members per channel, enabling meeting scheduling,...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1141958">(Updated) Microsoft Teams: Choose to hide inactive channels</a></strong><br>ID: MC1141958 | Service: Microsoft Teams | Tags: Updated message, Feature update, User impact, Admin impact<br>Microsoft Teams paused the rollout of automated hiding of inactive channels, now offering opt-in suggestions instead. Users can review and hide inactivity</p></li></ul><div><hr></div><h2><em><strong>Microsoft Security News and Events:</strong></em></h2><ul><li><p><a href="https://techcommunity.microsoft.com/blog/CoreInfrastructureandSecurityBlog/active-directory-hardening-series---part-8-%E2%80%93-disabling-ntlm/4485782">Active Directory Hardening Series </a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-security-blog/securing-the-browser-era---from-cloud-to-ai-a-blog-series-on-protecting-the-mode/4485131">Protect the Browser</a></p></li></ul><h2><em><strong>Watch the live show:</strong></em></h2><div id="youtube2-3UFqWA4cmoE" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;3UFqWA4cmoE&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/3UFqWA4cmoE?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div>]]></content:encoded></item><item><title><![CDATA[ The "AI" Security Insights Show Episode 285 - Edward does his homework, lessons learned via MCP. Well sort of...!]]></title><description><![CDATA[Ed is still a bad student. Frank has XDR logs on the brain. Rod is Jet Setting and making moves around the world.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-b8a</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-b8a</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Mon, 23 Feb 2026 19:20:38 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/188630086/fe7636854a8ae5227628b52f566f0663.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>In this episode we discuss why Edward continues to go down AI generated rabbit holes instead completing the homework assignment given to him by Frank</p><p>We talk about changes in how Sentinel data lake ingest XDR logs, AI rabbit holes and lots of other random security items. </p><p></p><h1><em><strong>Words of Wisdom:</strong></em></h1><p>The biggest lie we tell ourselves is, &#8220;I don&#8217;t need to write this down because I will remember it&#8221;.</p><h2><em><strong>Cool Tools and Links:</strong></em></h2><ul><li><p>https://cmd.ms/ - <strong>the Microsoft Cloud command line!</strong></p></li></ul><h2><em><strong>TOP AI and Security Links to take a look-see:</strong></em></h2><ul><li><p><strong>Open AI ready made prompts: </strong><a href="https://academy.openai.com/public/tags/prompt-packs-6849a0f98c613939acef841c">https://academy.openai.com/public/tags/prompt-packs-6849a0f98c613939acef841c</a></p></li><li><p><strong>All the admin portal and API endpoints:</strong> <a href="https://cmd.ms/">&#128421; Home | [cmd.ms]</a></p></li><li><p></p></li><li><p>Microsoft Community Hub - <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---february-2026/4491826">Monthly news - February 2026 | Microsoft Community Hub</a></p></li></ul><h2><em><strong>Weekly Microsoft 365 Announced Changes:</strong></em></h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557559">Microsoft Purview: Data Lifecycle Management- Azure PST Import</a></strong><br>ID: 557559 | Product: Microsoft Purview | Status: In development<br>Azure PST Import is a migration method that enables PST files stored in Azure Blob Storage to be imported directly into Exchange Online mailboxes. It ...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1235017">Microsoft 365 Copilot: xAI Grok 4.1 Fast now available in Copilot Studio for US customers (admin opt-in required)</a></strong><br>ID: MC1235017 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impact<br>Starting February 19, 2026, xAI Grok 4.1 Fast, a text-only large language model, will be available in Microsoft Copilot Studio for U.S. customers by a...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1234559">Simplified Teams app bar to create a cleaner and more focused experience</a></strong><br>ID: MC1234559 | Service: Microsoft Teams | Tags: New feature, User impact<br>Microsoft Teams is simplifying the app bar to reduce clutter and improve focus, rolling out from mid-March to early April 2026. The app bar will show ...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557172">Microsoft Teams: Enable customers to book appointments from a live chat widget on your website</a></strong><br>ID: 557172 | Product: Microsoft Teams | Status: In development<br>The Microsoft Teams live chat widget lets customers engage in one to one conversations with your business directly from your website, and now also ena...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1234094">Coming soon to organizations: Customize the Start menu with updated policies</a></strong></p></li><li><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557256">Microsoft Copilot (Microsoft 365): Explain slide selection during PowerPoint Live</a></strong><br>ID: 557256 | Product: PowerPoint, Microsoft Copilot (Microsoft 365) | Status: In development<br>This feature enhances the PowerPoint Live meeting experience by using Copilot to let attendees select slide text and get explanations for the content.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557674">Microsoft Viva: Copilot Analytics: Copilot adoption PBI version update including Power user insights.</a></strong><br>ID: 557674 | Product: Microsoft Viva, Microsoft Copilot (Microsoft 365) | Status: In development<br>The updated Copilot adoption Power BI report will come with a streamlined UX and new Power user insights.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557675">Outlook: Share Word, Excel, and PowerPoint local files via the new Outlook for Windows</a></strong><br>ID: 557675 | Product: Outlook | Status: In development<br>When working in an open Word, Excel, or PowerPoint file, users will now be able to send a copy of the locally stored file by email through the new Out...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=557562">OneDrive: Set a custom name for the OneDrive sync folder</a></strong><br>ID: 557562 | Product: OneDrive | Status: In development<br>IT admins can now customize the local OneDrive sync root folder name on users&#8217; Windows computers. By default, the folder is named &#8220;OneDrive - {organiz...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=547732">SharePoint: New SharePoint Experience</a></strong><br>ID: 547732 | Product: SharePoint | Status: In development<br>We are introducing a reimagined SharePoint experience designed to be simple and intuitive, centered on the core jobs of discovering knowledge, publish...</p></li></ul><p><strong><a href="https://deltapulse.app/dashboard?roadmap=542186">Outlook: Prepare for meetings with Copilot in classic Outlook for Windows</a></strong><br>ID: 542186 | Product: Outlook | Status: In development<br>With so many of us in back-to-back meetings, it can be a real struggle to stay on top of pre-reads, action items, and even what each meeting is about....</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=547824">Microsoft Teams: Attend Microsoft webinars from Teams Rooms on Android</a></strong><br>ID: 547824 | Product: Microsoft Teams | Status: In development<br>You can join a Microsoft webinar from a Teams Room on Android and interact seamlessly during the event. Available for Teams Rooms Pro.</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=485712">Microsoft Teams: Streamlined Microsoft 365 Certified App Management in Teams Admin Center</a></strong><br>ID: 485712 | Product: Microsoft Teams | Status: In development<br>This feature allows Microsoft 365 administrators to enable Microsoft 365 certified SaaS applications within their tenant through org-wide settings for...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=541830">Microsoft Teams: Branded Meeting Reactions</a></strong><br>ID: 541830 | Product: Microsoft Teams | Status: In development<br>With new branded reactions, organizations can now extend their visual identity directly into meetings. IT admins simply upload custom reaction icons r...</p><p><strong><a href="https://deltapulse.app/dashboard?roadmap=421611">Microsoft 365 app: Microsoft Loop - Admin usage reports for Loop</a></strong><br>ID: 421611 | Product: Microsoft 365 app | Status: In development<br>View and monitor Loop usage in the tenant through existing M365 admin usage dashboards.</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1235746">Microsoft 365 Copilot: Ground Chat in SharePoint Lists using Context IQ</a></strong><br>ID: MC1235746 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact<br>Microsoft 365 Copilot will allow users to search for and insert SharePoint Lists into chat prompts via Context IQ, enhancing response accuracy. This f...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1235720">Plan for Windows Server 2016 and Windows 10 2016 LTSB end of support</a></strong><br>ID: MC1235720 | Service: Windows | Tags: Admin impact</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1235124">Microsoft Teams: Upcoming changes to Microsoft Places licensing and feature access</a></strong><br>ID: MC1235124 | Service: Microsoft Teams, Microsoft 365 for the web | Tags: Feature update, User impact, Admin impact<br>Starting April 1, 2026, Microsoft Places licensing will shift from user-based to space-based, making core features widely available without Teams Prem...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1235123">OneNote for iOS: Introducing automatic local backups</a></strong><br>ID: MC1235123 | Service: Microsoft 365 apps | Tags: New feature, User impact, Admin impact<br>OneNote for iOS will automatically create local backups of notebooks stored in the iOS Files app, enabling self-service recovery via PC or Mac. This f...</p><p><strong><a href="https://deltapulse.app/dashboard?message=MC1235118">(Updated) Microsoft Teams: Reduced automatic updates in Meet Now channel meeting threads</a></strong><br>ID: MC1235118 | Service: Microsoft Teams | Tags: Updated message, Feature update, User impact<br>Microsoft Teams will reduce automatic updates in Meet Now channel meeting conversations, showing only a single &#8220;Meeting started&#8221; message in the channe...</p><div><hr></div><h2><em><strong>Microsoft Security News and Events:</strong></em></h2><ul><li><p>Defender for AI <a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/defender-for-ai-services-threat-protection-and-ai-red-team-workshop/4464771">https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/defender-for-ai-services-threat-protection-and-ai-red-team-workshop/4464771</a></p></li><li><p><a href="https://aka.ms/AgentID/ITPro">https://aka.ms/AgentID/ITPro</a> - Entra Agent ID for IT Pros</p><ul><li><p><a href="https://aka.ms/AgentID/ITPro/CreationChannels">https://aka.ms/AgentID/ITPro/CreationChannels</a> - Creation Channels for Entra Agent IDs</p></li></ul></li><li><p><a href="https://aka.ms/AgentID/Developers">https://aka.ms/AgentID/Developers</a> - Entra Agent ID Platform for Developers</p><ul><li><p><a href="https://aka.ms/AgentID/Developers/Concepts">https://aka.ms/AgentID/Developers/Concepts</a> - Key Concepts for Entra Agent ID Developers</p></li></ul></li><li><p><a href="https://aka.ms/AgentID/GraphAPI">https://aka.ms/AgentID/GraphAPI</a> - Microsoft Graph API for Entra Agent ID, including the new permissions for Entra Agent ID</p></li><li><p><a href="https://aka.ms/AgentID/Foundry">https://aka.ms/AgentID/Foundry</a> - Agent ID Integration with Foundry</p></li><li><p><a href="https://aka.ms/AgentID/CopilotStudio">https://aka.ms/AgentID/CopilotStudio</a> - Agent ID Integration with Copilot Studio</p></li><li><p><a href="https://aka.ms/AgentID/CAAgent">https://aka.ms/AgentID/CAAgent</a> - Agent ID Integration of Conditional Access Optimization Agent</p></li><li><p><a href="https://aka.ms/AgentID/ARAgent">https://aka.ms/AgentID/ARAgent</a> - Agent ID Integration with Access Review Agent</p></li><li><p><a href="https://aka.ms/AgentID/MCSAgents">https://aka.ms/AgentID/MCSAgents</a> - Copilot Studio Agents (old Agent IDs &#8211; SPs)</p></li><li><p><a href="https://aka.ms/AgentID/D365Agents">https://aka.ms/AgentID/D365Agents</a> - Dynamics 365 Agents overview &#8211; the main source of Agent IDs in our customers&#8217; tenant</p></li><li><p><a href="https://aka.ms/AgentID/BRK243">https://aka.ms/AgentID/BRK243</a> - <strong>Ignite on-demand BRK243</strong> (Microsoft Entra: What&#8217;s New in Secure Access on the AI Frontier)</p></li><li><p><a href="https://aka.ms/AgentID/BRK265">https://aka.ms/AgentID/BRK265</a>- <strong>Ignite on-demand BRK265</strong> (Secure access for AI agents with Microsoft Entra)</p></li></ul><p>Enjoyed this recent blog post from Microsoft Threat Intel team detailing a threat actors TTPs to compromise cloud-based data storage. What I found interesting is their on-prems to cloud lateral movements. Across multiple domains and across multiple Entra ID tenants within a single customer. A lot of you deal with this due to your business conducting multiple M&amp;As over many years. Just goes to show the basics matter, hygiene matters, full visibility which mean full coverage matters. <em>(off soap box)</em></p><p>Also, had a fun time watching a YouTube video of <a href="https://github.com/SpecterOps/AzureHound">AzureHound</a> being used to help easily identify relationships and permissions in an Azure environment. For example, to locate a user who had elevated privileges on a non-human identity (Service Principle) which had assigned global admin &#128580;&#128528;&#128529;. This was one of the tools the threat actors used for recon.</p><p>Hope everyone has a great weekend and enjoys the read! <a href="https://www.microsoft.com/en-us/security/blog/2025/08/27/storm-0501s-evolving-techniques-lead-to-cloud-based-ransomware/">Click Here for Blog</a></p><h2>Watch the live replay:</h2><div id="youtube2-oN46EIteBpw" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;oN46EIteBpw&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/oN46EIteBpw?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div>]]></content:encoded></item><item><title><![CDATA[ The "AI" Security Insights Show Episode 284 - Microsoft Sentinel Pricing....it's like MAAGIC!]]></title><description><![CDATA[Ed still HATES homework! Frank tries to teach AI without using AI. Rod is on a roll, about three streamlit apps week via Grok API goodness.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-f18</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode-f18</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Sat, 07 Feb 2026 15:12:01 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/185209879/8c233084eb48d483b797b1ef3e634951.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>In this episode we have the good folks from the security company - LockBase Cyber. Leonard Volling and Charlie Smith will come on and talk about their new Microsoft Sentinel pricing tool.</p><p>Also Ed talks about how this work travel kept him from doing his homework and messed up the last show, Frank is still trying to decide if he would rather teach security or AI and Rod has finished his No Pop-Tarts January. Oh, we also talked about AI security, Sentinel data lake, AI chips from Google and how we will pivot the show in 2026 to have a deep focus on all things that help secure AI, blah, blah, blah.</p><h1><em><strong>Words of Wisdom:</strong></em></h1><p>The biggest lie we tell ourselves is, &#8220;I don&#8217;t need to write this down because I will remember it&#8221;.</p><h2><em><strong>Cool Tools and Links:</strong></em></h2><ul><li><p>https://cmd.ms/ - <strong>the Microsoft Cloud command line!</strong></p></li></ul><h2><em><strong>TOP AI and Security Links to take a look-see:</strong></em></h2><ul><li><p>Link to New Microsoft Security and AI Architect Certification - <a href="https://microsoftlearning.co1.qualtrics.com/jfe/form/SV_5w049vncCEqEDJQ">Survey | Qualtrics Survey Software</a></p></li><li><p><em><strong>LockBase Cyber: - </strong></em><a href="https://sentinelcalculator.lockbasecyber.com/">Sentinel Log Planner by LockBase - Plan Your Microsoft Sentinel Data Strategy</a></p></li><li><p><strong>Open AI ready made prompts: </strong><a href="https://academy.openai.com/public/tags/prompt-packs-6849a0f98c613939acef841c">https://academy.openai.com/public/tags/prompt-packs-6849a0f98c613939acef841c</a></p></li><li><p><strong>All the admin portal and API endpoints:</strong> <a href="https://cmd.ms/">&#128421; Home | [cmd.ms]</a></p></li><li><p><strong>Sentinel and XDR portal: </strong><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/update-new-timeline-for-transitioning-sentinel-experience-to-defender-portal/4490464">UPDATE: New timeline for transitioning Sentinel experience to Defender portal | Microsoft Community Hub</a></p></li><li><p>Microsoft Community Hub - <a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---february-2026/4491826">Monthly news - February 2026 | Microsoft Community Hub</a></p></li></ul><h2><em><strong>Weekly Microsoft 365 Announced Changes:</strong></em></h2><ul><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1223829">(Updated) Upcoming Conditional Access change: Improved enforcement for policies with resource exclusions</a></strong><br>ID: MC1223829 | Service: Microsoft Entra | Tags: Updated message, Feature update, User impact, Admin impact<br>Starting March 27, 2026, Conditional Access policies targeting All resources will be enforced even if they have resource exclusions, affecting sign-in...</p></li><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1222978">Microsoft 365 Copilot: User-day export for Copilot dashboard metrics in public preview</a></strong><br>ID: MC1222978 | Service: Microsoft Copilot (Microsoft 365) | Tags: Feature update, User impact, Admin impact<br>Microsoft 365 Copilot dashboard adds a public preview of a new user-day export option, allowing company-level users to download de-identified daily us...</p></li><li><p><strong><a href="https://deltapulse.app/dashboard?message=MC1222977">Microsoft Defender for Android: End of support for Android 10 devices</a></strong><br>ID: MC1222977 | Service: Microsoft Defender XDR | Tags: User impact, Admin impact, Retirement<br>Microsoft Defender for Android will end support for Android 10 devices on March 31, 2026. After this date, these devices will no longer receive update...</p></li></ul><div><hr></div><p><em><strong>Microsoft General:</strong></em></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/10/securing-our-future-november-2025-progress-report-on-microsofts-secure-future-initiative/">Latest progress update on Microsoft&#8217;s Secure Future Initiative | Microsoft Security Blog</a></p></li><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/07/whisper-leak-a-novel-side-channel-cyberattack-on-remote-language-models/">&#8203;&#8203;Whisper Leak: A novel side-channel attack on remote language models | Microsoft Security Blog</a></p></li><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/06/new-idc-research-highlights-a-major-cloud-security-shift/">New IDC research highlights a major cloud security shift | Microsoft Security Blog</a></p></li></ul><p><em><strong>AI Security:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/public-preview-entra-id-support-for-rdp-connections-in-portal/4472675">Public Preview: Entra ID support for RDP connections in portal</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/dns-flow-trace-logs-in-azure-firewall-are-now-generally-available/4469377">DNS flow trace logs in Azure Firewall are now generally available</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/general-availability-of-javascript-challenge-in-azure-front-door-waf/4466940">General Availability of JavaScript Challenge in Azure Front Door WAF</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/using-packet-capture-for-troubleshooting-azure-firewall-flows/4466692">Using Packet Capture for troubleshooting Azure Firewall flows</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/azurenetworksecurityblog/public-preview-custom-waf-block-status--body-for-azure-application-gateway/4467435">Public Preview: Custom WAF Block Status &amp; Body for Azure Application Gateway</a></p></li></ul><p><em><strong>Azure Security &amp; Defender for Cloud News:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/microsoft-defender-for-cloud-innovations-at-ignite-2025/4469386">Microsoft Defender for Cloud Innovations at Ignite 2025</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/announcing-microsoft-cloud-security-benchmark-v2-public-preview/4468523">Announcing Microsoft cloud security benchmark v2 (public preview)</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/fast-start-checklist-for-microsoft-defender-cspm-from-enablement-to-best-practic/4467465">Fast-Start Checklist for Microsoft Defender CSPM: From Enablement to Best Practices</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/unlocking-business-value-microsofts-dual-approach-to-ai-for-security-and-securit/4466811">Unlocking Business Value: Microsoft&#8217;s Dual Approach to AI for Security and Security for AI</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/check-this-out-cto-guide-october-2025/4467912">Check This Out! (CTO!) Guide (October 2025)</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/update-coverage-workbook-in-microsoft-defender-for-cloud-to-include-defender-for/4466418">Update Coverage Workbook in Microsoft Defender for Cloud to Include Defender for AI Plan status</a></p></li></ul><p><em><strong>Purview - Compliance &amp; Governance:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/azurepurviewblog/consolidate--conquer-driving-business-transformation-with-integrated-security-pa/4466867">Consolidate &amp; Conquer: Driving Business Transformation with Integrated Security (Part 1 of 2) | Microsoft Community Hub</a></p></li></ul><p><em><strong>Microsoft Entra:</strong></em></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/21/microsoft-named-a-leader-in-the-gartner-magic-quadrant-for-access-management-for-the-ninth-consecutive-year/">Microsoft named a Leader in the Gartner&#174; Magic Quadrant&#8482; for Access Management for the ninth consecutive year | Microsoft Security Blog</a></p><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/icymi-watch-replays-of-microsoft-entra-sessions-at-microsoft-ignite-2025/4427989">ICYMI: Watch replays of Microsoft Entra sessions at Microsoft Ignite 2025 | Microsoft Community Hub</a></p></li></ul><p><em><strong>Copilot for Security:</strong></em></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/18/agents-built-into-your-workflow-get-security-copilot-with-microsoft-365-e5/">Agents built into your workflow: Get Security Copilot with Microsoft 365 E5 | Microsoft Security Blog</a></p></li></ul><p></p><p><em><strong>Sentinel:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/the-microsoft-copilot-data-connector-for-microsoft-sentinel-is-now-in-public-pre/4491986">The Microsoft Copilot Data Connector for Microsoft Sentinel is Now in Public Preview | Microsoft Community Hub</a></p></li><li><p>Turn Complexity into Clarity: Introducing the New UEBA Behaviors Layer in Microsoft Sentinel | Microsoft Community Hub</p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsecurityexperts/microsoft-defender-experts---s-t-a-r-series/4472199">Strategies for Threat Awareness and Response</a> - Not product focused. Threat Actor focused and actional-able guidance.</p></li><li><p><a href="https://adoption.microsoft.com/en-us/ninja-show/#on-demand">Sentinel &amp; Defender XDR Ninja Training</a> - Product focused. What&#8217;s new, deep dives, best practices ...etc.</p></li></ul><p><em><strong>Defender XDR:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/monthly-news---november-2025/4466561">Monthly news - November 2025</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/strengthening-calendar-security-through-enhanced-remediation/4456876">Strengthening calendar security through enhanced remediation</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/microsoft-ignite-2025-transforming-phishing-response-with-agentic-innovation/4470791">Microsoft Ignite 2025: Transforming Phishing Response with Agentic Innovation</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/microsoft-defender-for-office-365-fine-tuning/4469416">Microsoft Defender for Office 365: Fine-Tuning</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/you-may-be-right-after-all-disputing-submission-responses-in-microsoft-defender-/4467151">You may be right after all! Disputing Submission Responses in Microsoft Defender for Office 365</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefenderforoffice365blog/ensure-your-ices-solution-works-seamlessly-alongside-microsoft-defender/4466691">Ensure your ICES solution works seamlessly alongside Microsoft Defender</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/using-the-microsoft-defender-for-endpoint-files-api-to-validate-malware-hashes/4472469">Using the Microsoft Defender for Endpoint Files API to Validate Malware Hashes | Microsoft Community Hub</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/mde-for-non%E2%80%91persistent-vdi-%E2%80%94-implementation-guide--best-practices-/4470439">MDE for Non&#8209;Persistent VDI &#8212; Implementation Guide &amp; Best Practices.</a></p></li></ul><h2>Watch the live replay</h2><div id="youtube2-dPSw-wd0-jA" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;dPSw-wd0-jA&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/dPSw-wd0-jA?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div>]]></content:encoded></item><item><title><![CDATA[Catch Us Weekly on your TV]]></title><description><![CDATA[THE Security Insights TV Show]]></description><link>https://www.microsoftsecurityinsights.com/p/catch-us-weekly-on-your-tv</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/catch-us-weekly-on-your-tv</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Thu, 22 Jan 2026 22:51:26 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!8QkH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!8QkH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!8QkH!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 424w, https://substackcdn.com/image/fetch/$s_!8QkH!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 848w, https://substackcdn.com/image/fetch/$s_!8QkH!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!8QkH!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!8QkH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg" width="1205" height="904" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:904,&quot;width&quot;:1205,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:400680,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.microsoftsecurityinsights.com/i/185468806?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!8QkH!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 424w, https://substackcdn.com/image/fetch/$s_!8QkH!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 848w, https://substackcdn.com/image/fetch/$s_!8QkH!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!8QkH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc95d2ae1-2aef-43f4-8355-c2c04e02469d_1205x904.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Exciting news for fans of cybersecurity discussions: Substack has just rolled out a brand-new TV app in beta, making it easier than ever to enjoy video content from your favorite creators right on your big screen. Launched today, the app is available for Apple TV, Google TV, and Android TV devices. Simply search for &#8220;Substack&#8221; in your TV&#8217;s app store&#8212;whether it&#8217;s the Apple App Store for Apple TV or the Apps section for Google and Android TV&#8212;and download it to get started. This move expands Substack&#8217;s reach beyond mobile and web, allowing subscribers to stream videos and live broadcasts comfortably from their living rooms.</p><p>For subscribers to <em>THE Security Insights Show</em>, hosted by Edward Walton, Frank Grimberg, and Rod Trent, this means you can now catch the weekly episodes on your TV. The show delivers in-depth conversations, the latest news, practical tips, and insights into Microsoft security solutions and broader industry trends&#8212;all in video format. Recent episodes, like Episode 283 on the AI revolution in cybersecurity, are streamed live and available on-demand, blending expert analysis with engaging dialogue. With over 6,000 subscribers already tuning in, the show&#8217;s video podcast style is perfect for TV viewing, whether you&#8217;re settling in for a full episode or catching up on highlights.</p><p>To watch, log in to the Substack TV app with your account details. Your subscriptions will sync seamlessly, giving you access to <em>THE Security Insights Show</em>&#8216;s content matched to your free or paid tier. No more huddling around a phone or laptop&#8212;lean back and dive into the world of cybersecurity from the comfort of your couch. If you&#8217;re not subscribed yet, head over to the site and join the community for weekly updates that keep you ahead in the ever-evolving security landscape.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[ The "AI" Security Insights Show Episode 283 - AI Revolution in Cybersecurity]]></title><description><![CDATA[Ed hates homework! Frank love cruise ships! Rod is doing no "Pop Tarts" January!]]></description><link>https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-ai-security-insights-show-episode</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Fri, 09 Jan 2026 16:29:57 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/184032823/cf9b0e42bdab34511c7c86211dd88613.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>In this episode, Ed talks about this travel adventures, Frank confesses that he is addicted to life on a cruise ship and Rod was out because of Pop Tart overdose. Oh, we also talked about AI security, Sentinel datalake, AI chips from Google and how we will pivot the show in 2026 to have a deep focus on all things that help secure AI, blah, blah, blah.</p><h1><em><strong>Words of Wisdom:</strong></em></h1><p>The best way to get a correct answer on the internet is to post an obviously wrong answer and wait for someone to correct you.</p><h2><em><strong>Show Links:</strong></em></h2><p><em><strong>Learning:</strong></em></p><p><strong>Secure your data for AI with Microsoft Purview</strong></p><p>Tuesday, January 27, 2026, 1:00&#8201;&#8211;&#8201;2:00 PM ET (GMT-05:00)</p><p><strong><a href="https://emails.microsoft.com/dc/e_4JGRIDqcoiTU1HR-giCWWkyCmeORqUCO4pEjpDTdcoLHSdAB0Hkd4k-exmiTjolnxZd1QGBpbeSrag5P-cqCKI_kEVE3_-6VJpbfJu7QCgn_AaSHTzjSzcKE0qPmUw7DE0ZKvWnfFXZhmCpNqx4HmwOINsggajy9gW1OZSyPo=/MTU3LUdRRS0zODIAAAGfMrRX2EHwiTvxO1jsl0DzU-7tiQN5O55u6F5XmQlmLiwQR0uMp_xgvQykpAwb_JlWYeJYm7I=">Register now</a></strong></p><p></p><div><hr></div><p><strong>Strengthen Your Security Posture with Advanced Identity Solutions</strong></p><p>Wednesday, January 28, 2026, 2:00&#8201;&#8211;&#8201;3:00 PM ET (GMT-05:00)</p><p><strong><a href="https://emails.microsoft.com/dc/e_4JGRIDqcoiTU1HR-giCWWkyCmeORqUCO4pEjpDTdfUAbI9EPP0X5-moP6xPgKjKX52206ZuQDq3Jxh6VjfZjDGpbRQ_8Z8KXQdZH3cNMVBwjB8-7_wusLZALSepLj0Yjnb9b5I54dZiXJiZRp-nFTbDUTzEqC2g8xfW_ndfHQ=/MTU3LUdRRS0zODIAAAGfMrRX2EHwiTvxO1jsl0DzU-7tiQN5O55u6F5XmQlmLiwQR0uMp_xgvQykpAwb_JlWYeJYm7I=">Register now</a></strong></p><div><hr></div><p><strong>Dive into a simulation of Microsoft 365 Defender and Microsoft Sentinel</strong></p><p>Wednesday, February 04, 2026, 11:00 AM&#8201;&#8211;&#8201;6:00 PM (GMT-05:00)</p><p><strong><a href="https://emails.microsoft.com/dc/e_4JGRIDqcoiTU1HR-giCWWkyCmeORqUCO4pEjpDTdfgapNXlgodXTytVwmP7Uc6Au-MiU7e55Hukhy-Alfylvxs0wujmB_VlMvt3yd-_c4wpI4lEr-zRB1am5Dh-ltFZHSSCd4YJGEOq_x17euwAk3paj2UKZ67cO6a-kbSje8=/MTU3LUdRRS0zODIAAAGfMrRX2EHwiTvxO1jsl0DzU-7tiQN5O55u6F5XmQlmLiwQR0uMp_xgvQykpAwb_JlWYeJYm7I=">Register now</a></strong></p><p></p><div><hr></div><p><em><strong>General:</strong></em></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/18/ambient-and-autonomous-security-for-the-agentic-era/">Microsoft Ignite: &#8203;&#8203;Ambient and autonomous security for the agentic era&#8203;&#8203; | Microsoft Security Blog</a></p></li><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/03/sesameop-novel-backdoor-uses-openai-assistants-api-for-command-and-control/">SesameOp: Novel backdoor uses OpenAI Assistants API for command and control | Microsoft Security Blog</a></p></li><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/12/02/how-to-build-forward-thinking-cybersecurity-teams-for-tomorrow/">How to build forward-thinking cybersecurity teams for tomorrow | Microsoft Security Blog</a></p></li></ul><p><em><strong>AI Security:</strong></em></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/04/learn-what-generative-ai-can-do-for-your-security-operations-center-soc/">&#8203;&#8203;Learn what generative AI can do for your security operations center | Microsoft Security Blog</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/microsoft-entra-what%E2%80%99s-new-in-secure-access-on-the-ai-frontier/4468732">Microsoft Entra: What&#8217;s New in Secure Access on the AI Frontier</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/riding-the-ai-wave-how-microsoft-entra-is-evolving-for-the-agentic-era/4460536">Riding the AI Wave: How Microsoft Entra is Evolving for the Agentic Era</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/defender-for-ai-services-threat-protection-and-ai-red-team-workshop/4464771">Defender for AI services: Threat Protection and AI red team workshop</a></p></li></ul><p><em><strong>Azure Security &amp; Defender for Cloud News:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/microsoft-defender-for-cloud-innovations-at-ignite-2025/4469386">Microsoft Defender for Cloud Innovations at Ignite 2025</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/announcing-microsoft-cloud-security-benchmark-v2-public-preview/4468523">Announcing Microsoft cloud security benchmark v2 (public preview)</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/fast-start-checklist-for-microsoft-defender-cspm-from-enablement-to-best-practic/4467465">Fast-Start Checklist for Microsoft Defender CSPM: From Enablement to Best Practices</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftdefendercloudblog/unlocking-business-value-microsofts-dual-approach-to-ai-for-security-and-securit/4466811">Unlocking Business Value: Microsoft&#8217;s Dual Approach to AI for Security and Security for AI</a></p></li><li><p><a href="https://aka.ms/MDCNewsBlog1">Unlocking Business Value: Microsoft&#8217;s Dual Approach to AI for Security and Security for AI</a></p><p><a href="https://aka.ms/MDCNewsBlog2">Fast-Start Checklist for Microsoft Defender CSPM: From Enablement to Best Practices</a></p><p><a href="https://aka.ms/MDCNewsBlog3">Announcing Microsoft cloud security benchmark v2 (public preview)</a></p><p><a href="https://aka.ms/MDCNewsBlog4">Microsoft Defender for Cloud Innovations at Ignite 2025</a></p><p><a href="https://aka.ms/MDCNewsBlog5">Defender for AI services: Threat protection and AI red team workshop</a></p></li></ul><p><em><strong>Purview - Compliance &amp; Governance:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/azurepurviewblog/consolidate--conquer-driving-business-transformation-with-integrated-security-pa/4466867">Consolidate &amp; Conquer: Driving Business Transformation with Integrated Security (Part 1 of 2) | Microsoft Community Hub</a></p></li></ul><p><em><strong>Device Management &amp; Protection (Intune):</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftintuneblog/whats-new-in-microsoft-intune-at-ignite/4471043">What&#8217;s new in Microsoft Intune at Ignite</a></p></li></ul><p><em><strong>Microsoft Entra:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/enhance-protection-of-microsoft-entra-id-authentication-by-blocking-external-scr/4435200">Enhance protection of Microsoft Entra ID authentication by blocking external script injection</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/building-defense-in-depth-simplifying-identity-security-with-new-partner-integra/4468733">Building defense in depth: Simplifying identity security with new partner integrations</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoft-entra-blog/driving-cloud-first-identity-user-soa-is-now-public-preview-and-group-soa-is-gen/4462425">Driving cloud-first identity: User SOA is now Public Preview and Group SOA is Generally Available</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/platform-sso-for-macos/4468070">Platform SSO for macOS</a></p></li></ul><p><em><strong>Threat Intelligence:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/defenderthreatintelligence/what%E2%80%99s-new-at-ignite-powerful-enhancements-in-unified-threat-intelligence/4470818">What&#8217;s New at Ignite: Powerful Enhancements in Unified Threat Intelligence</a></p></li></ul><p><em><strong>Copilot for Security:</strong></em></p><ul><li><p><a href="https://www.microsoft.com/en-us/security/blog/2025/11/18/agents-built-into-your-workflow-get-security-copilot-with-microsoft-365-e5/">Agents built into your workflow: Get Security Copilot with Microsoft 365 E5 | Microsoft Security Blog</a></p></li></ul><p><em><strong>Defender XDR &amp; Sentinel:</strong></em></p><ul><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/ignite-2025-whats-new-in-microsoft-defender/4469996">Ignite 2025: What&#8217;s new in Microsoft Defender?</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/new-compliance-solutions-in-microsoft-sentinel-hipaa--gdpr-reports/4470452">New Compliance Solutions in Microsoft Sentinel: HIPAA &amp; GDPR Reports | Microsoft Community Hub</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/ignite-2025-new-microsoft-sentinel-connectors-announcement/4454613">Ignite 2025: New Microsoft Sentinel Connectors Announcement</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/detect-more-spend-less-the-future-of-threat-intelligence-correlation/4468661">Detect more, spend less: the future of threat intelligence correlation</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/operationalizing-the-sentinel-data-lake-a-practitioner%E2%80%99s-guide/4466042">Operationalizing the Sentinel data lake: A Practitioner&#8217;s Guide</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/automating-ioc-hunts-in-microsoft-sentinel-data-lake/4467113">Automating IOC hunts in Microsoft Sentinel data lake</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftsentinelblog/what%E2%80%99s-new-in-microsoft-sentinel-november-2025/4466061">What&#8217;s New in Microsoft Sentinel: November 2025</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/security-copilot-for-soc-bringing-agentic-ai-to-every-defender/4470187">Security Copilot for SOC: bringing agentic AI to every defender</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/enhancing-visibility-into-your-identity-fabric-with-microsoft-defender/4470662">Enhancing visibility into your identity fabric with Microsoft Defender</a></p></li><li><p><a href="https://techcommunity.microsoft.com/blog/microsoftthreatprotectionblog/detect-more-spend-less-the-future-of-threat-intelligence-correlation/4468778">Detect more, spend less: the future of threat intelligence correlation</a></p></li></ul><h2>Watch the live replay</h2><div id="youtube2-2nD0DbVvfdg" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;2nD0DbVvfdg&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/2nD0DbVvfdg?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div>]]></content:encoded></item><item><title><![CDATA[Cert till it Hurts!]]></title><description><![CDATA[Because the learn is part of the burn!]]></description><link>https://www.microsoftsecurityinsights.com/p/cert-till-it-hurts</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/cert-till-it-hurts</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Tue, 30 Dec 2025 21:05:54 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!L8ga!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Because the learning doesn&#8217;t stop! Got it out of the way before it expired on Jan 4th. It made me feel less like a lazy bum over the holidays LOL. It is the first small step for a TON of items that I want to add to my SME toolbelt in 2026.</p><p><strong>#Sentinel</strong> <strong>#XDR</strong> <strong>#SecurityInsightPodcast</strong> <strong>#AI</strong> <strong>#AISecurity</strong> <strong>#Copilot</strong> <strong>#SecurityCopilot</strong> <strong>#MicrosoftSecurity</strong> <strong>#SentinelMCP</strong> <strong>#SentinelGraph</strong> <strong>#Sentineldatalake</strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!L8ga!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!L8ga!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 424w, https://substackcdn.com/image/fetch/$s_!L8ga!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 848w, https://substackcdn.com/image/fetch/$s_!L8ga!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 1272w, https://substackcdn.com/image/fetch/$s_!L8ga!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!L8ga!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png" width="1173" height="907" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:907,&quot;width&quot;:1173,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:379147,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.microsoftsecurityinsights.com/i/182997513?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!L8ga!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 424w, https://substackcdn.com/image/fetch/$s_!L8ga!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 848w, https://substackcdn.com/image/fetch/$s_!L8ga!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 1272w, https://substackcdn.com/image/fetch/$s_!L8ga!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3b93a674-8750-4ffc-8a57-d3171ecd8cf7_1173x907.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>e</strong></p>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Episode 282: Quantum Leaps and Zero-Day Zealots]]></title><description><![CDATA[Missing Homework]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-a2f</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-a2f</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Fri, 19 Dec 2025 00:13:32 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/182040372/09ba00722963323ea3d64ad4efa67505.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Join our hosts December 18th, 2025, as they dive into the electrifying world of Microsoft Security&#8217;s latest breakthroughs. This episode unpacks real-world triumphs in thwarting sophisticated AI-driven phishing swarms, and debates the hottest zero-day exploits shaking the headlines. Packed with insider tips this is your must-listen guide to staying light-years ahead in the cyber arms race.</p><p>This episode, we welcome back Alistair Pugin to talk Agent security.</p><h2>Show Notes/Links</h2><ul><li><p><strong>Alistair Pugin on LinkedIn:</strong> <a href="https://www.linkedin.com/in/alistairpugin/">https://www.linkedin.com/in/alistairpugin/</a></p></li><li><p><strong>Learn about Data Security Posture Management for AI:</strong> <a href="https://learn.microsoft.com/en-us/purview/dspm-for-aiList of AI sites supported by">https://learn.microsoft.com/en-us/purview/dspm-for-aiList of AI sites supported by </a></p></li><li><p><strong>Microsoft Purview Data Security Posture Management (DSPM) and DSPM for AI:</strong> <a href="https://learn.microsoft.com/en-us/purview/ai-microsoft-purview-supported-sites">https://learn.microsoft.com/en-us/purview/ai-microsoft-purview-supported-sites</a></p></li><li><p><strong>Permissions for Data Security Posture Management for AI:</strong> <a href="https://learn.microsoft.com/en-us/purview/ai-microsoft-purview-permissions">https://learn.microsoft.com/en-us/purview/ai-microsoft-purview-permissions</a></p></li><li><p><strong>MITRE ATLAS:</strong> <a href="https://atlas.mitre.org/">https://atlas.mitre.org/</a></p><p></p></li></ul>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Episode 281: Jingle Hack '25: Elves on the Shelf (Watching Your Wi-Fi)]]></title><description><![CDATA[Hack the halls, not your network]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-daf</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-daf</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Fri, 05 Dec 2025 00:38:40 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/180753224/3351fd685a7674fa56ef8c6a255a4091.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>After a pre-Ignite cliffhanger, we welcome back the illustrious James Key. This episode, James is back to fill us in on the Ignite announcements around Security Copilot that he couldn&#8217;t talk about last time.</p><h3>Show Notes/Links</h3><ul><li><p>Learn about Security Copilot inclusion in Microsoft 365 E5 subscription <a href="https://learn.microsoft.com/en-us/copilot/security/security-copilot-inclusion">https://learn.microsoft.com/en-us/copilot/security/security-copilot-inclusion</a></p></li><li><p>Microsoft 365 adds advanced Microsoft Intune solutions at scale <a href="https://techcommunity.microsoft.com/blog/microsoftintuneblog/microsoft-365-adds-advanced-microsoft-intune-solutions-at-scale/4474272">https://techcommunity.microsoft.com/blog/microsoftintuneblog/microsoft-365-adds-advanced-microsoft-intune-solutions-at-scale/4474272</a></p></li><li><p>What is Microsoft Entra Agent ID? <a href="https://learn.microsoft.com/en-us/entra/agent-id/identity-professional/microsoft-entra-agent-identities-for-ai-agents">https://learn.microsoft.com/en-us/entra/agent-id/identity-professional/microsoft-entra-agent-identities-for-ai-agents</a></p></li><li><p>The Microsoft Security Store: <a href="https://SecurityStore.Microsoft.com">https://SecurityStore.Microsoft.com</a></p></li></ul><p></p>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Episode 280: Turkey-Day Trojans]]></title><description><![CDATA[Watch now | From Turkey-Day Trojans to AI Agents: Feast on Security, Not Breaches]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-129</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-129</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Tue, 25 Nov 2025 14:44:47 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/179925609/106a4539525f7902c6f28a79b53efb04.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>As the Thanksgiving turkey roasts and the family gathers, cybercriminals are lurking in the digital shadows, ready to crash your holiday feast. In Episode 280 of THE Security Insights Show, hosts serve up a timely platter of cybersecurity wisdom to keep your &#8220;gravy secrets&#8221;&#8212;those juicy credentials, financial data, and personal info&#8212;safe from opportunistic hackers.<br><br>Dive into the rising tide of &#8220;Turkey-Day Trojans&#8221;: sneaky malware disguised as festive deals, phishing emails from &#8220;Aunt Edna&#8221; demanding urgent wire transfers, and smart home devices turned into spy cams by unsecured Wi-Fi. We&#8217;ll unpack real-world holiday hacks, from ransomware gobbling up your shopping carts to social engineering tricks exploiting family chit-chat. Plus, get actionable Microsoft Security tips&#8212;like leveraging Defender for endpoint protection, Entra ID for secure guest access during virtual toasts, and Copilot-powered threat hunting to spot the bad stuffing before it sours the meal.<br><br>Whether you&#8217;re a CISO stress-testing your perimeter or just a home user dodging Black Friday bait, this episode arms you with the tools to feast worry-free. Tune in now on YouTube, Apple Podcasts, Spotify, or your favorite platform&#8212;because nothing ruins a holiday like a data breach on dessert. Don&#8217;t forget to subscribe for more bites of security insight!</p><p>This episode of &#8220;THE Security Insights Show&#8221; covers a range of topics, starting with personal updates and discussions about cybersecurity certifications. The hosts delve into the role of <strong>Artificial Intelligence (AI) in cybersecurity</strong>, specifically debating the necessity of learning KQL (Kusto Query Language) from scratch given the advent of natural language to KQL models (16:01). They discuss the importance of understanding underlying data and language nuances even with AI assistance (18:56).</p><p>The conversation then pivots to <strong>key announcements from Microsoft Ignite</strong>, including:</p><ul><li><p><strong>Work IQ</strong>: An intelligent layer that enhances productivity by connecting organizational and personal data, enabling AI-driven insights and recommendations within Microsoft 365 applications (31:31).</p></li><li><p><strong>Proactive Attack Disruption and Predictive Shielding</strong>: Microsoft&#8217;s new capabilities to anticipate attacker moves during ongoing attacks, dynamically hardening targets in real-time (35:59).</p></li><li><p><strong>Expanded Automatic Attack Disruption</strong>: This feature extends to work across third-party services like AWS, Okta, and Proofpoint, allowing Microsoft Defender to take decisive actions on external systems even if the threat originates from a non-Microsoft system (39:06).</p></li><li><p><strong>Rebranding of Defender XDR to Borg XDR</strong>: Indicating a consolidation of more Defender for Cloud functionality and assimilation of Sentinel into the unified Defender portal (42:00).</p></li><li><p><strong>Native Sysmon in Windows 11</strong>: A significant announcement for security professionals (42:35).</p></li></ul>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Episode 279: Security Copilot Updates]]></title><description><![CDATA[AI, Agents, and the Art of Not Panicking: Security Copilot Saves the Day (Again)]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-796</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-796</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Fri, 07 Nov 2025 00:28:11 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/178227954/00d3dfb9bbf5c96d4ca385309babf23e.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>In this electrifying episode, we sit down with James Key, Principal Product Manager for Microsoft Security Copilot, to unpack the groundbreaking advancements shaping the future of AI-driven security. With over nine years of expertise in cloud architecture, technical training, and product innovation, James is at the forefront of empowering security teams worldwide through intelligent, partner-led solutions.<br><br>As cyber threats evolve at breakneck speed, Microsoft Security Copilot is supercharging defenses with its latest fall updates. James breaks down the integration with the new Sentinel data lake and graph, enabling seamless data querying and real-time threat hunting like never before. We&#8217;ll explore the debut of ready-made and custom agents that automate complex workflows, from incident response to vulnerability management, freeing up pros to focus on strategy.<br><br>But it&#8217;s not just tech&#8212;James shares how the newly launched Microsoft Security Store is uniting partners in a bold ecosystem for innovation, fostering collaborative AI tools tailored to enterprise needs.</p><h3>Links/Notes</h3><ul><li><p><strong>Microsoft Security Store:</strong> <a href="https://securitystore.microsoft.com/agents">https://securitystore.microsoft.com/agents</a></p></li><li><p><strong>Agent YAML Builder:</strong> <a href="https://github.com/rod-trent/JunkDrawer/tree/main/AgentBuilder">https://github.com/rod-trent/JunkDrawer/tree/main/AgentBuilder</a></p></li><li><p><strong>Microsoft Ignite Security Copilot sessions:</strong> <a href="https://ignite.microsoft.com/en-US/sessions?filter=&amp;search=Security+Copilot&amp;sortBy=relevance">https://ignite.microsoft.com/en-US/sessions?filter=&amp;search=Security+Copilot&amp;sortBy=relevance</a></p></li><li><p><strong>glueckkanja AG:</strong> <a href="https://www.linkedin.com/company/glueckkanja/">https://www.linkedin.com/company/glueckkanja/</a></p></li><li><p><strong>adaQuest:</strong> <a href="https://www.linkedin.com/company/adaquest-inc/">https://www.linkedin.com/company/adaquest-inc/</a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Episode 278: Pumpkin Patch Phishers: Carving Out Your Data This Halloween]]></title><description><![CDATA[Watch now | Picture this: It&#8217;s the witching hour of cybersecurity, where jack-o&#8217;-lanterns glow with malevolent code and candy corn conceals keyloggers.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-be4</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-be4</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Fri, 24 Oct 2025 10:54:56 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/176966957/7846fccb35afcf410feb54f5656acfee.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Picture this: It&#8217;s the witching hour of cybersecurity, where jack-o&#8217;-lanterns glow with malevolent code and candy corn conceals keyloggers. In this spine-tingling episode of The Security Insights Show, we dive headfirst into the ghoulish guts of seasonal phishing scams &#8211; those crafty creeps who lure you in with &#8220;Free Zombie Apocalypse Prep Kits&#8221; emails, only to carve up your credentials like a deranged pie maker at a harvest festival. </p><p>Join our hosts as they unmask the tricks-or-treats of spear-phishing spooks, ransomware pumpkins that explode in your inbox, and why your two-factor auth is the garlic necklace against digital Dracula. We&#8217;ll roast real-world horror stories &#8211; like the exec who traded his soul (and SSO login) for a &#8220;haunted house discount&#8221; &#8211; and arm you with tricks to keep your data from doing the monster mash. </p><p>This episode of &#8220;THE Security Insights Show&#8221; discusses the <strong>risks and security challenges associated with artificial intelligence (AI)</strong>, particularly concerning phishing scams during the Halloween season (0:21). The hosts, Rodney and Franklin, touch on various aspects of AI, its adoption, and the evolving landscape of cybersecurity.</p><p>Key discussion points include:</p><ul><li><p><strong>The hosts&#8217; return and show changes:</strong> Rodney and Franklin discuss their return to the show after a summer break, moving to a bi-weekly Thursday schedule to allow more time for content creation and guest planning (1:02-6:54).</p></li><li><p><strong>October as Cybersecurity Awareness Month:</strong> They emphasize the importance of cybersecurity awareness, noting a lack of guest speakers this year compared to previous years (4:17-4:33).</p></li><li><p><strong>Artificial Intelligence (AI) and its security implications:</strong> A significant portion of the discussion revolves around AI, specifically the challenges of securing and governing it (7:47). They highlight the increasing use of AI in creating sophisticated phishing campaigns and the alarming potential for &#8220;non-human entities&#8221; or &#8220;agentic offerings&#8221; to be compromised or act as &#8220;double agents&#8221; in an environment (10:10-10:57).</p></li><li><p><strong>Understanding AI architecture and threats:</strong> Franklin argues that securing AI is fundamentally about securing compute, identity, data, and networks, with the Large Language Model (LLM) being a new threat (11:31-12:29). They discuss the role of the MCP (Microsoft Collaboration Protocol) server in providing context between chatbots and data sources, acknowledging that generative AI can sometimes provide inaccurate responses (13:03-15:41).</p></li><li><p><strong>Challenges in AI security and training:</strong> The hosts express concern about the lack of fundamental understanding of AI among security professionals and the trend of training courses merely adding &#8220;with AI&#8221; to existing content without real value (28:41-31:21). They also discuss the emergence of highly specialized roles in AI security, like the &#8220;Chief Artificial Intelligence Risk Officer (CAIRO),&#8221; and the potential for a &#8220;corporate fear of missing out&#8221; driving quick, potentially insecure, AI adoption (36:06-38:29).</p></li><li><p><strong>The CISO&#8217;s role and application expectations:</strong> Franklin suggests that CISOs have the necessary tools for AI security, viewing it as another application to secure, while Rodney believes many are unprepared due to rapid adoption and an &#8220;outnumbered&#8221; feeling in defense (37:42-43:52).</p></li></ul><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Episode 277: Is this thing on???]]></title><description><![CDATA[Our Microphones Are Back On, Your Data Security Might Not Be]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-a40</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-episode-a40</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Sat, 18 Oct 2025 12:37:47 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/176486137/43ca1b022aa81716e63e17cdfdfea199.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>After the first-ever summer break, the crew is back! New crew. New format. Listen or watch to hear about what&#8217;s coming.</p><p>We also welcome <a href="https://www.linkedin.com/in/alistairpugin/">Alistair Pugin</a>. Microsoft MVP for M365 + Security, Blogger, Podcaster and Speaker.</p><h2>Key Highlights</h2><ul><li><p><strong>Return of the Show</strong> (1:38): The hosts are back after a three-month summer break, during which they experienced new jobs, roles, and duties. They thank their listeners and confirm the original cast of Edward Walton, Rod Trent, and Franklin Grimberg are back, though Brody is still on hiatus.</p></li><li><p><strong>Focus on AI and Security</strong> (0:52, 1:02): Frank highlights the current &#8220;crazy&#8221; world of AI, particularly Microsoft&#8217;s efforts to secure and manage it. He expresses concern that many people are unaware of the tools available to them.</p></li><li><p><strong>Guest Introduction - Alistair Pugan</strong> (5:57): Alistair Pugan, from Cape Town, South Africa, is introduced as an expert in compliance and information protection, having worked with Microsoft on shaping exams like SC400 and even co-designing a board game about deception.</p></li><li><p><strong>Challenges with AI Adoption</strong> (7:58): Alistair discusses the &#8220;wild wild west&#8221; of AI adoption, where organizations are indiscriminately handing out AI, and users are not following guidelines. He notes the parallel to the Google search appliance debacle of 2008, where people are finding content they shouldn&#8217;t.</p></li><li><p><strong>Microsoft&#8217;s AI Strategy and Data Training</strong> (20:08): The discussion touches on Microsoft&#8217;s stance that they do not train their AI models on customer data, emphasizing the importance of data classification for protection.</p></li><li><p><strong>Copilot as Superized Search</strong> (24:15): Alistair explains that Copilot functions as a &#8220;superized search&#8221; within the Microsoft 365 tenant, using semantic indexing and security trimming to ensure users only access data they have permissions for.</p></li><li><p><strong>Data Security Posture Management (DSPM) for AI</strong> (28:45): The hosts delve into DSPM for AI, a tool within Microsoft Purview (E3 or E5 licenses) that helps organizations monitor their AI usage. Key aspects include:</p><ul><li><p><strong>Components of Data Security</strong> (29:51): Frank and Alistair discuss how Microsoft defines data security, including information protection (sensitivity labels), data loss prevention (DLP), and insider risk management.</p></li><li><p><strong>Monitoring AI Usage</strong> (31:25): DSPM allows organizations to monitor what users are doing with AI, including AI usage reports and integration with Defender for Cloud Apps.</p></li><li><p><strong>Prompt Monitoring</strong> (32:28): It can monitor user prompts, especially for sensitive information requests (e.g., &#8220;give me the payroll for everyone&#8221;), using sensitive information types or trainable classifiers.</p></li><li><p><strong>Shadow AI Detection</strong> (33:21): DSPM helps detect &#8220;shadow AI&#8221; by monitoring when users visit or upload sensitive information to third-party AI sites like Chat GPT, Gemini, or Perplexity.</p></li><li><p><strong>Policy Automation</strong> (34:31): The tool can automatically spin up policies to detect sensitive information in AI prompts, visits to AI sites, and sensitive data uploads to AI sites.</p></li></ul></li><li><p><strong>Agent Sprawl and Non-Human Identities</strong> (15:50, 17:10): A significant concern raised is that anyone with a Microsoft 365 Copilot license can build an agent in Copilot Studio, which registers an application in Entra (Azure Active Directory) and creates &#8220;non-human identities.&#8221; This can lead to &#8220;agent sprawl&#8221; and uncontrolled API permissions if not properly managed by identity admins.</p></li><li><p><strong>Mitigating Agent Sprawl</strong> (40:03): The solution involves having an application security posture management strategy and robust application onboarding and offboarding policies, as agents are essentially applications that require permissions to interact with data.</p></li><li><p><strong>Copilot Studio Licensing</strong> (39:02): There are different licensing models for Copilot Studio: a free tenant license for building agents (for users without an M365 Copilot license) and a premium capacity license for deploying agents to users without a Copilot license.</p></li></ul>]]></content:encoded></item><item><title><![CDATA[The Microsoft Security Insights Show is Back: Spooky Season Starts with Cybersecurity Shenanigans!]]></title><description><![CDATA[Back for the Attack]]></description><link>https://www.microsoftsecurityinsights.com/p/the-microsoft-security-insights-show-70a</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-microsoft-security-insights-show-70a</guid><dc:creator><![CDATA[Rod Trent]]></dc:creator><pubDate>Thu, 09 Oct 2025 16:34:36 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/7a6740c5-b823-4ec5-adfa-4b36035b8cdd_1024x585.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hey, security squad! If you&#8217;ve been missing your weekly dose of cybersecurity wit, wisdom, and a dash of Microsoft magic, I&#8217;ve got the best news since patch Tuesday: <strong>The Microsoft Security Insights Show is roaring back to life after our first-ever summer hiatus!</strong> That&#8217;s right&#8212;after a well-deserved break to recharge (and maybe dodge a few metaphorical phishing hooks), we&#8217;re hitting the airwaves again starting next week. Mark your calendars, fortify your feeds, and get ready for episodes that&#8217;ll keep your defenses sharp and your funny bone tickled.</p><h2>What&#8217;s New in the New Season?</h2><p>We&#8217;re not just returning; we&#8217;re evolving. Episode 277 kicks things off with a fresh crew behind the scenes and a revamped format that&#8217;s punchier, more interactive, and laser-focused on delivering actionable insights you can apply <em>today</em>. Whether you&#8217;re a CISO battling enterprise threats or a home user dodging holiday hackers, we&#8217;ve got tips on Microsoft Sentinel for threat hunting, Entra ID for ironclad access, Defender for endpoint armor, Copilot for smarter security, and zero-trust principles to keep the bad guys at bay. Live streams happen every Wednesday at 5pm EST, and you can catch replays on YouTube, Spotify, Apple Podcasts, or wherever you get your pods. Pro tip: Join us live for the Q&amp;A&#8212;it&#8217;s where the real magic (and memes) happen.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>Our summer break? Let&#8217;s just say it was a plot twist even M. Night Shyamalan couldn&#8217;t dream up. We took time to reflect, collaborate, and plot world domination... er, I mean, better ways to make cybersecurity less &#8220;error 404: fun not found.&#8221; Now, we&#8217;re hungrier than ever to unpack the latest threats with humor and hustle.</p><h2>Upcoming Episodes: From Phishers to Password Purgatory</h2><p>The schedule is packed with timely, themed episodes that&#8217;ll have you laughing through the scares. Here&#8217;s a sneak peek at what&#8217;s dropping soon&#8212;because who says learning about ransomware can&#8217;t be festive?</p><ul><li><p><strong><a href="https://www.youtube.com/watch?v=-X8rgki_ybk&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F">Episode 277: &#8220;Is this thing on???&#8221; &#8211; October 16, 2025</a></strong><a href="https://www.youtube.com/watch?v=-X8rgki_ybk&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F"> </a>We&#8217;re back, baby! Tune in for the big reveal on our new crew, format tweaks, and a roadmap of cyber-adventures ahead. No guests yet&#8212;just pure, unfiltered excitement (and maybe a blooper or two). Perfect for easing back into the groove.</p></li><li><p><strong><a href="https://www.youtube.com/watch?v=s07VCT56raY&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F">Episode 278: &#8220;Pumpkin Patch Phishers: Carving Out Your Data This Halloween&#8221; &#8211; October 23, 2025</a></strong><a href="https://www.youtube.com/watch?v=s07VCT56raY&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F"> </a>Get your candy corn and credential stuffers ready! We&#8217;re diving into seasonal scams, spear-phishing horrors, ransomware ruses, and why two-factor auth is your best friend. Expect real-world chills, VPN victories, and tips to keep your data from becoming jack-o&#8217;-lantern fodder. Spooky laughs guaranteed.</p></li><li><p><strong><a href="https://www.youtube.com/watch?v=pERJkP2VlAA&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F">Episode 279: &#8220;Post-Election Password Purgatory: Who Stole the Popular Vote (and Your Login)?&#8221; &#8211; November 6, 2025</a></strong> With ballots barely boxed, we&#8217;re tackling election-season cyber chaos: credential theft, state-sponsored shenanigans, AI deepfakes, and phishing aimed at officials. Special guest <strong>Dr. Elena Voss</strong> joins to spill frontline red-team tales on voting system vulnerabilities. We&#8217;ll arm you with Sentinel smarts, Entra ID enforcements, and zero-trust tactics to protect democracy&#8212;and your logins&#8212;one laugh at a time.</p></li><li><p><strong><a href="https://www.youtube.com/watch?v=xtImKiS7M4U&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F">Episode 280: &#8220;Turkey-Day Trojans: Don&#8217;t Let Hackers Gobble Your Gravy Secrets&#8221; &#8211; November 20, 2025</a></strong><a href="https://www.youtube.com/watch?v=xtImKiS7M4U&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F"> </a>Thanksgiving threats incoming! From malware masquerading as Black Friday steals to unsecured Wi-Fi at the family feast, we&#8217;ll roast social engineering, ransomware, and smart home slip-ups. Grab your Defender for endpoint shields, Entra ID for guest access, and Copilot for quick hunts&#8212;because nothing says &#8220;happy holidays&#8221; like a hacker-free table.</p></li><li><p><strong><a href="https://www.youtube.com/watch?v=a-qIu525y5A&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F">Episode 281: &#8220;Jingle Hack &#8216;25: Elves on the Shelf (Watching Your Wi-Fi)&#8221; &#8211; December 4, 2025</a></strong><a href="https://www.youtube.com/watch?v=a-qIu525y5A&amp;embeds_referring_euri=https%3A%2F%2Fwww.microsoftsecurityinsights.com%2F"> </a>Ho ho horrors! As gifts wrap and networks unwrap, we&#8217;re sounding the alarm on holiday Wi-Fi woes, smart home invasions, and rogue access points. Tune in for festive fortification tips, firewall feasts, and reminders that cybersecurity cheer starts with a secure setup.</p></li></ul><p>And that&#8217;s just the appetizer&#8212;more episodes are cooking, with slots filling faster than a zero-day exploit. Things might shift (life in cyberland, amirite?), so check the <a href="https://www.microsoftsecurityinsights.com/p/show-schedule">official schedule</a> for the latest.</p><h2>Join the Crew&#8212;Literally!</h2><p>Got a story that screams &#8220;guest spot&#8221;? Or tips on Microsoft Security wizardry? Hit us up at <a href="mailto:securityinsights@substack.com">securityinsights@substack.com</a>&#8212;spots are vanishing quicker than unpatched vulnerabilities. In the meantime, subscribe to the newsletter, smash that follow button on your fave platform, and spread the word. Let&#8217;s make this season the most secure (and entertaining) one yet.</p><p>Stay vigilant, stay funny, and we&#8217;ll see you on the 16th. What&#8217;s your biggest cyber fear this fall? Drop it in the comments&#8212;maybe it&#8217;ll inspire the next episode!</p><p><em>&#8212;The MSI Team</em></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[ THE Security Insights Show Summer Break continues....]]></title><description><![CDATA[Don't BLINK! or you will miss the big comeback. October is around the corner and your favorite security maniacs are back...need I say more?]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-summer-ac5</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-summer-ac5</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Tue, 02 Sep 2025 19:16:21 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/72747c0f-3fc2-4004-9139-79cef202cac6_832x1248.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Happy Tuesday All, </p><p>Monday was a holiday to do NO LABOR! Wait that&#8217;s not what that holiday means&#8230;oh well. We are back on a Tuesday!<br><br>We enjoyed this recent blog post from Microsoft Threat Intel team detailing a threat actors TTPs to compromise cloud-based data storage. What I found interesting is their on-prems to cloud lateral movements. Across multiple domains and across multiple Entra ID tenants within a single customer. A lot of you deal with this due to your business conducting multiple M&amp;As over many years. Just goes to show the basics matter, hygiene matters, full visibility which mean full coverage matters. <em>(off soap box)</em></p><p>Also, had a fun time watching a YouTube video of <a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.com%2FSpecterOps%2FAzureHound&amp;data=05%7C02%7Cedwalton%40microsoft.com%7C6855a80e635945228d9e08dde7004852%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C638920710625828134%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;sdata=XrM%2FR1Wyt1QFT30TsfwvDxCtdwZ9qnRgnM7BGpxKxas%3D&amp;reserved=0">AzureHound</a> being used to help easily identify relationships and permissions in an Azure environment. For example, to locate a user who had elevated privileges on a non-human identity (Service Principle) which had assigned global admin &#128580;&#128528;&#128529;. This was one of the tools the threat actors used for recon.</p><p>Hope everyone has a great short work week and enjoys the read! <a href="https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.microsoft.com%2Fen-us%2Fsecurity%2Fblog%2F2025%2F08%2F27%2Fstorm-0501s-evolving-techniques-lead-to-cloud-based-ransomware%2F&amp;data=05%7C02%7Cedwalton%40microsoft.com%7C6855a80e635945228d9e08dde7004852%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C638920710625846923%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&amp;sdata=XOByDmF%2Fj3Clh%2Fuglo31pBS8r7kvfnkuAL0lr8YFgsM%3D&amp;reserved=0">Click Here for Blog</a></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>In the meantime, we will occasionally (randomly) post tips, tricks, news and some of our favorite words of wisdom aka &#8220;<em><strong>Ed&#8217;s Edibles</strong></em>&#8221;,<em> <strong>Rod Rant&#8217;s</strong></em><strong>, </strong><em><strong>Frank&#8217;s Fumble&#8217;s</strong></em><strong> </strong>and <em><strong>Brodie&#8217;s Babble&#8217;s</strong></em> until our return.</p><h1><em><strong>Ed&#8217;s Edibles:</strong></em></h1><ul><li><p>Aim to be effective, but unpredictable. That is, you want to act in a way that AIs have trouble modeling or imitating. That makes you irreplaceable.</p></li></ul><h1><em><strong>Rod Rants:</strong></em></h1><ul><li><p>If you think someone is normal, you don&#8217;t know them very well. Normalcy is a fiction. Your job is to discover their weird genius.</p><h1><em><strong>Brodie Babbles:  </strong></em></h1></li><li><p>When someone texts you they are running late, double the time they give you. If they say they&#8217;ll be there in 5, make that 10; if 10, it&#8217;ll be 20; if 20, count on 40.</p></li></ul><h1><em><strong>Frank&#8217;s Fumbles:  </strong></em></h1><ul><li><p>You can become the world&#8217;s best in something primarily by caring more about it than anyone else.</p></li></ul><h2><strong>Other Security Notes and News:</strong></h2><p><strong><a href="https://therecord.media/sweden-municipalities-ransomware-software">&#8288;Hundreds of Swedish municipalities impacted by suspected ransomware attack on IT supplier&#8288;</a></strong> (The Record)</p><p><strong><a href="https://geekspin.co/google-issues-warning-for-gmail-users/">&#8288;Google issues emergency warning for all Gmail users&#8288;</a></strong> (Geekspin)</p><p><strong><a href="https://www.securityweek.com/transunion-data-breach-impacts-4-4-million/">&#8288;TransUnion Data Breach Impacts 4.4 Million&#8288;</a></strong> (Security Week)</p><p><strong><a href="https://www.infosecurity-magazine.com/news/npm-package-hijacked-ai-malware/">&#8288;Npm Package Hijacked to Steal Data and Crypto via AI-Powered Malware&#8288;</a></strong> (Infosecurity Magazine)</p><p><strong><a href="https://www.bankinfosecurity.com/us-senators-call-for-details-aflac-data-breach-a-29319">&#8288;US Senators Call for Details of Aflac Data Breach&#8288;</a></strong> (Bank Infosecurity)</p><p><strong><a href="https://therecord.media/ransomware-gang-takedown-proliferation">&#8288;Ransomware gang takedowns causing explosion of new, smaller groups&#8288;</a></strong> (The Record)</p><p><strong><a href="https://www.theregister.com/2025/08/28/fbi_dutch_cops_seize_veriftools/">&#8288;FBI, Dutch cops seize fake ID marketplace, servers &#8288;</a></strong> (The Register)</p><p><strong><a href="https://www.hipaajournal.com/florida-rule-improve-healthcare-data-breach-transparency/">&#8288;Florida Considers Rule to Improve Healthcare Data Breach Transparency&#8288;</a></strong> (The HIPPA Journal)</p><p><strong><a href="https://krebsonsecurity.com/2025/08/affiliates-flock-to-soulless-scam-gambling-machine/">&#8288;Affiliates Flock to &#8216;Soulless&#8217; Scam Gambling Machine&#8288;</a></strong> (Krebs on Security)</p><h2></h2><h3></h3><p><a href="https://aka.ms/JOIN-WEBINAR-19-MICROSOFT-AZURE-NETWORK-SECURITY"><br></a></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[THE Security Insights Show Summer Break!]]></title><description><![CDATA["Give me the MIC. If it's loud I'll will blow it, if not, then into the crowd I'll throw it." - Eric B. and Rakim.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-summer-60e</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-summer-60e</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Tue, 26 Aug 2025 19:55:02 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/ec504434-1a2e-4b07-a01d-f3a72384f0c7_832x1248.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7XNB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7XNB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 424w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 848w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1272w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7XNB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp" width="182" height="180" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:180,&quot;width&quot;:182,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:7656,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.microsoftsecurityinsights.com/i/171283932?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!7XNB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 424w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 848w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1272w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p>Howdy, Howdy, Podcast family. Yet another week has BLOWN by. We were like WOW, September is almost upon us! Never the one to sit idle, we will start show planning next month so we can reappear like magic in October. The ideas are starting to flow and before you know it will be time for the show. You see what we did there. LOL. Everyone please continue to enjoy not having to hear our annoying voices because we shall return to re-issue out ear worms.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>In the meantime, we will occasionally (randomly) post tips, tricks, news and some of our favorite words of wisdom aka &#8220;<em><strong>Ed&#8217;s Edibles</strong></em>&#8221;,<em> <strong>Rod Rant&#8217;s</strong></em><strong>, </strong><em><strong>Frank&#8217;s Fumble&#8217;s</strong></em><strong> </strong>and <em><strong>Brodie&#8217;s Babble&#8217;s</strong></em> until our return.</p><h1><em><strong>Ed&#8217;s Edibles:</strong></em></h1><ul><li><p>Admitting that &#8220;I don&#8217;t know&#8221; at least once a day will make you a better person.</p></li></ul><h1><em><strong>Rod Rants:</strong></em></h1><ul><li><p>Try to define yourself by what you love and embrace, rather than what you hate and refuse.</p><h1><em><strong>Brodie Babbles:  </strong></em></h1></li><li><p><em>The best gardening advice: find what you can grow well and grow lots and lots of it.</em></p></li></ul><h1><em><strong>Frank&#8217;s Fumbles:  </strong></em></h1><ul><li><p><em>Never hesitate to invest in yourself&#8212;to pay for a class, a course, a new skill. These modest expenditures pay outsized dividends.</em></p></li></ul><h2><strong>Microsoft Security Nibbles:</strong></h2><ul><li><p><a href="https://softwareanalyst.substack.com/p/from-pipeline-to-platform-the-cribl">From Pipeline to Platform: The Cribl Success Story &amp; the New Frontier of Security Data</a></p><p><a href="https://softwareanalyst.substack.com/p/the-future-of-the-soc-how-microsoft?utm_source=post-email-title&amp;publication_id=114363&amp;post_id=169062787&amp;utm_campaign=email-post-title&amp;isFreemail=true&amp;r=31oewt&amp;triedRedirect=true&amp;utm_medium=email">The Future of the SOC: How Microsoft Sentinel Is Converging SIEM and Data Lake Architectures</a></p></li></ul><p></p><h2><strong>Other Security Notes and News:</strong></h2><p><strong><a href="https://www.techzine.eu/news/security/133909/intel-data-breach-employee-data-could-be-accessed-via-api/">&#8288;Intel data breach: employee data could be accessed via API &#8288;</a></strong>(Techzine Global)</p><p><strong><a href="https://gbhackers.com/north-korean-kimsuky-hackers-use-github/">&#8288;North Korean Kimsuky Hackers Use GitHub to Target Foreign Embassies with XenoRAT Malware&#8288;</a></strong> (GB Hackers)</p><p><strong><a href="https://www.darkreading.com/vulnerabilities-threats/internet-wide-vulnerability-giant-ddos-attacks">&#8288;Internet-wide Vulnerability Enables Giant DDoS Attacks&#8288;</a></strong> (Dark Reading)</p><p><strong><a href="https://therecord.media/drug-development-innotiv-ransomware-sec">&#8288;Drug development company Inotiv reports ransomware attack to SEC&#8288;</a></strong> (The Record)</p><p><strong><a href="https://therecord.media/uk-agrees-drop-apple-encryption">&#8288;UK &#8216;agrees to drop&#8217; demand over Apple iCloud encryption, US intelligence head claims&#8288;</a></strong> (The Record)</p><p><strong><a href="https://therecord.media/ransomware-gang-masking-pipemagic-backdoor">&#8288;Ransomware gang masking PipeMagic backdoor as ChatGPT desktop app: Microsoft&#8288;</a></strong> (The Record)</p><p><strong><a href="https://www.bleepingcomputer.com/news/security/ermac-android-malware-source-code-leak-exposes-banking-trojan-infrastructure/">&#8288;ERMAC Android malware source code leak exposes banking trojan infrastructure&#8288;</a></strong> (Bleeping Computer)</p><p><strong><a href="https://www.bleepingcomputer.com/news/security/nebraska-man-gets-1-year-in-prison-for-35m-cryptojacking-scheme/">&#8288;Nebraska man gets 1 year in prison for $3.5M cryptojacking scheme&#8288;</a></strong> (Bleeping Computer)</p><p><strong><a href="https://www.infosecurity-magazine.com/news/south-yorkshire-police-deletes/">&#8288;South Yorkshire Police Deletes 96,000 Pieces of Digital Evidence &#8288;</a></strong> (Infosecurity Magazine)</p><h2></h2><h3><strong>MSFT Security Happenings:</strong></h3><p>Join us for this webinar to learn how <strong>Azure Web Application Firewall (WAF)</strong> is advancing to address the dynamic threat landscape facing modern web applications. We&#8217;ll walk through recent updates that enhance protection, improve manageability, and support evolving application architectures. This session is ideal for anyone looking to stay informed on the latest developments and best practices for securing web applications with Azure WAF.<br><br>This event will take place on Thursday, August 28, 2025 at 08:00 PT. At that time, click here to join: <a href="https://aka.ms/JOIN-WEBINAR-18-MICROSOFT-AZURE-NETWORK-SECURITY">https://aka.ms/JOIN-WEBINAR-18-MICROSOFT-AZURE-NETWORK-SECURITY</a><br>To stay informed about future webinars and other events, join our Security Community at <a href="https://aka.ms/SecurityCommunity">https://aka.ms/SecurityCommunity</a>.</p><p></p><p><strong>Azure Firewall </strong>is a managed, cloud-based network security service that protects your Azure Virtual Network resources. Join us for this webinar to explore the evolving landscape of cloud network security and how Azure Firewall continues to adapt to meet emerging challenges. This session will highlight the latest enhancements and capabilities designed to strengthen your security posture and provide greater visibility into your network environment. Whether you're new to Azure Firewall or looking to stay current, this session will equip you with the insights needed to protect your cloud workloads effectively.<br><br>This event will take place on Wednesday, September 10, 2025 at 8:00AM PT. At that time, click here to join:<br><a href="https://aka.ms/JOIN-WEBINAR-19-MICROSOFT-AZURE-NETWORK-SECURITY">https://aka.ms/JOIN-WEBINAR-19-MICROSOFT-AZURE-NETWORK-SECURITY<br></a></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[The Security Insights Show Summer Break!]]></title><description><![CDATA[Blue Moon on Monday! We miss our listeners, but we are enjoying the time off even more. LOLOL. Just kidding! We would like to say thanks to everyone for your understanding as we put the show on break.]]></description><link>https://www.microsoftsecurityinsights.com/p/the-security-insights-show-summer</link><guid isPermaLink="false">https://www.microsoftsecurityinsights.com/p/the-security-insights-show-summer</guid><dc:creator><![CDATA[Edward Walton]]></dc:creator><pubDate>Mon, 18 Aug 2025 16:53:07 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/cc059262-2c20-4852-8140-75540532997c_832x1248.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7XNB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7XNB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 424w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 848w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1272w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7XNB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp" width="182" height="180" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:180,&quot;width&quot;:182,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:7656,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.microsoftsecurityinsights.com/i/171283932?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!7XNB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 424w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 848w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1272w, https://substackcdn.com/image/fetch/$s_!7XNB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf53c0d6-d488-4f71-a226-e0161c5b7395_182x180.webp 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p>Hello Podcast Family. We won&#8217;t lie, we are having withdrawal symptoms from not producing the show, but I can tell you for sure, that having the time off is allowing us to come with some good ideas when we return. We also get time to listen to some of our favorite podcasts. Being on the other side of the MIC is a good thing.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>In the meantime, we will occasionally (randomly) post tips, tricks, news and some of our favorite words of wisdom aka &#8220;<em><strong>Ed&#8217;s Edibles</strong></em>&#8221;,<em> <strong>Rod Rant&#8217;s</strong></em><strong>, </strong><em><strong>Frank&#8217;s Fumble&#8217;s</strong></em><strong> </strong>and <em><strong>Brodie&#8217;s Babble&#8217;s</strong></em> until our return.</p><h1><em><strong>Ed&#8217;s Edibles:</strong></em></h1><p>If you loan someone $20 and you never see them again because they are avoiding paying you back, that makes it worth $20.</p><h1><em><strong>Rod Rants:</strong></em></h1><p>Your group can achieve great things way beyond your means simply by showing people that they are appreciated.</p><h1><em><strong>Brodie Babbles:  </strong></em></h1><p><em>If you repeated what you did today 365 more times, will you be where you want to be next year?</em></p><h1><em><strong>Frank&#8217;s Fumbles:  </strong></em></h1><p><em>Don&#8217;t bother fighting the old; just build the new.</em></p><h2><strong>Microsoft Security Nibbles:</strong></h2><h3><strong><a href="https://youtu.be/bWW_Iev-lxk">Azure Network Security: Exploring Azure Firewall for comprehensive threat protection</a></strong></h3><p>In this episode, host Andrew Mathu welcomes Shabaz Shaik to explore how Azure Firewall secures modern cloud networks through real-world use cases. From protecting traffic in VNET hub-and-spoke deployments and Virtual WAN (Secure Hub) architectures to enabling Forced Tunnel mode for secure internet breakout, learn how Azure Firewall&#8217;s intelligent filtering, scalable design, and advanced threat protection help organizations safeguard their workloads across hybrid and cloud environments.</p><h3><strong><a href="https://youtu.be/Uv6zowakZjQ">Advanced Threat Detection with Defender XDR Community Queries</a></strong></h3><p>Join our conversation with Product Managers Daniel Mozes and Ajaj Shaikh as they walk through Defender XDR GitHub community queries, specifically tailored to detecting and investigating email and collaboration threats. We explore examples of Advanced Hunting queries you can use to enrich your own repository, demonstrate how to apply them effectively, and highlight how you can contribute your own queries to help grow the community.</p><p></p><h3><strong><a href="https://www.youtube-nocookie.com/embed/e1iwEqUZBu8?si=F6rValqUzrPNWyI3">The Unified SecOps Experience using Microsoft Sentinel&#8217;s latest features</a></strong></h3><p>In this episode, Principal Product Manager Tiander Turpijn shares the latest updates within the Microsoft Defender XDR portal, highlighting key efficiency improvements for triage and incident investigation. We also learn more about the role of workspaces, examine activity logs and tasks, and highlight the value of using flyouts to streamline your workflow. Whether you&#8217;re new to the portal or looking to optimize your efficiency, this session will help you operationalize the XDR portal for maximum impact.</p><h3><strong><a href="https://youtu.be/z7jke2pI1eU">Shadow IT 2.0: Managing the risk of OAuth apps Explosion in the Enterprise</a></strong></h3><p>Join us as we unpack the growing risk of OAuth apps as the new Shadow IT &#8211; with users authorizing these apps to act on their behalf, often without oversight. Learn why enterprises must expand their security focus beyond devices to protect interactions with applications, see who is using which apps with what permissions, and how Microsoft Defender for Cloud Apps helps to manage and maintain the safety of these powerful integrations.</p><p></p><p></p><h2><strong>Other Security Notes and News:</strong></h2><p><strong><a href="https://www.bleepingcomputer.com/news/security/plex-warns-users-to-patch-security-vulnerability-immediately/">&#8288;Plex warns users to patch security vulnerability immediately&#8288;</a></strong> (Bleeping Computer)</p><p><strong><a href="https://www.infosecurity-magazine.com/news/cisco-critical-rce-flaw-firewall/">&#8288;Cisco Discloses Critical RCE Flaw in Firewall Management Software &#8288;</a></strong>(Infosecurity Magazine)</p><p><strong><a href="https://www.securityweek.com/critical-flaws-patched-in-rockwell-factorytalk-micro800-controllogix-products/">&#8288;Critical Flaws Patched in Rockwell FactoryTalk, Micro800, ControlLogix Products &#8288;</a></strong>(SecurityWeek)</p><p><strong><a href="https://www.cisa.gov/news-events/alerts/2025/08/14/cisa-releases-thirty-two-industrial-control-systems-advisories">&#8288;CISA Releases Thirty-Two Industrial Control Systems Advisories&#8288;</a></strong> (CISA.gov)</p><p><strong><a href="https://www.bankinfosecurity.com/hackers-breach-canadian-government-via-microsoft-exploit-a-29228">&#8288;Hackers Breach Canadian Government Via Microsoft Exploit&#8288;</a></strong> (Bank Infosecurity)</p><p><strong><a href="https://abnormal.ai/blog/compromised-police-government-email-accounts">&#8288;Compromised Government and Police Email Accounts on the Dark Web&#8288;</a></strong> (Abnormal.AI)</p><p><strong><a href="https://www.theregister.com/2025/08/15/london_telco_colts_services_disrupted/">&#8288;Telco giant Colt suffers attack, takes systems offline &#8288;</a></strong>(The Register)</p><p><strong><a href="https://focustaiwan.tw/society/202508150015">&#8288;Taiwan announces measures to protect hospitals from hackers&#8288;</a></strong> (Focus Taiwan)</p><p><strong><a href="https://hackread.com/nist-concept-paper-ai-specific-cybersecurity-framework/">&#8288;New NIST Concept Paper Outlines AI-Specific Cybersecurity Framework&#8288;</a></strong> (Hack Read)</p><p><strong><a href="https://www.reuters.com/investigates/special-report/meta-ai-chatbot-death/">&#8288;A flirty Meta AI bot invited a retiree to meet. He never made it home.&#8288;</a></strong> (Reuters)</p><p><strong><a href="https://www.theregister.com/2025/08/15/cyberattack_on_dutch_prosecution_service/">&#8288;Dutch prosecution service attack keeps speed cameras offline &#8288;</a></strong>(The Register)</p><h3><strong>MSFT Security Happenings:</strong></h3><ul><li><p>https://www.microsoft.com/en-us/security/security-insider/threat-landscape/microsoft-digital-defense-report-2024?rtc=1?rtc=1</p></li><li><p>https://techcommunity.microsoft.com/category/microsoftintune/blog/intunecustomersuccess</p></li><li><p>https://techcommunity.microsoft.com/category/microsoft-defender-for-endpoint/blog/microsoftdefenderatpblog</p></li><li><p>https://techcommunity.microsoft.com/category/microsoft-defender-for-cloud/blog/microsoftdefendercloudblog</p></li><li><p>https://techcommunity.microsoft.com/category/microsoft-sentinel/blog/microsoftsentinelb</p></li><li><p>https://techcommunity.microsoft.com/category/microsoft-defender-for-office-365/blog/microsoftdefenderforoffice365blog</p></li><li><p>https://techcommunity.microsoft.com/category/cis/blog/coreinfrastructureandsecurityblog</p></li></ul><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://www.microsoftsecurityinsights.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading THE Security Insights Show! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item></channel></rss>