Sofia Elizabella Wyciślik-Wilson

Microsoft fixes Azure BingBang bug that allowed Bing search hijacking and leaked private data

BingBang

Microsoft has addressed a serious flaw in Azure Active Directory which was dubbed BingBang by the security researchers that discovered it.

The vulnerability not only made it possible to manipulate Bing search results, but also to access private data from Outlook, Office 365 and Teams. The issue stemmed from an Azure misconfiguration; it dates back to January this year, but Microsoft has only just plugged the hole.

Continue reading

Microsoft is bringing a new Registry Preview utility to PowerToys

PowerToys

This year has seen the addition of a veritable smorgasbord of tools to the PowerToys utility collection -- and the pace shows no sign of slowing. Recent arrivals include Mouse Jump and Paste As Plain Text, and next in line is a handy registry utility.

PowerToys developers are currently working on a new tool called Registry Preview. Designed with power users in mind, this upcoming module will make it possible to preview the effects of importing a .reg file into the registry as well as providing registry editing options.

Continue reading

Microsoft is preparing to bring ads to AI-powered Bing Chat

Bing Chat

In a move that will come as a surprise to just about no one, Microsoft has announced that it is "exploring" the idea of adding advertising to its GPT-4-based Bing Chat.

The company is framing the addition of ads to the AI-powered chat bot as a means of "driving more traffic and value to publishers from the new Bing". Microsoft says that it is seeking to do this by, among other things, "pioneering the future of advertising".

Continue reading

Microsoft Defender caught issuing false warnings about safe URLs

Microsoft Defender on a laptop

Microsoft has confirmed an issue with Defender which resulted in users being shown warnings about URLs that were entirely safe. The emails advised admins that "a potentially malicious URL click was detected", with affected users complaining that legitimate URLs, such as Zoom meeting links, were being flagged up as dangerous.

In addition to the false positives, the "View alerts" link included in the warning emails sent out to admins failed to provide any further information that could prove useful.

Continue reading

Spotify launches powerful new playlist feature called Niche Mixes

Spotify on mobile with earphones

Spotify has launched a new personalized playlist option which gives users a unique way to create mixes to suite any mood, occasion or activity.

The company describes Niche Mixes as "a set of personalized playlists that combines all that our Mixes offer in a playful way". What this means in practice is that you can search for an "activity, vibe or aesthetic" (running, 80s, meditative, for instance), add the word "mix", and you'll be provided with a custom playlist to suit.

Continue reading

Microsoft's Windows 12 plans revealed

Windows 12

Adoption of Windows 11 may well be much slower than Microsoft would have hoped or expected, but this isn't stopping the company forging ahead with its successor. The project is currently dubbed CorePC, but it is being referred to by many as -- naturally -- Windows 12.

What can be expected from Windows 12? Leaks from sources close to the company mean that plans for the next generation of the operating system have been exposed. Predictably, Microsoft is said to be leaning heavily on AI as it looks to modernize Windows. There is also a strong focus on security and faster delivery of updates on the cards.

Continue reading

Microsoft releases KB5023778 update for Windows 11 bringing fixes, taskbar improvements and Start menu notifications

Windows 11 keyboard

Microsoft has released a new cumulative update for Windows 11 22H2 that sees the arrival of Microsoft account notifications in the Start menu. There are also new features and improvements in Microsoft Defender for Endpoint.

The KB5023778 update is a preview of the update that will be released more widely next Patch Tuesday, and as such it is an optional update that you will need to manually install. Installing KB5023778 not only adds Start menu features, but also updates the taskbar search box, adds new functionality and fixes a large number of issues that have been found in Windows 11.

Continue reading

Microsoft has rebuilt Teams from the ground up to make it faster and less resource-hungry

Avatars for Microsoft Teams

Microsoft has launched a public preview of the new Microsoft Teams app for Windows. The app is the result of a "reimagining of Teams from the ground up", with the focus very much being on performance. It is being heralded as "the new era of Microsoft Teams" and sees the app not only performing better, but also being simplified to improve ease-of-use.

At the same time, the company has also started the rollout of Avatars for Microsoft Teams. The new feature gives users a different way to present themselves in online meetings -- a highly customizable 3D avatar instead of video.

Continue reading

Elon Musk says that only verified (i.e. paying) Twitter users will be able to vote in polls and appear on the For You tab

Twitter logo next to dollars and smartphone

Having tried various tactics to get Twitter users to pay for a Twitter Blue subscription, Elon Musk is now trying something new -- confiscation.

Having tried bribing users with Blue-exclusive features, and threatening non-subscribers with stripping them of verified status, the latest announcement sees Musk promising to take features away from anyone who doesn't pay up. Specifically, he warns that non-verified users will not be eligible to appear in the suggestions on the For You Tab, and they also will not be able to vote in polls on Twitter.

Continue reading

Microsoft releases emergency updates to address cropped screengrab privacy flaws

Scissors

Following the discovery of serious vulnerabilities in the Snipping Tool app for Windows 11 and Snip & Sketch in Windows 10, Microsoft has released out-of-band updates to plug the security holes.

The flaws are similar to the recently discovered aCropalypse bug affecting Pixel mobiles, making it possible to "uncrop" cropped images and potentially expose sensitive information. Having briefly tested updates with Windows Insiders, Microsoft has now made fixes available to all Windows 10 and Windows 11 users.

Continue reading

Microsoft is working on a new way for you to clean up the Windows 11 taskbar and system tray

Smashed clock

Very much at the heart of Windows 11, the taskbar has been one of the most controversial and disappointing elements of Windows 11. One of the biggest complaints users have is that it cannot be moved from the bottom of the screen, but there are also many people who are unhappy that it is busy and overpopulated.

We recently learned that Microsoft is going to introduce a new option that will enable users to display seconds in the system tray clock, but now there is good news for anyone who craves a cleaner, more minimalist look.

Continue reading

Microsoft has hidden Cloud PC references in Windows 11 as a hint of future Windows 12 features

White cloud in a pink sky

The Windows Insider program is one of the best places to gain access to the latest features and options, but there are sometimes some hidden gems that serves as signposts of what's to come. The latest Dev build is a good case in point.

References were spotted in Windows 11 build 23419 to Cloud PC thanks to the arrival of the settingshandlers_cloudpc.dll file. There are even entries in Settings that make it clear that Microsoft is betting big on Cloud PC, but it remains to be seen whether this ends up in Windows 11 or Windows 12.

Continue reading

CISA releases open source Untitled Goose Tool to detect malicious activity in Azure, Azure Active Directory and Microsoft 365 environments

CISA logo and goose

The CISA has launched a new security tool designed to help protect various Microsoft cloud services. The open source Untitled Goose Tool is available for both Windows and macOS.

The utility was developed by the US Cybersecurity & Infrastructure Security Agency in conjunction with Sandia National Laboratories. The aim of the tool is to help to detect and respond to malicious activity in Microsoft Azure, Azure Active Directory (AAD) and Microsoft 365 (M365) environments.

Continue reading

Twitter says it is stripping all verified accounts of their 'legacy' blue ticks from April

Hello, my name is...

With the chaos that has followed the arrival of Elon Musk at Twitter, it's often difficult to know which announcements to accept at face value, and which to take with a pinch of salt.

The latest announcement concerns the blue ticks used to signify verified accounts. The social platform has announced that "legacy" checkmarks (that is, those that have not been paid for) will be removed starting on April 1 -- April Fool's Day.

Continue reading

Microsoft fixes serious privacy vulnerability in Windows 11 Snipping Tool... but not for everyone

Scissors

Earlier this week we learned about a worrying security and privacy flaw in Windows 11's Snipping Tool screen capture app. The way the software saves cropped screengrabs means that it is possible to "uncrop" images, potentially exposing sensitive information.

Acting quickly to address the problem, Microsoft has fixed the vulnerability with a new update. There is just one problem -- the update is not available to everyone, leaving unknown numbers of users at risk.

Continue reading

© 1998-2024 BetaNews, Inc. All Rights Reserved. Privacy Policy - Cookie Policy.