Microsoft fixes Azure BingBang bug that allowed Bing search hijacking and leaked private data
Microsoft has addressed a serious flaw in Azure Active Directory which was dubbed BingBang by the security researchers that discovered it.
The vulnerability not only made it possible to manipulate Bing search results, but also to access private data from Outlook, Office 365 and Teams. The issue stemmed from an Azure misconfiguration; it dates back to January this year, but Microsoft has only just plugged the hole.
Microsoft is bringing a new Registry Preview utility to PowerToys
This year has seen the addition of a veritable smorgasbord of tools to the PowerToys utility collection -- and the pace shows no sign of slowing. Recent arrivals include Mouse Jump and Paste As Plain Text, and next in line is a handy registry utility.
PowerToys developers are currently working on a new tool called Registry Preview. Designed with power users in mind, this upcoming module will make it possible to preview the effects of importing a .reg file into the registry as well as providing registry editing options.
Microsoft is preparing to bring ads to AI-powered Bing Chat
In a move that will come as a surprise to just about no one, Microsoft has announced that it is "exploring" the idea of adding advertising to its GPT-4-based Bing Chat.
The company is framing the addition of ads to the AI-powered chat bot as a means of "driving more traffic and value to publishers from the new Bing". Microsoft says that it is seeking to do this by, among other things, "pioneering the future of advertising".
Microsoft Defender caught issuing false warnings about safe URLs
Microsoft has confirmed an issue with Defender which resulted in users being shown warnings about URLs that were entirely safe. The emails advised admins that "a potentially malicious URL click was detected", with affected users complaining that legitimate URLs, such as Zoom meeting links, were being flagged up as dangerous.
In addition to the false positives, the "View alerts" link included in the warning emails sent out to admins failed to provide any further information that could prove useful.
Spotify launches powerful new playlist feature called Niche Mixes
Spotify has launched a new personalized playlist option which gives users a unique way to create mixes to suite any mood, occasion or activity.
The company describes Niche Mixes as "a set of personalized playlists that combines all that our Mixes offer in a playful way". What this means in practice is that you can search for an "activity, vibe or aesthetic" (running, 80s, meditative, for instance), add the word "mix", and you'll be provided with a custom playlist to suit.
Microsoft's Windows 12 plans revealed
Adoption of Windows 11 may well be much slower than Microsoft would have hoped or expected, but this isn't stopping the company forging ahead with its successor. The project is currently dubbed CorePC, but it is being referred to by many as -- naturally -- Windows 12.
What can be expected from Windows 12? Leaks from sources close to the company mean that plans for the next generation of the operating system have been exposed. Predictably, Microsoft is said to be leaning heavily on AI as it looks to modernize Windows. There is also a strong focus on security and faster delivery of updates on the cards.
Microsoft releases KB5023778 update for Windows 11 bringing fixes, taskbar improvements and Start menu notifications
Microsoft has released a new cumulative update for Windows 11 22H2 that sees the arrival of Microsoft account notifications in the Start menu. There are also new features and improvements in Microsoft Defender for Endpoint.
The KB5023778 update is a preview of the update that will be released more widely next Patch Tuesday, and as such it is an optional update that you will need to manually install. Installing KB5023778 not only adds Start menu features, but also updates the taskbar search box, adds new functionality and fixes a large number of issues that have been found in Windows 11.
Microsoft has rebuilt Teams from the ground up to make it faster and less resource-hungry
Microsoft has launched a public preview of the new Microsoft Teams app for Windows. The app is the result of a "reimagining of Teams from the ground up", with the focus very much being on performance. It is being heralded as "the new era of Microsoft Teams" and sees the app not only performing better, but also being simplified to improve ease-of-use.
At the same time, the company has also started the rollout of Avatars for Microsoft Teams. The new feature gives users a different way to present themselves in online meetings -- a highly customizable 3D avatar instead of video.
Elon Musk says that only verified (i.e. paying) Twitter users will be able to vote in polls and appear on the For You tab
Having tried various tactics to get Twitter users to pay for a Twitter Blue subscription, Elon Musk is now trying something new -- confiscation.
Having tried bribing users with Blue-exclusive features, and threatening non-subscribers with stripping them of verified status, the latest announcement sees Musk promising to take features away from anyone who doesn't pay up. Specifically, he warns that non-verified users will not be eligible to appear in the suggestions on the For You Tab, and they also will not be able to vote in polls on Twitter.
Microsoft releases emergency updates to address cropped screengrab privacy flaws
Following the discovery of serious vulnerabilities in the Snipping Tool app for Windows 11 and Snip & Sketch in Windows 10, Microsoft has released out-of-band updates to plug the security holes.
The flaws are similar to the recently discovered aCropalypse bug affecting Pixel mobiles, making it possible to "uncrop" cropped images and potentially expose sensitive information. Having briefly tested updates with Windows Insiders, Microsoft has now made fixes available to all Windows 10 and Windows 11 users.
Microsoft is working on a new way for you to clean up the Windows 11 taskbar and system tray
Very much at the heart of Windows 11, the taskbar has been one of the most controversial and disappointing elements of Windows 11. One of the biggest complaints users have is that it cannot be moved from the bottom of the screen, but there are also many people who are unhappy that it is busy and overpopulated.
We recently learned that Microsoft is going to introduce a new option that will enable users to display seconds in the system tray clock, but now there is good news for anyone who craves a cleaner, more minimalist look.
Microsoft has hidden Cloud PC references in Windows 11 as a hint of future Windows 12 features
The Windows Insider program is one of the best places to gain access to the latest features and options, but there are sometimes some hidden gems that serves as signposts of what's to come. The latest Dev build is a good case in point.
References were spotted in Windows 11 build 23419 to Cloud PC thanks to the arrival of the settingshandlers_cloudpc.dll file. There are even entries in Settings that make it clear that Microsoft is betting big on Cloud PC, but it remains to be seen whether this ends up in Windows 11 or Windows 12.
CISA releases open source Untitled Goose Tool to detect malicious activity in Azure, Azure Active Directory and Microsoft 365 environments
The CISA has launched a new security tool designed to help protect various Microsoft cloud services. The open source Untitled Goose Tool is available for both Windows and macOS.
The utility was developed by the US Cybersecurity & Infrastructure Security Agency in conjunction with Sandia National Laboratories. The aim of the tool is to help to detect and respond to malicious activity in Microsoft Azure, Azure Active Directory (AAD) and Microsoft 365 (M365) environments.
Twitter says it is stripping all verified accounts of their 'legacy' blue ticks from April
With the chaos that has followed the arrival of Elon Musk at Twitter, it's often difficult to know which announcements to accept at face value, and which to take with a pinch of salt.
The latest announcement concerns the blue ticks used to signify verified accounts. The social platform has announced that "legacy" checkmarks (that is, those that have not been paid for) will be removed starting on April 1 -- April Fool's Day.
Microsoft fixes serious privacy vulnerability in Windows 11 Snipping Tool... but not for everyone
Earlier this week we learned about a worrying security and privacy flaw in Windows 11's Snipping Tool screen capture app. The way the software saves cropped screengrabs means that it is possible to "uncrop" images, potentially exposing sensitive information.
Acting quickly to address the problem, Microsoft has fixed the vulnerability with a new update. There is just one problem -- the update is not available to everyone, leaving unknown numbers of users at risk.
Sofia Elizabella's Bio
Sofia Wyciślik-Wilson is a queer, transgender journalist based in Poland. She has been writing about technology for more than two decades, and after years working for magazines, her writing moved online. She is fueled by literature, music, nature, and vegetables. You can find her on Bluesky and Mastodon. If you like what you read, you can Buy her a Coffee!
© 1998-2024 BetaNews, Inc. All Rights Reserved. Privacy Policy - Cookie Policy.