< ciso
brief />
Tag Banner

All news with #microsoft azure tag

72 articles · page 2 of 4

Defending Consumer Web Properties Against Modern DDoS

🔐 Modern DDoS attacks have evolved from simple volumetric floods to multi-vector, application-layer abuse amplified by AI-enabled tooling and expansive botnets. Microsoft reports a sharp rise in attack volume since mid‑March 2024 and urges a system-level, defense-in-depth approach that combines fingerprinting (JA4), layered controls, and operational visibility. Cloud-native protections such as Azure DDoS Protection and Azure WAF help when integrated with resilient application design and pretested graceful-degradation plans.
read more →

Scaling Cloud and AI: Microsoft Azure’s Europe Commitment

🔷 Microsoft is expanding Azure capacity across Europe to meet surging cloud and AI demand. Azure regions and sovereign offerings enable organizations to run sensitive workloads with control over data residency, compliance, and performance. The investments cover new regions and upgrades across Northern, Southern, and Central Europe to support multi-region architectures, digital transformation, and sector-specific AI initiatives.
read more →

ConsentFix v3 Automates OAuth Abuse Targeting Azure

🔐 ConsentFix v3 is an automated evolution of prior OAuth consent phishing techniques that targets Microsoft Azure environments by abusing pre-trusted first-party apps and the OAuth2 authorization code flow. Attackers conduct reconnaissance to harvest employee names, roles, and emails, host convincing phishing pages on Cloudflare Pages and DocSend, and use Pipedream webhooks to collect and immediately exchange authorization codes for refresh tokens. Phishing is often highly personalized and delivered via PDFs to evade filters. Captured tokens are imported into post-exploitation tools to access mail, files, and other resources permitted by the token.
read more →

Microsoft Named Leader in IDC MarketScape for API Management

🏆 Microsoft has been named a Leader in the IDC MarketScape: Worldwide API Management 2026 Vendor Assessment, reflecting its emphasis on scaling APIs and AI together. Built on a decade-old foundation, Azure API Management governs over 38,000 customers, nearly 3 million APIs, and 3 trillion monthly requests while extending to AI gateway capabilities used by 2,000+ enterprises. The platform provides a single, Azure-native control plane to enforce policy, observability, and cost controls for both APIs and AI workloads.
read more →

Microsoft Azure Local Scales Sovereign Cloud to Thousands

🔒 Microsoft announced that Azure Local now supports deployments of up to thousands of servers within a single sovereign environment. The platform extends the Azure operating model to customer-owned datacenters, edge sites and industrial facilities with local policy enforcement, role-based access control, auditing and compliance capabilities even when disconnected. Validated compute and storage partners, plus Intel® Xeon® 6 and GPU support, let organizations run large-scale, latency-sensitive AI and regulated workloads entirely within their sovereign boundary while retaining lifecycle management through Azure.
read more →

Critical Azure SRE Agent Flaw Allowed Silent Eavesdropping

🔒 A high-severity authentication flaw in Azure SRE Agent exposed agent activity streams to unauthorized tenants, researcher Yanir Tsarimi of Enclave AI reported. Tracked as CVE-2026-32173 with a CVSS score of 8.6, the vulnerability stemmed from an Entra ID app registration configured as multi-tenant and a WebSocket hub that accepted tokens without tenant authorization checks. The hub broadcast agent prompts, internal reasoning, commands and outputs to all connected clients. Microsoft applied a server-side fix and says no customer action is required, but organizations that ran the agent during preview should review any credentials or sensitive data that may have traversed agent interactions.
read more →

Smart Tier for Azure Blob and Data Lake Generally Available

☁️ Azure announces the general availability of smart tier for Blob and Data Lake Storage, a fully managed automated tiering service that continuously optimizes object placement across hot, cool, and cold tiers. It evaluates last-access timestamps—objects idle 30 days move to cool and after 60 more days move to cold—and promotes data back to hot on access. Enable during account creation or switch existing zonal accounts to start optimizing automatically.
read more →

FedRAMP Clears Microsoft’s GCC High Despite Flaws, Concerns

🚨 An internal late-2024 government report reviewed by ProPublica found that Microsoft’s Government Community Cloud High lacked “proper detailed security documentation,” leaving evaluators with “a lack of confidence” in assessing the platform. One reviewer called the package “a pile of shit.” Despite those findings, FedRAMP authorized the product with a buyer-beware notice, a decision that helped Microsoft expand a multibillion-dollar federal cloud business.
read more →

Iran-Linked Password-Spraying Targets 300+ Israeli M365

🔒 Check Point reports an ongoing Iran-nexus password-spraying campaign against Microsoft 365 tenants, primarily impacting Israel and the U.A.E. in three waves on March 3, 13 and 23, 2026. The actor employed Tor exit nodes and commercial VPN infrastructure (AS35758) and used tools and techniques resembling Gray Sandstorm to scan, attempt logins, and exfiltrate mailbox content. Organizations are advised to enforce MFA, apply conditional access by geography, and monitor sign-in and audit logs for signs of compromise.
read more →

Sovereign AI at the Edge: Azure Local on Galleon MDC

🔒 Microsoft and Armada are integrating Azure Local and Foundry Local into Armada’s Galleon modular datacenters to provide a customer-controlled cloud for intermittently connected, contested, or fully disconnected environments. The validated reference architecture supports Azure Local control plane and managed clusters with multi-rack scalability, flexible hyperconverged or SAN-backed storage, and resilient multi-network connectivity including satellite, LTE/5G, RF, and SD-WAN. Designed for defense, public safety, energy, and other regulated sectors, the solution preserves Azure’s cloud operating model while enabling local AI inference and analytics to meet sovereignty, latency, and regulatory requirements.
read more →

AI for Nuclear Energy: Building Intelligent Resilience

⚛️ Microsoft announces an AI for nuclear collaboration with NVIDIA to deliver an end-to-end, AI-powered foundation for nuclear project delivery. The initiative pairs Microsoft Azure, generative AI for permitting, and NVIDIA simulation and AI stacks to speed design, streamline licensing, and improve operations via Digital Twins. Early adopters — including Aalo Atomics, Southern Nuclear, and Idaho National Laboratory — report major time and cost reductions while preserving regulatory traceability and security.
read more →

FabCon & SQLCon 2026: Unifying Databases and Fabric

🧩 Microsoft outlined a strategy at FabCon and SQLCon 2026 to converge its database portfolio and Microsoft Fabric into a single, unified data platform. Key highlights include the new Database Hub (early access) for unified estate management across Azure SQL, Cosmos DB, PostgreSQL, MySQL, SQL Server via Arc, and Fabric Databases. The company also showcased enhancements to OneLake, Runtime 2.0, Fabric IQ, agent experiences, migration assistants, and a database savings plan that can reduce costs up to 35% for eligible scenarios.
read more →

Iran-linked Hackers Claim Wiper Attack on Medtech Firm

🛡️A hacktivist group with reported ties to Iran's intelligence services has claimed responsibility for a large-scale data-wiping incident against Stryker, a global medical technology company. The group, known as Handala, said it erased data from more than 200,000 systems and forced shutdowns across 79 countries while Stryker sent thousands of staff in Ireland home and reported a building emergency at its U.S. headquarters. Reporting and internal sources indicate attackers may have used Microsoft Intune to issue remote wipe commands; some employee devices were reportedly wiped and defaced.
read more →

Modernizing Regulated Industries with Cloud and AI

🔒 Organizations are accelerating cloud migration to reduce IT operating costs, boost resilience, and prepare for expanded AI use, with IDC citing operational efficiency as the primary driver. Agentic AI automates discovery, orchestration, and continuous modernization across hybrid environments to shorten timelines and lower risk. Healthcare, financial services, and manufacturing face distinct regulatory, latency, and legacy constraints, and Microsoft positions Azure, Azure Copilot, and GitHub Copilot alongside migration frameworks, Azure Migrate, and the Azure Accelerate program to enable secure, industry-specific modernization informed by customer results.
read more →

Many Agents, One Team: Scaling Modernization on Azure

🤖 Microsoft introduces agentic modernization capabilities across Azure Copilot and GitHub Copilot, unifying IT and developer workflows to accelerate cloud migration and application modernization. New public preview agents — the Azure Copilot migration agent and the GitHub Copilot modernization agent — automate discovery, dependency mapping, planning, code transformation, and deployment at scale. The approach emphasizes human-led control, integrated database modernization, and operationalized delivery through Cloud Accelerate Factory to make modernization repeatable and measurable.
read more →

Fireworks AI in Microsoft Foundry for Open Model Inference

⚡ Microsoft announced the public preview of Fireworks AI on Microsoft Foundry, bringing high‑performance, low‑latency inference for open models to Azure. The integration provides day‑zero access to optimized open models (including MiniMax M2.5), serverless and provisioned pricing options, and bring‑your‑own‑weights support for quantized or fine‑tuned models. Foundry supplies a unified control plane for evaluation, deployment, governance, and observability so teams can operationalize open models without assembling bespoke stacks.
read more →

Microsoft Sovereign Cloud: Local Disconnected Operations

🔐 Microsoft introduces a fully localized sovereign stack enabling mission-critical operations in connected, intermittently connected, and fully disconnected environments. Azure Local provides on-premises Azure governance and policy controls even with no external connectivity, while Microsoft 365 Local runs core productivity servers inside customer boundaries. Foundry Local brings large multimodal model inferencing to secured, offline hardware so organizations can run AI locally and retain full data and operational control.
read more →

Agentic Cloud Operations: A New Way to Run Clouds Efficiently

🔧Azure Copilot introduces an agentic cloud operations paradigm that embeds AI-powered agents into everyday cloud workflows. These agents correlate telemetry, understand operational context, and take governed actions across migration, deployment, observability, resiliency, optimization, and troubleshooting. The service centralizes observability, configuration, and governance so teams can move from insight to action within a unified interface. Built-in controls such as BYOS for conversation history, RBAC, and auditability ensure compliance and preserve human oversight.
read more →

VoidLink Linux Malware Targets Multi-Cloud Environments

🔍 New analysis by Ontinue details VoidLink, a Linux-based command-and-control framework that generates implant binaries for credential theft, data exfiltration and stealthy persistence across cloud and enterprise hosts. The agent fingerprints AWS, GCP, Azure, Alibaba and Tencent environments and adapts its behavior, loading modular plugins for container escape and kernel-level stealth. Researchers identified unusual development artefacts — structured "Phase X:" labels, duplicated numbering, verbose debug logs and embedded documentation — that suggest parts of the implant were written or assisted by a large language model coding agent with limited human review.
read more →

Azure NetApp Files Elastic Zone-Redundant Storage Service

🔁 Microsoft announces Azure NetApp Files Elastic zone‑redundant storage (ANF Elastic ZRS), a managed multi‑AZ file service that synchronously replicates data across three or more availability zones to deliver high availability and resiliency. The service provides automatic, service‑managed failover while preserving the same mount target and service endpoint to minimize application disruption and ensure zero data loss. ANF Elastic ZRS supports NFS and SMB, ONTAP data management features (snapshots, clones, backup), metadata performance optimizations, and cost‑efficient single‑volume multi‑AZ availability.
read more →