Tech News Archives - Cyber Security News https://cybersecuritynews.com/category/tech-news/ World's #1 Premier Cybersecurity and Hacking News Portal Fri, 21 Nov 2025 08:56:58 +0000 en-US hourly 1 192061645 Windows 11 to Hide BSOD Crash Errors on Public Displays https://cybersecuritynews.com/windows-11-hide-crash-errors/ Fri, 21 Nov 2025 08:56:54 +0000 https://cybersecuritynews.com/?p=133997 Microsoft has introduced a practical new feature in Windows 11 designed specifically for public-facing monitors and signage. This new mode ensures that the dreaded Blue Screen of Death (BSOD) and other disruptive error dialogs are hidden from view on non-interactive displays. Whether the machine is powering a digital restaurant menu, an airport flight schedule, or […]

The post Windows 11 to Hide BSOD Crash Errors on Public Displays appeared first on Cyber Security News.

]]>
Microsoft has introduced a practical new feature in Windows 11 designed specifically for public-facing monitors and signage. This new mode ensures that the dreaded Blue Screen of Death (BSOD) and other disruptive error dialogs are hidden from view on non-interactive displays.

Whether the machine is powering a digital restaurant menu, an airport flight schedule, or a billboard advertisement, this update prevents the embarrassment of public crash loops.

The core functionality of this mode revolves around discretion. Once enabled, the operating system suppresses the standard behavior of displaying permanent error screens when a critical fault occurs.

Instead of leaving a frozen blue screen visible to customers for hours, Windows attempts to handle the failure more gracefully behind the scenes.

Diagnostic Recovery Behavior

While hiding errors is crucial for aesthetics, technicians still need access to diagnostic information. Microsoft has implemented a clever workaround: when a critical system error or a recovery screen is required for diagnostics, Windows displays the error message for only 15 seconds.

After this brief window, the screen will automatically turn off to conceal the issue. The display remains black until a technician interacts with the device using a keyboard or mouse, at which point the screen reactivates to allow for troubleshooting, Microsoft added.

It is essential to distinguish this feature from Kiosk mode. This new setting does not replace Kiosk mode, which remains the correct solution for interactive public terminals where users need limited access to specific apps.

This new “hide error” capability is strictly for passive displays where no user interaction is expected.

System administrators can easily enable this feature through the standard Windows Settings app or by deploying a specific registry key across their fleet of devices, making it a simple but effective upgrade for digital signage management.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post Windows 11 to Hide BSOD Crash Errors on Public Displays appeared first on Cyber Security News.

]]>
133997
OpenAI Releases GPT-5.1-Codex-Max that Performs Coding Tasks Independently https://cybersecuritynews.com/openai-releases-gpt-5-1-codex-max/ Fri, 21 Nov 2025 06:33:44 +0000 https://cybersecuritynews.com/?p=133920 OpenAI has launched GPT-5.1-Codex-Max, a specialized coding model designed to handle complex development tasks autonomously. The new system represents a significant leap in agentic AI capabilities, enabling machines to work on coding projects with minimal human intervention. GPT-5.1-Codex-Max operates differently from general-purpose AI models. Built specifically for software engineering, the model features compaction technology that enables it to […]

The post OpenAI Releases GPT-5.1-Codex-Max that Performs Coding Tasks Independently appeared first on Cyber Security News.

]]>
OpenAI has launched GPT-5.1-Codex-Max, a specialized coding model designed to handle complex development tasks autonomously.

The new system represents a significant leap in agentic AI capabilities, enabling machines to work on coding projects with minimal human intervention. GPT-5.1-Codex-Max operates differently from general-purpose AI models.

Built specifically for software engineering, the model features compaction technology that enables it to process millions of tokens in a single session.

This breakthrough means developers can assign extensive refactoring projects, debugging sessions, and multi-hour agent loops to the AI.

Advanced Architecture Powers Independent Development

Which completes them independently without losing context or coherence. The model can sustain work for extended periods.

In internal testing, GPT-5.1-Codex-Max completed tasks running for over 24 hours, automatically managing its context window by compacting sessions when necessary.

This capability transforms how teams approach large-scale code modernization and complex system maintenance. Performance benchmarks demonstrate substantial improvements over previous versions.

On SWE-bench Verified evaluations, GPT-5.1-Codex-Max achieves 77.9% accuracy compared to 73.7% from its predecessor.

More notably, the model uses 30% fewer thinking tokens while delivering superior results, directly translating to reduced computational costs for developers.

Frontend design tasks showcase these efficiency gains effectively. GPT-5.1-Codex-Max produces high-quality interfaces with approximately 27,000 thinking tokens, compared to 37,000 for older models.

Requiring fewer tool calls and generating more efficient code. The enhanced capabilities bring responsibility.

OpenAI acknowledges that advanced coding models can, in theory, assist in cybersecurity attacks. However, the company states it hasn’t observed meaningful abuse at scale.

The team has already disrupted cyber operations by attempting to misuse the model. GPT-5.1-Codex-Max runs in a secure sandbox by default.

File operations remain confined to designated workspaces, and network access stays disabled unless explicitly enabled.

OpenAI recommends keeping Codex restricted, as enabling internet connectivity introduces prompt injection vulnerabilities. The company advises developers to review all AI-generated code before deployment.

Codex produces terminal logs and cites tool calls, reducing bug risks, but should complement rather than replace human code reviews.

GPT-5.1-Codex-Max is now available through Codex for ChatGPT Plus, Pro, Business, Edu, and Enterprise subscribers. API access is coming soon.

Internally, 95% of OpenAI’s engineers use Codex weekly, and adoption correlates with approximately 70% more pull requests shipped.

The model represents progress toward reliable AI coding partners that enhance developer productivity while maintaining security standards.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post OpenAI Releases GPT-5.1-Codex-Max that Performs Coding Tasks Independently appeared first on Cyber Security News.

]]>
133920
pi GPT Tool Turns Your Raspberry Pi into A ChatGPT Powered AI-managed device https://cybersecuritynews.com/pi-gpt-tool-for-raspberry-pi/ Thu, 20 Nov 2025 08:07:56 +0000 https://cybersecuritynews.com/?p=133884 pi GPT, a custom integration for OpenAI’s ChatGPT that transforms everyday Raspberry Pi devices into fully managed AI-powered workstations. Announced on November 18, 2025, this tool empowers developers, hobbyists, and students to code, deploy, and oversee projects directly on local hardware without the usual cloud dependencies or network hassles. By leveraging noBGP’s deterministic networking, pi […]

The post pi GPT Tool Turns Your Raspberry Pi into A ChatGPT Powered AI-managed device appeared first on Cyber Security News.

]]>
pi GPT, a custom integration for OpenAI’s ChatGPT that transforms everyday Raspberry Pi devices into fully managed AI-powered workstations.

Announced on November 18, 2025, this tool empowers developers, hobbyists, and students to code, deploy, and oversee projects directly on local hardware without the usual cloud dependencies or network hassles.

By leveraging noBGP’s deterministic networking, pi GPT eliminates barriers like IP configuration and VPN setup, making vibe coding building apps through natural language prompts accessible on affordable devices like the Raspberry Pi, Nvidia Spark, or Jetson.​

Traditionally, vibe coding has been tethered to cloud platforms, incurring costs and requiring complex setups for local integration.

pi GPT changes this by allowing users to direct ChatGPT prompts straight to their Raspberry Pi, turning it into a seamless development or production environment.

Developers can generate and run code on the device in real time, bypassing the need for manual SSH sessions or environment matching.

This local approach not only cuts cloud bills but also enhances privacy, as all operations stay within the user’s controlled hardware ecosystem.

For instance, a prompt like “Write a Python script to monitor sensors on my Pi” results in instant deployment and testing, fostering rapid prototyping for IoT projects or edge computing tasks.​

pi GPT Tool for Raspberry Pi

One of Pi GPT’s standout features is its prompt-based control over device operations. Users can start, stop, edit, or monitor applications on their Raspberry Pi using simple ChatGPT conversations, such as “Restart my web server on the Pi” or “Debug the error in my script”.

This AI-driven management simplifies workflows, especially for beginners or those juggling multiple devices. The tool’s integration ensures commands are executed securely through noBGP’s overlay network, which handles authentication and execution without exposing the device to public internet risks.

In cybersecurity contexts, this means reduced attack surfaces, as no port forwarding or firewall tweaks are needed for remote access.​

noBGP’s deterministic networking underpins pi GPT by providing end-to-end encrypted connectivity that avoids traditional routing pitfalls like BGP’s unpredictability.

Users gain private links between ChatGPT and their Pi, free of access control lists or public IPs, ensuring consistent, reliable communication.

Sharing becomes effortless too: deploy a web app or Minecraft server on the Pi and generate a custom URL for public or private access with a single prompt. This feature supports hybrid setups, connecting local Pis to CI/CD pipelines or AI workflows for scalable production.

pi GPT is free for non-commercial use and works with both free and paid ChatGPT accounts, available via the OpenAI GPT Store. Commercial trials are open now, with licensing to follow.

As Ryo Koyama, noBGP’s CEO, noted, “pi GPT makes vibe coding truly accessible; no cloud bills, no setup headaches”. For security researchers and content creators, this tool opens doors to secure, local testing of vulnerabilities or threat simulations on Pi hardware, aligning with edge device trends in cybersecurity.

Overall, pi GPT democratizes AI-assisted development by blending ChatGPT’s intuition with Raspberry Pi’s versatility to enable innovative, cost-effective projects.​

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post pi GPT Tool Turns Your Raspberry Pi into A ChatGPT Powered AI-managed device appeared first on Cyber Security News.

]]>
133884
Cloudflare Discloses Technical Details Behind Massive Outage that Breaks the Internet https://cybersecuritynews.com/cloudflare-massive-outage-details/ Wed, 19 Nov 2025 02:29:55 +0000 https://cybersecuritynews.com/?p=133694 Cloudflare published a comprehensive report detailing the causes of a major network failure that disrupted global internet traffic for several hours, affecting millions of users and various services. The outage, which began at 11:20 UTC, stemmed from an internal configuration error rather than any cyber threat, underscoring the vulnerabilities in even the most robust cloud […]

The post Cloudflare Discloses Technical Details Behind Massive Outage that Breaks the Internet appeared first on Cyber Security News.

]]>
Cloudflare published a comprehensive report detailing the causes of a major network failure that disrupted global internet traffic for several hours, affecting millions of users and various services.

The outage, which began at 11:20 UTC, stemmed from an internal configuration error rather than any cyber threat, underscoring the vulnerabilities in even the most robust cloud infrastructures.

This incident echoes recent disruptions at competitors like Microsoft Azure and Amazon Web Services, raising alarms about the fragility of global digital reliance.​

Cloudflare’s troubles stemmed from a routine update to permissions in its ClickHouse database cluster, intended to enhance security for distributed queries.

At 11:05 UTC, the change made underlying table metadata in the ‘r0’ database visible to users, but a Bot Management query failed to account for this, pulling duplicate column data and bloating a critical feature file to double its expected size.

This file, refreshed every five minutes to combat evolving bot threats via machine learning, overwhelmed the software’s hardcoded limit of 200 features, triggering panics in the core proxy system known as FL.

Initially mistaken for a massive DDoS attack coinciding with the downtime of Cloudflare’s external status page, the fluctuating failures puzzled investigators as good and bad files alternated during the cluster’s gradual rollout.

The Bot Management module, essential for scoring automated traffic, halted request processing, cascading errors through the network. In the newer FL2 proxy, this caused outright 5xx HTTP errors; older FL versions defaulted bot scores to zero, potentially blocking legitimate traffic for customers using bot-blocking rules.​

The blackout hit core services hard, delivering error pages to users accessing Cloudflare-protected sites and spiking latency due to resource-intensive debugging.

Turnstile CAPTCHA failed entirely, blocking logins; Workers KV saw elevated errors, indirectly crippling dashboard access and authentication via Cloudflare Access.

Email Security temporarily lost some spam detection, though no major customer data was compromised, and configuration updates lagged. By 17:06 UTC, full recovery was achieved after halting bad-file propagation, rolling back to a known-good version, and restarting the proxies.​

Cloudflare’s CEO, Matthew Prince, expressed sincere apologies, describing the incident as “deeply painful” and unacceptable for a major internet service provider. The company identified this as its worst core traffic outage since 2019.

Massive Cloud Giants Outage

This incident highlights a concerning trend of failures related to configuration issues among major cloud providers.

Just weeks prior, on October 29, 2025, Azure suffered a global outage from a buggy tenant change in its Front Door CDN, disrupting Microsoft 365, Teams, and Xbox for hours and affecting airlines like Alaska.

Similarly, AWS endured a 15-hour blackout on October 20 in its US-East-1 region, where DNS issues in DynamoDB rippled to EC2, S3, and services like Snapchat and Roblox.

A smaller AWS e-commerce hiccup hit Amazon.com on November 5, stalling checkouts amid holiday prep. Experts warn these incidents highlight over-dependence on centralized providers, where single missteps can “break the internet” repeatedly in 2025.​

To prevent future incidents, Cloudflare is strengthening its file ingestion processes to guard against malformed inputs. They are also implementing global kill switches, reducing the overload of error reports, and reviewing proxy failure modes.

Although the outage was not caused by malicious intent, it serves as a clear reminder that as cloud ecosystems expand, the importance of operational precision also increases.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post Cloudflare Discloses Technical Details Behind Massive Outage that Breaks the Internet appeared first on Cyber Security News.

]]>
133694
Microsoft Investigating Teams Issue that Disables Users from Opening Apps https://cybersecuritynews.com/microsoft-investigating-teams-issue/ Wed, 12 Nov 2025 12:20:02 +0000 https://cybersecuritynews.com/?p=133075 Microsoft has confirmed it is investigating a significant issue affecting Microsoft Teams for Education, which is particularly impacting users’ ability to access critical features such as assignments and grades. The problem, which initially appeared limited to administrators in Europe, has since expanded to affect all users with educational accounts worldwide potentially. The outage stems from […]

The post Microsoft Investigating Teams Issue that Disables Users from Opening Apps appeared first on Cyber Security News.

]]>
Microsoft has confirmed it is investigating a significant issue affecting Microsoft Teams for Education, which is particularly impacting users’ ability to access critical features such as assignments and grades.

The problem, which initially appeared limited to administrators in Europe, has since expanded to affect all users with educational accounts worldwide potentially.

The outage stems from backend infrastructure challenges within Teams’ processing systems. Microsoft first acknowledged the issue on November 12, 2025, stating that affected admins in the European region were unable to open or load assignments and grades.

This disruption has broader implications for educators and students relying on the platform for daily collaboration and academic management.

As the investigation progressed, Microsoft updated its status to reveal that the issue extends beyond admins to any user holding a Microsoft Teams Educational account.

This escalation underscores the platform’s centrality in modern remote learning environments, where even brief downtimes can halt lesson planning, grading, and student interactions.

To address the problem, Microsoft engineers are actively restarting key backend components that power Teams’ services. These restarts aim to restore processing capabilities and mitigate the ongoing impact.

Users experiencing difficulties are directed to the Microsoft 365 admin center for real-time updates under incident identifier TM1185134. There, detailed timelines, affected services, and mitigation steps are available, helping IT administrators track resolution efforts.

The timing of this incident is particularly unfortunate, coinciding with the mid-semester period when educational institutions heavily depend on digital tools.

Microsoft Teams, part of the broader Microsoft 365 suite, serves millions of users globally, with education-specific features integrated deeply into school workflows.

While the company has not specified a root cause, such as a software glitch, server overload, or external factor, past Teams outages have often involved high-traffic scenarios or configuration errors in cloud infrastructure.

Microsoft emphasizes that its teams are working around the clock to resolve the issue, with preliminary signs of improvement expected as restarts complete.

In the interim, affected users are advised to monitor the admin center and consider alternative tools for urgent tasks. This event highlights ongoing challenges in maintaining reliable cloud-based educational platforms, especially amid rising demands post-pandemic.

As more details emerge under TM1185134, educators and IT professionals should prepare contingency plans to minimize academic disruptions. Microsoft has committed to a full post-incident review to prevent future occurrences.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post Microsoft Investigating Teams Issue that Disables Users from Opening Apps appeared first on Cyber Security News.

]]>
133075
Best MSP Software: The Essential Tech Stack  https://cybersecuritynews.com/best-msp-software-the-essential-tech-stack/ Tue, 11 Nov 2025 18:03:34 +0000 https://cybersecuritynews.com/?p=132896 To grow a successful MSP business, you need the right technology stack, but the real question is: how do you choose the right tools? While some solutions are well-known and widely used, others are less obvious yet equally important.  Read this blog post for an overview of what makes up an MSP’s technology stack, the […]

The post Best MSP Software: The Essential Tech Stack  appeared first on Cyber Security News.

]]>
To grow a successful MSP business, you need the right technology stack, but the real question is: how do you choose the right tools? While some solutions are well-known and widely used, others are less obvious yet equally important. 

Read this blog post for an overview of what makes up an MSP’s technology stack, the problems these tools solve, and the most essential features for delivering best-in-class MSP services. 

Key Pain Points MSPs Face Today 

Although each managed service provider may have a very different setup and environment, there are some common problems almost every MSP business owner faces on a daily basis.

Some of these challenges relate to day-to-day operations, others to the efficiency of service delivery, and some of them to struggles with customer satisfaction. 

Managing Complex and Diverse Environments 

When you’re growing and scaling your MSP business, you inevitably face customers with very diverse environments: some of them heavily rely on their on-prem infrastructure, while others lean towards becoming cloud-first only.

Trying to juggle multiple solutions while satisfying the needs of these diverse customers is a true nightmare that cannot be solved without standardized and unified systems. 

Manual Routines 

Some MSPs still rely on on-site visits or spend hours on manual problem detection and remediation. However, these processes, if not automated properly, eat up the most precious thing any technician has – their time.

And once efficiency decreases over time, customers may start looking for another provider with more time and resources. 

Evolving Threat Landscape 

Overall, the threat and cybersecurity landscape is extensive and constantly changing. There’s a wide range of vulnerabilities to cover, and their parameters are becoming increasingly fluid over time.

Customers expect MSPs to guarantee complete data protection that won’t fail them, which, as you probably know, is no easy task.

That’s why MSPs must stay up-to-date on cyber threats and ransomware, continually educate themselves and their customers, and, of course, follow market trends to choose the best tools for keeping every endpoint secure. 

Scalability and Standardization 

Once your MSP business takes off and you start getting more and more clients, it becomes increasingly difficult to address ever-growing problems individually.

When this moment hits, you should start thinking about standardizing your software stack to avoid chaos in your operations and decreased service quality.

However, some MSPs might face an even bigger issue here — the tools they’re used to no longer work well together when applied to a more diverse customer base, or they simply don’t have enough time and resources to properly manage multiple dashboards, bills, integrations – you name it. 

Communication and Reporting 

Without proper communication methods in place, it’s hard for MSPs to understand their clients’ needs, and without proper automated reporting, they struggle to demonstrate their value and prove that their customers’ budgets are well spent. 

Best MSP Software: Essential Solutions Every MSP Needs 

Again, although each MSP can combine the services they wish to offer as they need, there’s a specific range of services that can be the same for almost all providers.  

Below, we provide the essential software every MSP should have, along with examples of the best MSP software on the market, and must-have features for each. 

Backup and Disaster Recovery Solution 

Owning a professional-grade backup and disaster recovery solution is a must for any managed service provider, since one of their primary tasks is protecting customer data from hardware crashes, human error, and other disruptions.

Having a reliable and secure solution is essential, especially with the rise of ransomware and other destructive threats. Moreover, you also need to back up your own internal systems and data – that’s why this type of software should be number one on your list. 

The most important features of a backup solution include the ability to back up files and systems, cloud backups (bonus points if the software allows you to back up your data to the cloud of your choice and doesn’t limit you to its own proprietary cloud), fast recovery, comprehensive reporting, alerting, and custom notifications.

Another great feature to have is a centralized dashboard that you can access anytime to gain useful insights into all processes under your management. 

Commonly used backup solutions for MSPs include: 

  • MSP360 Managed Backup: a centralized, cloud-based solution for desktops, servers and virtual machines, offering flexible storage options (AWS, Wasabi Hot Cloud Storage, Backblaze B2, or your own S3-compatible cloud). 
  • Acronis Cyber Protect: cyber resilient backup for physical, virtual, cloud, and mobile environments with natively integrated endpoint security.  

Remote Monitoring and Management (RMM) 

RMM tools are solutions designed to help MSPs track and manage their customers’ systems remotely. These tools significantly simplify MSPs’ work by eliminating the need for on-site presence for troubleshooting or patching. 

Many RMM tools also offer automation features (such as patch management) to help you perform routine tasks as efficiently as possible.

With capabilities like real-time monitoring, alerting, scripting, and task automation, your RMM tool will allow you to monitor system health across all endpoints under your management. 

Here’s a list of the most popular RMM software options on the market: 

  • MSP360 RMM: MSP360 offers a completely free option for smaller MSPs with up to 50 endpoints under management (and the best part is that it’s not a trimmed-down version of a paid edition, it has the same features, with the only limitation being the number of endpoints), as well as a paid version for MSPs managing larger IT environments. 
  • NinjaOne: Comprehensive RMM solution with strong automation workflows and endpoint management. 
  • Atera: IT management platform that combines RMM, PSA and remote access with built-in AI agents. 

Professional Services Automation (PSA) 

PSA tools serve as a great addition to RMM solutions: together, these solutions streamline tasks such as client management, billing, and reporting.

Key features that help MSPs enhance their internal workflow include ticket and time tracking, SLA management, billing integrations, and CRMs. 

Popular PSA solutions among MSPs include: 

  • HaloPSA: All-in-one PSA with flexible workflow automation and a large variety of integrations. 
  • ConnectWise PSA: a solution for managing sales pipeline, invoicing, asset management, and more.  
  • Syncro: a tool that combines PSA and RMM in a unified solution. 
  • Autotask PSA: cloud-based PSA that centralizes operations like service desk, project management, and billing. 

Remote Access Tools 

While RMM solutions are useful for advanced remote monitoring and management tasks, remote desktop tools are essential when you need remote access for troubleshooting client systems.

These tools eliminate the need for on-site visits for quick fixes, which, in turn, reduces the time required for issue remediation and significantly cuts travel costs. 

The most advanced solutions on the market offer an extensive feature set, including secure, encrypted remote sessions, file transfer, unattended access, and support for Windows, macOS, and Linux. 

The list of best MSP software for remote access includes: 

  • MSP360 Managed Connect: Secure remote access built for MSPs, with logging, encryption, and session reporting. 

Documentation and Knowledge Management 

Some businesses still struggle with slow, manual documentation management, and employees can spend hours digging through paperwork while searching for critical documents.

To truly save resources and eliminate the risk of errors, it’s much easier to adopt professional MSP documentation software to keep all processes, policies, and procedures in order. 

Regardless of the documentation software chosen, features like documentation templates, collaboration, integration with RMM and/or PSA tools, and structured categorization will help MSPs devote their valuable time to growing a profitable business instead of doing manual paperwork. 

The most popular solutions are: 

  • IT Glue: Industry leader for MSP documentation and password management. 
  • Hudu: Affordable alternative with clean design and strong automation. 
  • Confluence: Flexible knowledge base for internal process documentation. 

Conclusion 

With the proper combination of all these solutions, MSPs can build a powerful and reliable software stack that addresses the most common IT challenges and issues, creating opportunities to exceed customers’ expectations and increase profitability.  

The post Best MSP Software: The Essential Tech Stack  appeared first on Cyber Security News.

]]>
132896
Microsoft Warns Windows Systems May Enter BitLocker Recovery After October 2025 Updates https://cybersecuritynews.com/windows-systems-bitlocker-recovery/ Wed, 05 Nov 2025 09:31:31 +0000 https://cybersecuritynews.com/?p=132353 Microsoft has issued an urgent advisory for Windows users, highlighting a potential glitch that could force certain devices into the BitLocker recovery screen after installing security updates released on or after October 14, 2025. The company is actively investigating the problem, which affects select client versions of Windows and primarily impacts Intel-based systems supporting Connected […]

The post Microsoft Warns Windows Systems May Enter BitLocker Recovery After October 2025 Updates appeared first on Cyber Security News.

]]>
Microsoft has issued an urgent advisory for Windows users, highlighting a potential glitch that could force certain devices into the BitLocker recovery screen after installing security updates released on or after October 14, 2025.

The company is actively investigating the problem, which affects select client versions of Windows and primarily impacts Intel-based systems supporting Connected Standby. This power-saving feature keeps devices networked during low-energy states.

While the issue does not compromise data security, it could disrupt user workflows by requiring a one-time entry of the BitLocker recovery key upon restart.

According to Microsoft’s Windows release health documentation, affected users may encounter the recovery prompt during boot-up or restarts following the updates.

Once the key is provided, the device should resume normal operation without further interruptions. This rollback to recovery mode stems from interactions between the updates and BitLocker’s encryption mechanisms, though Microsoft has not detailed the exact root cause yet.

The advisory emphasizes that no server editions are impacted, limiting the scope to consumer and enterprise client environments.

Affected Versions and Update Details

The issue targets three key client platforms: Windows 11 version 25H2 and 24H2, both tied to originating knowledge base article KB5066835, and Windows 10 version 22H2 under KB5066791.

Users can reference Microsoft’s issue trackers such as WI1183025 for Windows 11 25H2, WI1183026 for 24H2, and WI1183027 for Windows 10 22H2 via the Windows Release Health portal for the latest status.

Affected PlatformMessage IDOriginating KB
Windows 11, version 25H2WI1183025KB5066835
Windows 11, version 24H2WI1183026KB5066835
Windows 10, version 22H2WI1183027KB5066791

These updates, rolled out to patch critical vulnerabilities and enhance system stability, inadvertently triggered the BitLocker behavior on compatible hardware.

Intel processors with Connected Standby support appear most vulnerable, as the feature’s network persistence may conflict with post-update boot processes.

Microsoft recommends that affected organizations apply a Known Issue Rollback (KIR) to sidestep the problem. This mitigation tool, detailed in the company’s IT Pro blog, requires contacting Microsoft Support for Business to deploy organization-wide.

Individual users should ensure they have their BitLocker recovery keys handy typically stored in Microsoft accounts or printed during setup—to avoid extended downtime.

In the interim, Microsoft urges caution before applying the October updates on impacted devices, suggesting a pause for non-urgent systems.

The company promises updates as the investigation progresses, with a focus on a permanent fix in future patches. Cybersecurity experts advise proactively backing up recovery keys, especially for enterprise fleets that rely on BitLocker for compliance.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post Microsoft Warns Windows Systems May Enter BitLocker Recovery After October 2025 Updates appeared first on Cyber Security News.

]]>
132353
Windows 11 24H2/25H2 Update Causes Task Manager to be Active After Closure https://cybersecuritynews.com/windows-11-update-task-manager/ Mon, 03 Nov 2025 11:20:46 +0000 https://cybersecuritynews.com/?p=132018 Microsoft has released a non-security update for Windows 11 versions 24H2 and 25H2 that introduces an unusual bug affecting one of the operating system’s most essential utilities. The update, designated as KB5067036, is causing Task Manager to continue running in the background even after users close the application. This issue has been officially acknowledged by […]

The post Windows 11 24H2/25H2 Update Causes Task Manager to be Active After Closure appeared first on Cyber Security News.

]]>
Microsoft has released a non-security update for Windows 11 versions 24H2 and 25H2 that introduces an unusual bug affecting one of the operating system’s most essential utilities.

The update, designated as KB5067036, is causing Task Manager to continue running in the background even after users close the application. This issue has been officially acknowledged by Microsoft as a known problem in the latest optional update.

The KB5067036 update is part of Microsoft’s routine maintenance releases designed to improve functionality, performance, and reliability across Windows 11 systems.

This particular update falls under the category of optional non-security preview releases, which are typically made available during the fourth week of each month.

These updates allow users to receive new features and improvements ahead of the mandatory security updates that roll out on the second Tuesday of every month, commonly known as Patch Tuesday.

What the Update Brings to Windows 11

The update includes various improvements to AI components for Copilot Plus PC experiences, with enhanced versions of Image Search, Content Extraction, Semantic Analysis, and Settings Model.

Additionally, it contains a servicing stack update designated as KB5067035, which ensures that devices can properly receive and install future Windows updates. The servicing stack is a critical component that maintains the reliability and robustness of the Windows update system.

According to Microsoft’s official documentation, Task Manager may continue operating in the background after users attempt to close the application.

This behavior represents a disruption from normal functionality, where closing Task Manager should completely terminate the process.

The issue affects both Windows 11 version 24H2 and the newer 25H2 release, indicating that the problem spans multiple current Windows versions.

Task Manager is a crucial system utility that allows users to monitor running applications, track system performance, manage startup programs, and terminate unresponsive processes.

Having it continue running in the background could potentially consume system resources unnecessarily and may cause confusion for users who expect the application to fully close when dismissed.

The KB5067036 update is available through Windows Update as an optional download. Users can access it by navigating to Start, then Settings, followed by Update and Security, and finally Windows Update.

The update appears in the Optional Updates Available section, where users can choose to download and install it. For users who install the update and encounter issues, Microsoft has provided removal instructions.

However, there is an important limitation: while the cumulative update can be removed using the DISM command-line tool with the Remove-Package option, the servicing stack update cannot be removed once installed.

Users cannot use the Windows Update Standalone Installer with the uninstall switch on the combined package, as this method will not work for packages that include servicing stack updates.

Microsoft continues to monitor feedback and typically addresses known issues in subsequent updates. Users experiencing the Task Manager problem may want to wait for a resolution before installing this optional update.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post Windows 11 24H2/25H2 Update Causes Task Manager to be Active After Closure appeared first on Cyber Security News.

]]>
132018
Microsoft DNS Outage Disrupts Azure and Microsoft 365 Services Worldwide https://cybersecuritynews.com/microsoft-dns-outage/ Wed, 29 Oct 2025 17:15:14 +0000 https://cybersecuritynews.com/?p=131691 Microsoft reported a DNS-related outage on October 29, 2025, affecting access to key services, including Microsoft Azure and Microsoft 365. The issue surfaced around 9:37 PM GMT+5:30, leaving users unable to reach the Microsoft 365 admin center and experiencing widespread delays in other applications. Businesses relying on these platforms for email, collaboration tools, and cloud […]

The post Microsoft DNS Outage Disrupts Azure and Microsoft 365 Services Worldwide appeared first on Cyber Security News.

]]>
Microsoft reported a DNS-related outage on October 29, 2025, affecting access to key services, including Microsoft Azure and Microsoft 365.

The issue surfaced around 9:37 PM GMT+5:30, leaving users unable to reach the Microsoft 365 admin center and experiencing widespread delays in other applications.

Businesses relying on these platforms for email, collaboration tools, and cloud computing faced operational hurdles, highlighting the fragility of global DNS infrastructure.

The outage stemmed from connectivity problems in portions of Microsoft’s internal infrastructure. Initial reports indicated that DNS resolution failures prevented proper routing of traffic, impacting authentication and service endpoints.

Administrators attempting to manage Office 365 tenants encountered error messages, while end-users saw sluggish performance in apps like Outlook, Teams, and SharePoint.

Azure Virtual Machines and storage services also reported intermittent unavailability, potentially stalling development workflows and data processing tasks.

Microsoft DNS Outage

The disruption spanned multiple regions, with complaints flooding social media and tech forums from North America, Europe, and Asia. Small enterprises and large corporations alike voiced frustrations, as the outage coincided with end-of-month reporting deadlines for many.

Cybersecurity experts noted that while no data breaches were reported, the event underscored vulnerabilities in dependency chains where a single DNS hiccup can cascade across interconnected services.

Microsoft’s status page confirmed the scope included admin portals and core productivity tools, but spared some ancillary features like OneDrive file syncing in isolated cases.

Microsoft’s engineering teams swiftly identified the root cause as unhealthy network and hosting infrastructure. By 9:51 PM GMT+5:30, they began unblocking affected systems and redistributing traffic to mitigate the issue.

A subsequent update at 9:58 PM detailed a deeper review of infrastructure health, followed by rerouting to alternate healthy paths announced at 10:06 PM.

As of 10:37 PM IST, recovery efforts continued, with Microsoft promising full restoration soon. The company emphasized that this was an isolated internal issue, not a cyberattack, and advised users to monitor the Azure status page for real-time updates.

This incident adds to a string of cloud reliability challenges in 2025, prompting calls for enhanced redundancy in DNS systems. While downtime appears limited to under two hours so far, it serves as a reminder of the critical role DNS plays in modern cloud computing.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post Microsoft DNS Outage Disrupts Azure and Microsoft 365 Services Worldwide appeared first on Cyber Security News.

]]>
131691
AWS US-EAST-1 Region Experiences Delays in EC2 Instance Deployments https://cybersecuritynews.com/aws-us-east-1-region-suffers-delays/ Wed, 29 Oct 2025 16:21:50 +0000 https://cybersecuritynews.com/?p=131678 Amazon Web Services encountered significant operational challenges in its US-EAST-1 region on October 28, 2025, with elevated latencies affecting EC2 instance launches and cascading issues across container orchestration services. The disruption, which began earlier in the day, impacted multiple AWS offerings reliant on Elastic Container Service (ECS), highlighting ongoing vulnerabilities in the cloud giant’s densely […]

The post AWS US-EAST-1 Region Experiences Delays in EC2 Instance Deployments appeared first on Cyber Security News.

]]>
Amazon Web Services encountered significant operational challenges in its US-EAST-1 region on October 28, 2025, with elevated latencies affecting EC2 instance launches and cascading issues across container orchestration services.

The disruption, which began earlier in the day, impacted multiple AWS offerings reliant on Elastic Container Service (ECS), highlighting ongoing vulnerabilities in the cloud giant’s densely interconnected infrastructure.

Customers reported delays and failures in launching virtual machines and tasks, underscoring the region’s critical role in global operations.​

The incident originated in the use1-az2 Availability Zone around midday PDT, where EC2 instance launches faced prolonged delays due to internal networking and resource provisioning hiccups.

AWS quickly notified affected users via the Personal Health Dashboard, but the problem soon extended to ECS, causing elevated failure rates for task launches on both EC2-backed and Fargate serverless containers.

A subset of customers in US-EAST-1 experienced container instances disconnecting unexpectedly, leading to halted tasks and disrupted workflows.​

Beyond core compute, the outage rippled into analytics and data processing tools like EMR Serverless, which relies on ECS warm pools for rapid job execution.

Jobs in EMR faced execution delays or outright failures as unhealthy clusters persisted in impacted cells. Other hit services included Elastic Kubernetes Service (EKS) for Fargate pod launches, AWS Glue for ETL operations, and Managed Workflows for Apache Airflow (MWAA), where environments stalled in unhealthy states.

App Runner, DataSync, CodeBuild, and AWS Batch also saw increased error rates, though existing EC2 instances remained operational.​

ECS’s cellular architecture, which distributes clusters across regional cells, amplified the scope; clusters assigned to affected cells saw impacts across all availability zones.

AWS identified the root issues in a small number of these cells but withheld specifics on the underlying cause, reminiscent of prior dependency failures in the same region, according to the status page.

Recovery Timeline

AWS initiated throttles on mutating API calls in use1-az2 to stabilize the system, advising retries for “request limit exceeded” errors. By 3:36 PM PDT, EC2 launches normalized, but ECS recovery lagged, with no immediate customer-visible improvements.

Progress accelerated by 5:31 PM, as AWS refreshed EMR warm pools and observed Glue error rate reductions, estimating full resolution in 2-3 hours.​

At 6:50 PM, ECS task launches showed positive signs, prompting recommendations for customers to recreate impacted clusters with new identifiers or update MWAA environments without config changes.

Throttles continued in three ECS cells, but the EMR Serverless warm pools were nearly finished. By 8:08 PM, EMR was fully refreshed, and ECS successes increased, with an estimated time of arrival (ETA) of 1 to 2 hours.

A significant recovery hit at 8:54 PM, and by 9:52 PM, two cells had fully recovered, lifting their throttles, while the third lagged.​

The issue was entirely resolved at 10:43 PM PDT, restoring normal operations across all services. AWS confirmed no lingering impacts, though some backlogs might cause minor delays.​

This episode, following a major US-EAST-1 outage on October 20, exposes persistent fragility from internal service interdependencies. While not as widespread as the earlier DynamoDB-triggered event, it disrupted workflows for developers and enterprises in the busiest AWS region.

Experts note that such incidents, though contained, erode trust in multi-region strategies without robust failover. AWS urged diversified cluster placements and proactive monitoring to mitigate future risks.

Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.

The post AWS US-EAST-1 Region Experiences Delays in EC2 Instance Deployments appeared first on Cyber Security News.

]]>
131678