One-Click RCE in Azure Windows Admin Center: what happened and what you need to do

One-Click RCE in Azure Windows Admin Center: what happened and what you need to do

Windows Admin Center (WAC) is a convenient, browser-based management hub for administrators to manage servers, clients, and clusters from a centralized interface. A recent Cymulate Research Labs disclosure describes a critical chain of flaws that let an attacker achieve unauthenticated, one-click remote code execution (RCE) against both Azure-integrated and on-premises WAC deployments. The exploit requires little user interaction—a maliciously crafted

Microsoft Confirms Reboot Loops on Windows Server 2025 After April Patch KB5082063

Microsoft Confirms Reboot Loops on Windows Server 2025 After April Patch KB5082063

Microsoft has confirmed a critical stability problem affecting some Windows Server 2025 domain controllers following the April 2026 cumulative update (KB5082063). Administrators around the world reported domain controllers entering repeated reboot cycles after installing the update released on April 14, 2026, and Microsoft’s release notes were updated to acknowledge the issue and a related installation failure affecting a subset of

How the Windows Snipping Tool’s CVE-2026-33829 Opens the Door to NTLM Hash Theft

How the Windows Snipping Tool’s CVE-2026-33829 Opens the Door to NTLM Hash Theft

Microsoft patched a moderate-severity flaw in the Windows Snipping Tool in the April 14, 2026 security updates that could let attackers trick the application into leaking authentication material. Tracked as CVE-2026-33829 and reported by Blackarrow (Tarlogic), the issue stems from how Snipping Tool handles certain deep links and can result in an authenticated Server Message Block (SMB) connection to an

Windows Secure Boot: A practical playbook for certificates expiring in 2026

Windows Secure Boot: A practical playbook for certificates expiring in 2026

Microsoft’s Secure Boot certificates issued in 2011 are approaching their expiration window in 2026. While affected devices will continue to boot and receive regular Windows updates, they will stop receiving new protections for the pre-boot environment — updates to Windows Boot Manager, Secure Boot DB/DBX revocations, and mitigations for newly discovered boot-level vulnerabilities. Many newer PCs already include the 2023

Anthropic’s Claude Opus 4.7 Arrives in Amazon Bedrock — Smarter Coding, Vision, and 1M-Token Context

Anthropic’s Claude Opus 4.7 Arrives in Amazon Bedrock — Smarter Coding, Vision, and 1M-Token Context

Amazon Bedrock now offers Anthropic’s Claude Opus 4.7, a major upgrade aimed at production-grade workflows that demand stronger reasoning, longer context windows, and more reliable scaling. Opus 4.7 builds on the Opus family’s strengths and targets real-world use cases such as agentic coding, multi-step knowledge work, long-running tasks, and high-resolution visual understanding. Running on Bedrock’s next-generation inference engine, the model

Claude Opus 4.7: Anthropic’s Sharper, More Reliable Coding and Multimodal Model

Claude Opus 4.7: Anthropic’s Sharper, More Reliable Coding and Multimodal Model

Anthropic’s newest release, Claude Opus 4.7, is now generally available. Built as an incremental but meaningful upgrade over Opus 4.6, Opus 4.7 is positioned as a model that improves sustained reasoning, long-running workflows, and high-resolution vision. Anthropic emphasizes that while Opus 4.7 is not as broadly capable as their most advanced Mythos Preview model, it brings tangible gains for software