Skip to Content

Summary SSPR will require users to have explicitly registered authentication methods for password reset verification; directory attributes (mobilePhone, businessPhone, otherMails) will no longer be accepted unless registered. This affects all users (including admins) in tenants with SSPR enabled across Public cloud and US Government clouds (GCC, GCC High, DoD). Admins must review registration coverage, ensure …

Read More about MC1325414: Microsoft Entra ID SSPR will require registered authentication methods starting September 7, 2026

Summary Microsoft 365 Copilot will support real-time desktop screen and mobile camera sharing during Copilot voice sessions; vision is enabled by default and processes only content shared during the active session. Admins can disable screen and camera sharing in the Microsoft 365 admin center (Copilot > Settings > Copilot Actions > Screen and camera sharing); …

Read More about MC1325421: Support for real-time screen sharing in Copilot voice sessions

Summary Conditional Access policies scoped to “Register security information” will now be enforced when users set up Windows Hello for Business (WHfB) or register macOS Platform SSO credentials. Users who do not meet the targeted Conditional Access grant requirements (MFA, authentication strength, trusted location, FIDO2 key, etc.) will be blocked from completing WHfB or macOS …

Read More about MC1326253: Conditional Access policies now apply to Windows Hello for Business and macOS Platform SSO registration

Summary Microsoft Teams will enforce Information Barriers (IB) between users in the same tenant even when they participate in external group chats, calls, or meetings; this enforcement is enabled by default for tenants that have IB configured. Applies to Teams chat, group chat, meetings, and calls across desktop, web, and mobile clients; existing IB policies …

Read More about MC1326258: Information Barriers enforcement for same‑tenant users in external group chats

Summary Microsoft 365 Copilot will support real-time desktop screen and mobile camera sharing during Copilot voice sessions; vision is enabled by default and processes only content shared during the active session. Admins can disable screen and camera sharing in the Microsoft 365 admin center (Copilot > Settings > Copilot Actions > Screen and camera sharing); …

Read More about MC1325421: Support for real-time screen sharing in Copilot voice sessions

Summary SSPR will require users to have explicitly registered authentication methods for password reset verification; directory attributes (mobilePhone, businessPhone, otherMails) will no longer be accepted unless registered. This affects all users (including admins) in tenants with SSPR enabled across Public cloud and US Government clouds (GCC, GCC High, DoD). Admins must review registration coverage, ensure …

Read More about MC1325414: Microsoft Entra ID SSPR will require registered authentication methods starting September 7, 2026

Summary Get-MailDetailTransportRuleReport and Get-MailTrafficPolicyReport will only return transport rule data when the caller explicitly includes -EventType TransportRuleHits or -EventType TransportRuleActionHits. Affected parties: Exchange Online administrators, messaging/security/compliance teams, and any automation, scheduled jobs, or reports that rely on these two cmdlets. Action required: review and update all PowerShell scripts and automation that call these cmdlets to …

Read More about MC1323250 Action Required: Update scripts using Get-MailDetailTransportRuleReport and Get-MailTrafficPolicyReport

Summary Visio desktop’s built-in export to Power Automate (BPMN export) is being retired; the Export button/pane and Show Flow Markup will be removed from the Visio UI. Affected users: anyone who uses Visio desktop to export BPMN diagrams as Power Automate cloud flows; existing flows exported from Visio will continue to run and Visio diagrams/templates …

Read More about MC1323265: Power Automate flow export from Visio is being retired in July

Summary A Data Privacy notice (Microsoft Online Services Subprocessor Disclosure) is available in the Microsoft 365 Message Center. The full disclosure can only be viewed by a Global Administrator or someone assigned the Message Center Privacy Reader role; sign in to the Admin Center > Message center to read it. Applies broadly to the Microsoft …

Read More about MC1323272 Data Privacy: Microsoft Online Services Subprocessor Disclosure

Summary Microsoft is retiring the Microsoft 365 Usage Analytics Power BI template app; new downloads will be blocked and existing installations will stop receiving data and refreshes at end of support. Affected: admins and analysts who use the template app for Microsoft 365 usage, adoption, or activity reporting; organizations that rely on dashboards built from …

Read More about MC1324288: Microsoft 365 Usage Analytics Power BI template app will be retired

Summary Free upgrade path for eligible K‑12 devices from Windows 11 Home to Windows 11 Pro Education; admin initiation is required (run Clipupgrade.exe) and a restart completes the upgrade. Applies only to K‑12 Education tenants with a verified Academic Entra domain; admins must sign in with a school IT administrator account to validate eligibility. Upgraded …

Read More about MC1324289: [EDU] Free upgrade path to Windows 11 Pro Education for K-12

Summary Microsoft is changing Dataverse ingress IPs which will consolidate and narrow the service tag IP ranges used by Dataverse infrastructure. This impacts outbound connections to Dataverse (including Dataverse TDS) if your network/firewall or web proxy allow-lists specific IP addresses instead of the PowerPlatformInfra regional service tags. Admins must review Power Platform URLs and IP …

Read More about MC1319299: Information about upcoming change to ingress IPs

Summary Microsoft published updated mitigation guidance and a Microsoft-provided script for CVE-2026-45585 (Windows BitLocker security feature bypass) that replaces previously documented manual mitigation steps. The mitigation applies to BitLocker on Windows 11 (24H2, 25H2, 26H1) and Windows Server 2025 — review inventory for these OS versions and BitLocker usage. Administrators should review the Microsoft Security …

Read More about MC1318295: Mitigation guidance updated with a new script for CVE 2026 45585

Summary Teams Phone devices in India using Operator Connect will have PSTN calling blocked if an emergency location is not configured. Affected devices include IP phones running Teams app version 1449/1.0.94.2026088402 and later; admins must configure emergency address/location and Location-Based Routing (LBR) mappings to restore calling. Outbound PSTN calls will be blocked; inbound calls may …

Read More about MC1317835: PSTN calling blocked on Teams phone devices in India when emergency location is not configured

Summary Creation of classic style agents in Microsoft Copilot Studio app for Teams will be retired. The Microsoft Copilot Studio web app will become the primary tool for creating and managing classic style agents. Users will be redirected to the web app if they attempt to create agents in Teams after retirement. Existing agents will …

Read More about MC1315217 Microsoft Copilot Studio: Classic agent creation moves from Teams to web experience, retiring June 30, 2026

Summary SharePoint agents experience simplification, allowing site owners better control over agent visibility through new Site AI settings. Approved agents will no longer be accessed via the Agent Picker, requiring site owners to display them directly on site pages for easier access. Existing sites’ default agents will automatically transition to the current main agent, while …

Read More about MC1315219 – Update to agents in Simpler launch experience and new site AI settings

Summary A digital certificate for Microsoft 365 apps on Mac and iOS will be replaced to ensure uninterrupted app functionality. Devices running unsupported app versions may enter read-only mode after the certificate expiration, limiting users to viewing and printing documents only. Full functionality requires updates to specific operating systems and app versions for Mac and …

Read More about MC1311701: Microsoft 365 apps on Mac and iOS require updates before July 13, 2026, due to certificate expiration

Summary Transition from instance-level reporting to aggregated reporting in Endpoint Privilege Management within Microsoft Intune. Elevation report and Managed elevations report will be discontinued in the Intune admin center. Users should utilize aggregated reporting experiences, which summarize elevation activity by application, publisher, or user. Most detailed views will be available at the day level rather …

Read More about MC1311966: Removing instance-level reports for Endpoint Privilege Management

Summary SharePoint Online will update user storage quota enforcement to align with license entitlements, addressing incorrect application during quota refreshes. Users exceeding their OneDrive for Business storage quota will enter a read-only state, restricting write access until storage is within limits. Admins should review OneDrive storage usage to identify affected users and take corrective actions, …

Read More about MC1310684: Storage quota enforcement updated to align with license limits

Summary The Security Score (Preview) feature will be retired from the Security > Overview page in the Power Platform admin center. The security score and its qualitative ratings (Low, Medium, High) will no longer be available. Recommendations generated from the security score will not be displayed. The Security > Overview page will still be accessible …

Read More about MC1310690: Information regarding the retirement of Power Platform Security Score (Preview)

Summary Users must have the Data Classification List Viewer role to access classified data in Content Explorer and Data Explorer. The role requirement will be consistently enforced across both tools. Admins should assign appropriate roles to users to ensure access. No new permissions are introduced with this update. This change will impact both users and …

Read More about MC1308860 Microsoft Purview Content Explorer and Data Explorer: Data Classification List Viewer role required for data access

Summary Microsoft Teams will no longer support updates on macOS 13 (Ventura) to ensure security and performance. Users will receive in-app upgrade notifications and will face a blocking screen preventing usage if they remain on macOS 13. Organizations must upgrade to a supported macOS version or use Teams via a supported web browser to continue …

Read More about MC1308857 Action required: Upgrade macOS 13 devices to maintain Teams desktop access

Summary Introduction of a new Copilot chat pane in OneNote Mobile for users with Microsoft 365 Copilot (Premium) licenses. The new Summary feature enables users to generate concise summaries and ask questions about their notes. Available for users accessing OneNote on iPhone; existing Copilot controls and policies apply. No admin action required prior to rollout, …

Read More about MC1307979: Copilot chat pane and Summary feature in OneNote Mobile (iPhone)

Summary New features include enhanced protection against phishing and malware, URL time-of-click protection, and additional email storage in Exchange Online. Microsoft Defender features will apply built-in protection policies by default; they cannot be disabled but can be overridden. Intune features will not be configured by default and are available for customization. Increased security telemetry and …

Read More about MC1304290: 2026 Microsoft 365 Packaging Update

Summary Microsoft will begin blocking EWS requests to Exchange Online, impacting all tenants worldwide. Organizations must migrate or sunset EWS applications to Microsoft Graph, Power Platform, or Copilot Declarative Agents to maintain functionality. Affected applications in your tenant include several Entra Application IDs and Apple Mail for Mac. It’s important to review the application portfolio, …

Read More about MC1191252 Action Required: Update active Exchange Web Services Applications

Summary Microsoft Teams Direct Routing will switch to certificates from a new Certificate Authority during a validation test. Organizations using Teams Direct Routing with SBCs for TLS connections may experience connection failures if SBCs do not trust the new Root CAs. This may impact PSTN calling for affected tenants. Administrators should ensure SBCs trust the …

Read More about MC1280563: 24-hour test that switches Microsoft Teams Direct Routing SIP endpoints to certificates issued by a new CA.

Summary Microsoft is implementing throttling for outbound email from onmicrosoft.com addresses to enhance email reliability and reduce misuse. Organizations exceeding 100 outbound messages to external recipients within a 24-hour period will experience throttling. Use of verified custom domains for external communication is encouraged, with no changes for emails sent from these domains. Admins should review …

Read More about MC1302901: Onmicrosoft.com outbound email sending limit

Summary Microsoft is upgrading the backend service for Teams meeting templates to enhance security and reliability. Supported versions of Microsoft Teams and Outlook clients are required to use meeting templates without issues. Meeting templates functionality remains unchanged for users on supported versions. Users on outdated versions may face problems accessing or applying meeting templates. No …

Read More about MC1302903 Teams meeting templates: Fundamentals and security upgrade

You might already be aware that we made REST-based Exchange Online PowerShell v3 module generally available in September 2022. We will now be retiring RPS protocol from the beginning of June 2023. Instead, we recommend the utilization of the v3 module, which is where we will continue to invest our development resources. When this will …

Read More about MC488586: Announcing Retirement of Remote PowerShell (RPS) protocol in Exchange Online PowerShell

Outlook for Windows will support S/MIME (Secure/Multipurpose Internet Mail Extensions) sign and encryption as sensitivity label outcome. If admins define the label to have S/MIME sign, encryption, or both and emails with those labels will enforce S/MIME accordingly. This message is associated with Microsoft 365 Roadmap ID 100062. Outlook for Windows will support S/MIME (Secure/Multipurpose …

Read More about MC484251: Outlook: S/MIME sensitivity label support natively on Outlook for Windows

Updated on 2022-11-30 Healthcare data breaches are getting out of hand, impacting millions of individuals every so often. One such breach at a pediatric health IT software company impacted over two million patients and their sensitive information. In another vein, a China-linked threat actor was found using USB devices for nefarious purposes. We also have …

Read More about Cybersecurity and Infosec News Headlines Update on 2022-11-30

The Power BI Service’s expanded view gives you the option to view “Getting Started” content at the end of your Home Page. From the “Getting Started” section, you can utilize information on how to get started using Power BI, tips and tricks on how to create/utilize reports and dashboards, etc. Support for the “Getting Started” …

Read More about MC470146: Announcing the retirement of ‘Getting Started’ in the Expanded View of the Power BI Service

As previously announced, the Internet Explorer 11 (IE11) desktop app has been retired as of June 15, 2022. IE11 retirement is occurring through two phases: (1) a redirection phase, currently in progress with devices progressively redirected from IE11 to Microsoft Edge, and (2) an upcoming Windows Update phase that includes IE11 being permanently disabled. This …

Read More about MC450856: IE11 desktop app will be permanently disabled as part of the February 2023 Windows security update (“B”) release

We’re introducing new application permissions capabilities for the Microsoft Planner APIs. This includes two sets of enhancements that will make it easier to work with tasks in your organization. This message is associated with Microsoft 365 Roadmap ID 101153. The new application permissions capabilities for the Microsoft Planner APIs include two sets of enhancements that …

Read More about MC449931: Additional API Capabilities for Tasks in Teams and Planner

Tutorial Easy way to send emails using Microsoft Graph API (Office 365) with PowerShell explains how you can deal with Microsoft’s disabling of basic auth with the help of Mailozaurr. Explains, “The only difference between using Standard SMTP and SMTP with Basic auth is renaming Send-MailMessage to Send-EmailMessage, adding a Graph switch, and changing SMTP …

Read More about IT Managed Services Provider Resource Recommendation Update on 2022-10-25

Jenkins Security Advisories Jenkins Security Advisory 2022-10-19 Oracle Security Alerts Oracle Critical Patch Update Advisory – October 2022 Adobe Security Bulletins and Advisories Security Updates Available for Adobe Animate | APSB21-21 APSB22-57 Security update available for Adobe Acrobat and Reader | APSB21-09 APSB22-46 Security updates available for Adobe ColdFusion | APSB22-44 Apple Security Advisory iOS …

Read More about Security Advisories Notices Update on 2022-10-25

As recently announced, Microsoft Office is shipping a new feature that enables PDFs created from Office using Export to PDF to inherit the source document’s labels or encryption. Some VBA add-ins may need to be updated to avoid issues when post-processing an encrypted PDF. With this rollout, we are introducing a temporary mitigation to allow …

Read More about MC441065: Microsoft Purview | Information Protection: Maintain label when creating PDF files from VBA in Office apps (preview)