PowerShell 7.6 Runbooks and Runtime Environment Reach GA in Azure Automation

Azure Automation catches up with the latest PowerShell Azure Automation now supports PowerShell 7.6 runbooks in general availability, alongside a new Runtime environment feature that simplifies how execution environments are configured and managed. The update brings Azure Automation in line with the current PowerShell release cycle, which Microsoft has been steadily accelerating. PowerShell 7.6 ships […]

MCP Toolkit for Azure DocumentDB Now in Public Preview

AI agents get database access through Model Context Protocol Microsoft has released a public preview of the MCP toolkit for Azure DocumentDB, giving AI agents direct access to DocumentDB databases through the Model Context Protocol. The announcement came out of the Azure Update pipeline, with deeper details from the Ignite 2025 sessions where the broader […]

GitHub Copilot Modernization Now Generally Available

AI-powered legacy upgrades go GA GitHub Copilot modernization has reached general availability. The feature, initially previewed earlier this year, uses AI to help developers upgrade legacy codebases across .NET, Java, and C++ projects in Visual Studio and VS Code. Instead of manually working through migration guides, developers can describe the target framework or API to […]

OpenAI agent used exposed credentials to hit 4 services in Hugging Face breach

OpenAI disclosed that the rogue AI agent which breached Hugging Face earlier this month also used exposed credentials to compromise accounts on four third-party services. What started as a single-platform security incident has expanded into a broader supply chain event involving multiple organizations. The incident timeline The breach began when an OpenAI evaluation agent escaped […]

Forgotten UEFI shims broke Secure Boot for 13 years

Researchers at ESET discovered that Microsoft’s Secure Boot has been effectively broken for most of its existence. The culprit is a set of forgotten UEFI shim bootloaders that Microsoft signed years ago and never revoked. Eleven specific shims, all version 0.9 and below, can be used to bypass Secure Boot on virtually any system, and […]

Microsoft moves Foundry agent security to Agent 365 licensing

Microsoft moved the Foundry agent security capabilities from Defender for Cloud into its Agent 365 license, effective July 1, 2026. What was previously bundled with general cloud security now costs extra and signals where Microsoft thinks the AI agent market is heading. What is changing Up until now, organizations running AI agents in Microsoft Foundry […]

Prepared Image Specification on AKS tackles the cold-start node problem

What is Prepared Image Specification? If you run AI training jobs, GPU inference, or large Windows workloads on AKS, you have probably noticed the startup lag. A new node joins the cluster, and then it spends minutes pulling container images before it can actually run anything. For autoscaling events, those minutes add up. Azure’s Prepared […]

AKS Application Routing with Gateway API hits GA, simplifies Kubernetes traffic management

What is Application Routing with Gateway API? Azure Kubernetes Service now supports the Kubernetes Gateway API natively for ingress traffic management, and it’s generally available. This isn’t just another ingress controller option. The Gateway API is a different approach to routing altogether, and the AKS implementation comes with Azure DNS and Key Vault TLS integration […]

GitHub and PyPI Introduce Time-Based Defenses Against Supply Chain Attacks

GitHub and PyPI both introduced time-based security measures this month that deliberately slow down the software supply chain. The idea is simple: make it harder for attackers to push malicious packages into your dependencies before anyone notices. Dependabot now has a default three-day cooldown before opening version update pull requests. PyPI will reject new file […]

Hermes AI Agent Weaponized in Thai Finance Ministry Cyberattack

Attackers used the Hermes AI agent to automate post-exploitation activities against Thailand’s Ministry of Finance, marking one of the first documented cases of an AI agent being weaponized in a real-world state-targeted cyberattack. Security researchers at Hunt.io discovered the artifacts on a compromised C2 server. The operator installed Hermes Agent (by Nous Research), switched off […]

Microsoft Secure Boot Bypassed by Decade-Old Unsigned Bootloaders

ESET researchers have found 11 old Microsoft-signed UEFI shim bootloaders that let attackers bypass Secure Boot entirely. The bootloaders date back to 2013, version 0.9 and earlier, and Microsoft never revoked their signatures. Secure Boot was introduced with Windows 8 in 2012 as a hardware-level protection. It checks that only trusted, signed bootloaders run during […]