Januscape: The 16-Year-Old KVM Flaw That Earned a $250K Bounty

Google handed out $250,000 for a Linux kernel vulnerability that had been hiding in plain sight for 16 years. Named Januscape and tracked as CVE-2026-53359, the flaw is a use-after-free bug in the KVM hypervisor’s shadow MMU code. It lets a guest virtual machine escape to the host, and it is the first KVM exploit […]

Sheetz is moving 11,000 VMs off VMware after Broadcom’s licensing changes

Sheetz, the Pennsylvania-based convenience store chain with more than 800 locations across the eastern US, is packing up 11,000 virtual machines and leaving VMware. The company is moving its entire virtualization estate over to StorMagic’s SvHCI platform, and the decision came down to a simple reason: Broadcom created too much uncertainty. The migration is a […]

Migrate AWS FSx to Azure Files with Azure Storage Mover

Moving file workloads between clouds used to mean a painful mix of scripts, third-party tools, and manual downtime. Microsoft just made part of that easier with a new public preview that migrates files from AWS FSx for Windows File Server straight into Azure Files. If you run SMB-based Windows file workloads on AWS and want […]

Explicit Proxy in Azure Firewall Goes GA: An Alternative to Route-Based Inspection

Azure Firewall’s explicit proxy mode reached general availability this month. For anyone who has fought with user-defined routes to steer outbound traffic through a firewall, this is a meaningful change. Instead of relying on transparent, route-based interception, you can now point applications and browsers directly at the firewall as a proxy. Explicit proxy versus the […]

SharePoint Connector for Azure Databricks Reaches GA: Enterprise Content Meets the Lakehouse

Microsoft made the SharePoint connector for Azure Databricks generally available this week. For teams that live in both worlds, OneDrive and SharePoint holding the documents, Databricks running the analytics, this removes a whole layer of glue code. The connector, built on Lakeflow Connect, lets you pull SharePoint sites, lists, and files straight into the lakehouse. […]

Unity AI Gateway Goes GA on Azure Databricks: AI Governance Gets a Control Plane

Azure Databricks took another step toward putting real governance around generative AI this week. Unity AI Gateway, which centralizes management for AI models, agents, tools, and MCP services, hit general availability. For teams that have been running ad hoc AI workloads with no clear control plane, this is the signal to start consolidating. What Unity […]

Azure Private Link now works over IPv6

Azure Private Link has started supporting IPv6, in public preview. The update lets you reach Azure PaaS services like Azure Storage and Azure SQL Database over IPv6-based connectivity, using IPv6 private endpoints from clients inside an Azure virtual network. For anyone running an IPv6 or dual-stack estate, this closes a long standing gap in the […]

Azure Virtual Network routing appliance hits general availability

Azure has made its Virtual Network routing appliance generally available for production workloads. The move gives teams a managed alternative to the usual stack of VM-based network virtual appliances (NVAs) that have anchored hub-and-spoke designs for years. It also marks August 4, 2026 as the date the service stopped being a preview experiment and became […]

Azure SQL Backup Immutability: Seven Days of Tamper-Proof Backups, Now GA

Microsoft has made backup immutability generally available for the most recent seven days of backups on Azure SQL Database and Azure SQL Managed Instance. The change is enabled by default for every database, and it removes one of the last easy ways for an attacker to destroy your recovery path. The idea is straightforward. Backups […]

Trusted Launch as Default for Azure VMs: Enhanced Security by Default

Microsoft has made Trusted Launch as Default generally available for new Azure Generation 2 virtual machines and virtual machine scale sets. It is a quiet change to the security baseline of the platform, but it is the kind of default that saves people from themselves. Trusted Launch as Default, usually shortened to TLaD, automatically turns […]

Azure Firewall Now Supports HTTP Header Insertion at GA

Azure Firewall now supports HTTP header insertion in application rules, and this is one of those features that sounds small but opens up a lot of useful scenarios for network security teams. The feature went GA on July 27, 2026, and it lets you add or overwrite HTTP request headers directly from the firewall without […]

Microsoft Azure Launches India South Central Region

Microsoft opened a new Azure datacenter region in Hyderabad, Telangana, making it the company’s fourth cloud region in India. The India South Central region went live on July 28, 2026, and it brings Azure services closer to customers in the southern part of the country. The new region sits on a campus in Hyderabad with […]