
Emergency Microsoft Security Warning Confirmed — Act Now, CISA Says
Hot on the heels of an official security advisory from America's Cyber Defense Agency warning of camera hack attacks, the U.S. Cybersecurity and Infrastructure Security Agency has issued another alert. This time, it impacts users of Microsoft Exchange Server and, without immediate remediation, could enable an attacker to escalate privileges and 'impact the identity integrity of an organization's Exchange Online service.' But it's not all bad news on the Microsoft security front; the technology giant has confirmed new AI-powered protections to autonomously reverse engineer and classify malware, importantly, without any prior context requirement. Here's what you need to know.
CISA And Microsoft Warn Users Of CVE-2025-53786 Attack Danger
There have been a number of security warnings impacting Microsoft users of late that may have caught your attention: the Windows JPEG hackers and, of course, the by now infamous SharePoint Server attacks to name but two. The very latest, however, comes with the added weight of a CISA alert attached.
'CISA is aware of the newly disclosed high-severity vulnerability, CVE-2025-53786,' the August 6 advisory warned, 'that allows a cyber threat actor with administrative access to an on-premise Microsoft Exchange server to escalate privileges by exploiting vulnerable hybrid-joined configurations.'
Microsoft, meanwhile, has said that 'starting in August 2025, we will begin temporarily blocking Exchange Web Services traffic using the Exchange Online shared service principal,' as part of a 'phased strategy to speed up customer adoption of the dedicated Exchange hybrid app and making our customers' environments more secure.'
Although CISA confirmed that there has not been any observed active exploitation of CVE-2025-53786, it strongly urged organizations to follow the Microsoft guidance on this issue.
CVE-2025-53786 is officially listed as a Microsoft Exchange Server Hybrid Deployment elevation of privilege vulnerability that follows an accompanying non-security hot fix when the hybrid deployments were announced on April 18. 'Following further investigation,' the official Common Vulnerabilities and Exposures database entry reads, 'Microsoft identified specific security implications tied to the guidance and configuration steps outlined in the April announcement.'
CISA added that it 'highly recommends entities disconnect public-facing versions of Exchange Server or SharePoint Server that have reached their end-of-life (EOL) or end-of-service from the internet.'
Microsoft Announces Project Ire, Calling It The Gold Standard In AI Malware Classification
To balance the Microsoft security news scales a little, it has also been announced that a new 'autonomous AI agent that can analyze and classify software without assistance.' In other words, fully reverse engineer a software file in order to classify potential malware and do so without 'any clues about its origin or purpose.' Something that, Microsoft said, is not only a step forward in cybersecurity and malware detection, but also the gold standard in malware classification.
Project Ire, born out of Microsoft Research, Microsoft Defender Research and the Microsoft Discovery & Quantum teams working together, uses decompilers alongside other tools to determine whether the software in question is malicious or not. 'The system uses advanced language models and a suite of callable reverse engineering and binary analysis tools to drive investigation and adjudication,' Microsoft said. And does so, according to Microsoft's figures, with a 0.08 precision rate using public datasets of Windows drivers.
Hashtags

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
28 minutes ago
- Yahoo
4CE Engineering Group Launches with Mission to Modernize Civil Infrastructure Through Strategic Acquisitions
Backed by leading private equity firm Quad-C, new engineering platform aims to unite top regional firms and drive industry-wide progress GREENVILLE, S.C., Aug. 11, 2025 /PRNewswire/ -- Today marks the official launch of 4CE Engineering Group, a new engineering firm formed to modernize the civil infrastructure industry by uniting best-in-class engineering firms across the country. Pronounced "Force," 4CE is backed by middle-market private equity firm Quad-C Management, Inc., and led by industry veteran Wes Kingery, former Chief Operating Officer and Chief Revenue Officer of industry leader Vortex Companies. 4CE Engineering Group is on a mission to bring a new kind of energy to engineering; one rooted in collaboration, growth, and purpose. The group is actively seeking to partner with small to mid-sized firms in the water / wastewater, stormwater, transportation, aviation, and civil infrastructure markets that: Value their people and culture, Are regional leaders aiming to grow without losing control, and Believe in the power of collaboration to move the industry forward. "We built Vortex into the number one brand in trenchless infrastructure, scaling 15X in eight years and expanding the team from 150 to 1400 in that time, resulting in a world class organization," said Wes Kingery, Founder and CEO of 4CE. "Now, we're bringing that same velocity and vision to engineering with a platform that empowers firms to grow without sacrificing who they are." The name 4CE reflects a double meaning: "Force Civil Engineers," a nod to the company's civil focus and bold intent to drive change, and a tribute to Quad-C as well as Wes Kingery's four children. At its core, 4CE represents the strength, energy, and unity required to move the industry forward, connecting asset owners, engineers, contractors, and manufacturers in new ways. "4CE will be more than a holding company - we plan to build a coalition of high-performance firms committed to better outcomes, smarter infrastructure, and long-term impact," said Matt Trotta, Principal at Quad-C. "We're proud to support this effort and the leadership behind it." 4CE's growth strategy centers on acquiring engineering firms with strong regional footprints, cultural alignment, and expertise in core infrastructure disciplines. The firm will provide strategic support, operational resources, and capital investment to help partner firms scale, innovate, and retain their unique identities. About 4CE Engineering Group4CE is an engineering growth platform designed to partner with select civil infrastructure firms to bring about meaningful, sustainable progress. With deep industry roots and financial backing from Quad-C, 4CE empowers firms to scale smartly, serve better, and remain true to their mission. and on LinkedIn. About Quad-CFounded in 1989 and headquartered in Charlottesville, Virginia, Quad-C is a middle market private equity firm focused on investing in well-established services and industrial companies. In its 35-year history, Quad-C has invested over $4 billion of equity across more than 85 companies. The Quad-C team is committed to partnering with entrepreneurs and management teams to accelerate growth and create long-term value. and on LinkedIn. Corporate Contact:Wes KingeryFounder & CEO, 4CE Engineering Group355 S. Main Street, Suite 2288Greenville, SC 29601 Media Contact: Jackie Herrera Email: Phone: 713-791-8284 View original content to download multimedia: SOURCE 4CE Engineering Group Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data


CNET
29 minutes ago
- CNET
Limited Time Best Buy Sale Lops Up to 58% Off Chromebook Models, Just in Time for Back-to-School Season
If you've been waiting for a chance to get your hands on a Chromebook but you don't like the prices that are normally involved, then today could be a very good day for you. After all, it's not often a bunch of great options get discounted all at the same time. Best Buy has just kicked off a massive sale that knocks up to 58% off a range of different Chromebook options. It means that you can snag budget options and even more expensive ones with some hefty savings, with prices starting at just $169. These deals won't last for long though, so make sure you grab the one you want quickly. There are a total of 10 on sale at the moment, so we'll quickly cover the cheapest and most expensive options. The Lenovo IdeaPad Slim 3 has a 14-inch screen, 4GB of RAM, and 64GB of storage. It'll get the job done for most low-lift tasks, and it's currently $230 off, dropping it to just $169. On the high end, you've got the Asus ExpertBook CX54 with a 2K, 14-inch screen, 16GB of RAM and a 256GB SSD. This thing'll cover pretty much everything you can do on a Chromebook, and it's $180 off, meaning it's down to $649. There are plenty of options between these two, so it's best to have a look at them with a clear view of your budget and needs. Hey, did you know? CNET Deals texts are free, easy and save you money. Given the wealth of options here, along with the size of some of the discounts, these are easily some of the best Chromebook deals going on at the moment. Make sure you grab the option you want quickly though, as the sale is due to end Sunday, Aug. 17. Why this deal matters With back-to-school season upon us, many parents are looking to upgrade the daily carry of their kids. Chromebooks offer an affordable alternative to regular Windows or Mac laptops, and if the browser-based nature suits the type of work your kids will be doing, these are some of the best offers going right now.


CNET
29 minutes ago
- CNET
This iOS 26 Toggle 'Fixes' a Camera App Redesign Issue You Might Have Noticed
Apple released the second public beta of iOS 26 on Thursday, and the beta brings a new Liquid Glass design, call screening and more features to the iPhones of developers and beta testers. The beta also introduces a redesigned Camera app that simplifies some aspects of the app. The Camera app revamp also inverts how you switch between different camera modes, like video, and it's horrible. After years of swiping in one direction to get to a photo mode, imagine my surprise when I swiped and was sent in the opposite direction. "I want to go to portrait mode, iPhone!" I would say while using the beta. "Well, that's too damn bad!" I imagined my iPhone responding as it sent me to video mode instead. CNET senior writer Jeff Carlson thinks the change is due to the Liquid Glass redesign. "If you hold the lozenge and move it left or right, it's the glass element that is being shifted and the modes (which change everything on the screen) go with it," he said. "I can see the intent behind the design choice, even though it reverses years of learned behavior on the part of users." Apple introduced a toggle in the iOS 26 beta called Classic Mode Switching. It lets you undo Apple's decision so you can swipe between Camera modes like you did prior to the iOS 26 beta. Remember, Apple is still beta testing iOS 26. That means the update might be buggy for you, and your device's battery life may be affected, so it's best to keep potential troubles off your primary device. If you want to try out the beta, I recommend downloading it on a secondary device. It's also possible that Apple could adjust or remove certain features currently in the iOS 26 betas, including the Classic Mode Switching option, before the stable version of iOS 26 is released this fall. Here's where to find Classic Mode Switching to revert your Camera swipe direction. How to 'fix' your Camera app's swiping direction 1. Tap Settings. 2. Tap Camera. 3. Tap the Classic Mode Switching toggle near the bottom of the menu. Apple/Screenshot by CNET Once enabled, you can change between camera modes like you did before! It's a simple quality-of-life change that I can see a lot of people looking for once they update to iOS 26. Apple's decision to invert the way we swipe to different camera modes might be a byproduct of Liquid Glass like Carlson suggested. But at least the tech giant also gave us the freedom to nullify this with the Classic Mode Switching toggle. For more on iOS 26, here are my first impressions of the iOS version, how to enable call screening in the beta and all the other new features Apple said the update will bring to your device later this year.