Skip to content
Menu
IT-DRAFTS
  • About
  • Privacy policy
IT-DRAFTS

Category: Security

February 25, 2025

Microsoft Fixes Power Pages Zero-Day Exploited in Attacks: A Deep Dive

Microsoft has recently patched a critical zero-day vulnerability in its Power Pages platform, which had been actively exploited in targeted attacks. The flaw, tracked as CVE-2025-24989, is a high-severity elevation of privilege vulnerability that allowed attackers to bypass user registration controls and gain unauthorized access to sensitive systems. Here’s a detailed breakdown of the issue,…

Read More
February 21, 2025

OWASP Top 10 NHIs Risks 2025

1. Improper Offboarding When NHIs (Non-Human Identities) like service accounts, API keys, and machine credentials are not properly offboarded, they can become a security risk. This includes failing to deactivate old or deprecated secrets, leading to “zombie NHIs” that attackers can exploit. Automating the NHIs lifecycle ensures stale secrets are discovered and revoked, reducing attack…

Read More
February 19, 2025

How NAT works

Network Address Translation (NAT) is a technique used to modify network address information in packet headers while in transit across a traffic routing device. In simple terms, NAT allows multiple devices on a local network to share a single public IP address when accessing the internet. Here’s a basic explanation of how NAT works, particularly…

Read More
February 19, 2025

How EDR Works?

Hu for All, that image appears to be an infographic or presentation slide explaining how Endpoint Detection and Response (EDR) works in cybersecurity. 1. **EDR Overview**: EDR is a cybersecurity solution that continuously monitors and analyzes endpoint activities to detect, investigate, and respond to threats like malware and ransomware. It records system behaviors, uses data…

Read More
October 9, 2024

Some Microsoft zero-day vulnerabilities that are being exploited in the wild.

Zero-day vulnerabilities are a big worry because they’re security flaws that haven’t been fixed or made public yet. This gives attackers a chance to exploit them. This is a big concern for organisations that rely on Microsoft software and services. Some experts warning is about vulnerabilities in some of Microsoft’s most widely used applications. These…

Read More
September 4, 2024

Microsoft has recognized the problem with the dualb00t between Windows and Linux

Microsoft has confirmed that August security updates for supported versions of Windows mistakenly applied Secure Boot Advanced Targeting (SBAT) settings to some dual-boot Windows and Linux systems. Because of this, users might encounter an error when trying to run Linux on their device. Microsoft has also published instructions that will fix the problem.: Disable secure…

Read More
July 31, 2024

Microsoft Global Outage: Azure and 365 Services Down

Microsoft has issued an apology after reports of issues with its products, including email service Outlook and the popular game Minecraft. The company is investigating widespread outages that have affected access to some Microsoft 365 and Azure services. An alert on the company’s website confirmed that a network infrastructure issue was causing difficulties accessing Microsoft…

Read More
July 22, 2024

Microsoft has released a tool to restore Windows devices affected by the CrowdStrike update

Microsoft has released a tool that helps IT professionals quickly restore Windows computers that fail after a CrowdStrike update. This problem affected 8.5 million devices worldwide and disrupted the work of banks, airlines, television companies, supermarkets, and other organizations. The tool creates a bootable USB drive with Windows PE environment. It automatically accesses the system…

Read More
July 19, 2024

Global Windows Crash with CrowdStrike protection systems installed

Global Windows Crash firstly- how to repair – from Russian experts!!! 1. Restart Windows and boot into Safe mode 2. Open a command prompt 3. Go to C:\Windows\System32\drivers\CrowdStrike 4. Locate the file matching “C-00000291* sys”, and delete it. [or Rename the file CSAgent.sys to something else, eg. donotcrash.sys] 5. Continue normal startup )))))))))) no need…

Read More
July 18, 2024

“It will be difficult for everyone to ignore GDPR”: what you need to know about the regulations

On May 25, 2018, the General Data Protection Regulation (GDPR) came into effect, which sets new rules for handling personal data in the European Union. Here are answers to the six most common questions about the GDPR: 1. **What is the GDPR?** The GDPR is the General Data Protection Regulation, which provides residents of the…

Read More
  • 1
  • 2
  • Next

Categories

  • 365
  • Active Directory
  • announcement
  • App-V
  • Artificial intelligence
  • AZURE
  • Cisco
  • Dell
  • en Français
  • Entra
  • GDPR
  • How its works
  • Intelligence Artificielle
  • juste des pensées
  • Licensing
  • Microsoft Product Name
  • Microsoft will end support
  • Migration
  • MS Teams
  • Network
  • new items
  • Office
  • OWASP
  • SAM
  • Security
  • Servers
  • Troubleshooting
  • Uncategorized
  • Updates
  • Virtualization
  • Windows10
  • Windows11

Archives

  • May 2025
  • February 2025
  • October 2024
  • September 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024

Recent Comments

No comments to show.

Recent Posts

  • How to- Azure Front Door with your Power Pages website (includes step by step)
  • Work around the OCSP validation issue in Azure Application Gateway
  • Windows 11 Insider Preview Build 27842
  • Microsoft will end support for App-V in 2026 (plan for migration to MSIX)
  • project of face detection Python v.1
©2025 IT-DRAFTS | Powered by WordPress and Superb Themes!