📡 IT SecOps News — September 16, 2026
Daily IT SecOps, vulnerability, patch, and security news briefing. Sources monitored: 17 feeds across Microsoft, CISA, security news, and IT communities
🚨 High Alerts & Active Exploits
Critical vulnerabilities, zero-days, active exploits in the wild, and emergency advisories requiring immediate IT SecOps attention.
The true cost of a ransomware attack, with and without BCDR
Source: BleepingComputer · Published: September 16, 2026 at 02:00 PM UTC · 🔗 Direct Link to Article / Advisory
The ransom itself can be only a fraction of the total cost of a ransomware attack, with downtime, recovery, remediation, and legal obligations adding millions to the bill. Datto explains how a mature BCDR strategy can reduce downtime and provide a faster, more predictable path to recovery. […]
N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security
Source: The Hacker News · Published: September 16, 2026 at 11:58 AM UTC · 🔗 Direct Link to Article / Advisory
N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on obvious malware activity. From there, a single compromised identity can open the door to sensiti…
Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation
Source: The Hacker News · Published: September 16, 2026 at 11:15 AM UTC · 🔗 Direct Link to Article / Advisory
🛡️ CVE: CVE-2026-58704 (CVE.org) · (NVD) Google has disclosed that a high-severity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as CVE-2026-58704 (CVSS score: 8.0), is a privilege escalation flaw. “In Cellular Modem, there is a possible permission bypass due to a logic error in the code,” according to a description of the…
🔥 [ACTIVELY EXPLOITED / ZERO-DAY] Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks
Source: The Hacker News · Published: September 16, 2026 at 11:08 AM UTC · 🔗 Direct Link to Article / Advisory
🛡️ CVE: CVE-2026-87886 (CVE.org) · (NVD) Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host Manager (WHM) deployments has been exploited in the wild. The vulnerability, tracked as CVE-2026-87886 (CVSS score: 7.8), is described as a case of local privilege escalation due to insecure file permissions. It affects the following versions - Acr…
🔥 [ACTIVELY EXPLOITED / ZERO-DAY] Google fixes actively exploited Android zero-day on Pixel devices
Source: BleepingComputer · Published: September 16, 2026 at 07:00 AM UTC · 🔗 Direct Link to Article / Advisory
Google has released the September 2026 security patches to address 110 vulnerabilities affecting its Pixel devices, including one zero-day flaw actively exploited in targeted attacks. […]
⚠️ Bad Updates & Known Issues
Reports of problematic updates, broken KBs, OS regressions, and patches causing issues.
No problematic update reports detected today.
📅 Upcoming Changes & Deprecations (14-Day Horizon)
Upcoming security changes, feature retirements, and deadlines on the horizon.
-
📆 Microsoft Purview: Data Loss Prevention-Upgraded inline protection for Microsoft Entra-managed apps in Edge for Business — Microsoft 365 Roadmap · Read Announcement → Microsoft Purview is upgrading inline data protection for Microsoft Entra-managed apps in Edge for Business. The experience integrates with a Microsoft Entra Conditional Access grant control and simplifies configuration while removing current Purview policy restrictions. Admin…
-
📆 Microsoft Purview: Data Loss Prevention-Expanded inline protection for unmanaged apps in Edge for Business — Microsoft 365 Roadmap · Read Announcement → Microsoft Purview collection and data loss prevention (DLP) policies will support browser inline protection for a significantly broader set of unmanaged generative AI apps in Edge for Business. Admins can use existing Purview policy experiences to detect and protect sensitive …
-
📆 Outlook: Spell check before sending emails in new Outlook — Microsoft 365 Roadmap · Read Announcement → If you don’t want to check spelling manually for every message—or you’re worried you might forget!—you can set Outlook to check spelling for you every time before sending emails. GA date: October CY2026
-
📆 Dynamics 365 Project Operations: Optimize, discover and manage features from one place — Microsoft 365 Roadmap · Read Announcement → A single place in Project Operations where administrators and end users can discover the core features relevant to them in lite or resource/non-stocked deployments . **For administrators: ** Browse features by status: New, Available, Enabled, or Coming soon. Filter and search …
-
📆 Microsoft Teams: Ask Copilot from Search on Mobile — Microsoft 365 Roadmap · Read Announcement → Get answers without leaving search. As you type in the Teams search bar, you’ll see an option to ask Copilot alongside search results. You can also select Ask Copilot from the search results page to turn your query into a Copilot conversation, helping you quickly find informat…
-
📆 Microsoft Copilot Studio: Cost visibility in Monitor tab — Microsoft 365 Roadmap · Read Announcement → Now makers will have clear visibility into their consumption costs directly within Monitor tab at both a per-agent level and an estimated breakdown of those costs across the agents lifecylce. This will allow makers to see costs distributed across activities such as authoring, …
-
📆 Microsoft Copilot Studio: Cost visibility in Agent Evaluations — Microsoft 365 Roadmap · Read Announcement → Now makers will have clear visibility into their consumption costs directly associated with their evaluations, including a breakdown of usage for eval generation, test runs and model grading/judgement. Makers can see the costs as they test, iterate, and review conversations, m…
-
📆 Microsoft Copilot Studio: Cost visibility in Preview Chat and History — Microsoft 365 Roadmap · Read Announcement → Now makers will have clear visibility into their consumption costs directly within preview tab and agent history for their preview/testing usage as well as all every historical run. Makers can see the costs as they test, iterate, and review conversations, making usage costs tr…
-
📆 Microsoft Purview: DSPM-Copilot Readiness and Data Explorer — Microsoft 365 Roadmap · Read Announcement → We’re introducing the new readiness for Microsoft Copilot and data explorer experiences in Microsoft Purview Data Security Posture Management (DSPM). These new capabilities provide data security teams with greater visibility into their organization’s data security posture and …
-
📆 Microsoft Purview: Unified Classification Management Experience — Microsoft 365 Roadmap · Read Announcement → The Unified Classification Management Experience unifies every classifier in Microsoft Purview—Sensitive Information Types (SITs), Exact Data Match (EDM), fingerprint SITs, and trainable classifiers—into one place to discover, create, validate, and manage classifiers. GA date:…
-
📆 PowerPoint: Async Notifications for PowerPoint Agent (Web) — Microsoft 365 Roadmap · Read Announcement → Enable users to leave PowerPoint, switch devices, go offline, or end their workday while remaining confident that Copilot will notify them when work is complete or requires attention. GA date: October CY2026
-
📆 PowerPoint: Async Notifications for PowerPoint Agent (Windows Desktop) — Microsoft 365 Roadmap · Read Announcement → Enable users to leave PowerPoint, switch devices, go offline, or end their workday while remaining confident that Copilot will notify them when work is complete or requires attention. GA date: October CY2026
-
📆 Microsoft Teams: Two presenters can share their screens or windows simultaneously in meetings — Microsoft 365 Roadmap · Read Announcement → Two presenters can share a screen or window at the same time in a Teams meeting. Participants can see both shared content streams simultaneously, making it easier to compare and discuss content from different presenters. GA date: November CY2026
✅ Official Updates & Security Advisories
Feature announcements, security blogs, and official releases.
- Critical ScreenConnect flaw now actively exploited in attacks — BleepingComputer · Read Article → Attackers now exploit a critical-severity ConnectWise ScreenConnect vulnerability in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). […]
🐛 IT SecOps Community Buzz
What IT SecOps teams and sysadmins are discussing today.
- Getting patch fatigue? Chrome and Firefox fix 115 issues — Neowin · View Thread →
Chrome 153 fixes three critical vulnerabilities while Firefox 156 patches 73 security issues, requiring users to restart their browsers to apply the fixes. Read more…
- KB5129195: Media Creation Tool gets one of the last Windows 11 25H2 ISOs before 26H2 release — Neowin · View Thread → — 🔧 KB: KB5129195 (Microsoft Support)
You can now clean install the latest Windows 11 update, KB5129195, using Microsoft’s official Media Creation Tool. Read more…
Generated automatically at September 16, 2026 at 03:18 PM UTC · View all IT SecOps news →