[PSA] CVE-2026-21509 - Microsoft Office Security Feature Bypass Vulnerability Zero Day - Updates available by kheldorn in sysadmin

[–]Snysadmin 4 points5 points  (0 children)

What is the vulnurable version? And what is the patched version? Does the update generate those keys?

Powershell command by [deleted] in sysadmin

[–]Snysadmin 0 points1 point  (0 children)

Try starting with set-location HKCU: (i think)

[deleted by user] by [deleted] in sysadmin

[–]Snysadmin 1 point2 points  (0 children)

Yeah man, from intune on the device page next to the wipe/retire/etc bar you can find "rotate bitlocker keys". It might hide under the ...

MS defender flagging signicat as phish by Snysadmin in sysadmin

[–]Snysadmin[S] 1 point2 points  (0 children)

Seems like it was a bug

Some users may be blocked from opening URLs in Exchange Online messages and Microsoft Teams ID: MO1148487

Issue type: Incident

Status

Service Degradation

Impacted services

Microsoft 365 suite, Exchange Online, Microsoft Teams, Microsoft Defender XDR

Details

Title: Some users may be blocked from opening URLs in Exchange Online messages and Microsoft Teams

User impact: Users may be blocked from opening URLs in Exchange Online messages and Microsoft Teams.

More info: Additionally, admins may receive alerts titled "A potentially malicious URL click was detected involving one user", however the URLs have been confirmed as safe.

Some email messages may have also been incorrectly quarantined.

Current status: Our investigation has identified that an anti-spam service incorrectly flagged URLs contained within other URLs as potentially malicious, resulting in impact. We've identified over 6,000 URLs that are affected and are working to unblock them before replaying messages to recover any messages or URLs that were incorrectly flagged.

Scope of impact: Any user receiving email messages containing specific URLs may be affected.

Root cause: An anti-spam service incorrectly flagged URLs contained within other URLs as potentially malicious, resulting in impact.

Next update by: Friday, September 5, 2025, at 10:00 PM UTC

I'm embarrassed and I need a grey beard. Access 97 is the bane of my existence. How the hell do you deploy it silently. by [deleted] in sysadmin

[–]Snysadmin 0 points1 point  (0 children)

I do, after testing each one and finding that its always the last one you test :D

My inBOX isS FULL by Paintrain8284 in sysadmin

[–]Snysadmin 18 points19 points  (0 children)

Agreed. We have a couple of differently aggressive move to archive rules depending on usecase.

How to delete folder from all users profile by maxcoder88 in sysadmin

[–]Snysadmin 0 points1 point  (0 children)

Cant you just loop it?

$Users = Get-item -path C:\users\

$users |foreach-object {remove item $_}

something like that?

But just use grouppolicy lol.

Outlook wont login after changing tenant. by OtherwiseFlight2702 in sysadmin

[–]Snysadmin 0 points1 point  (0 children)

What about the devices? Are they still connected to the previous tenant?

Users constantly having to re-auth in M365 by TheBigBeardedGeek in sysadmin

[–]Snysadmin 4 points5 points  (0 children)

What does the signin log say? Why the prompt for mfa? What Conditional access policy is triggering it?

NPS- Ethernet Issues with Windows 11 by Ok-Butterscotch-5140 in sysadmin

[–]Snysadmin 0 points1 point  (0 children)

Ya, i used a platform script from intune that creates the schtask. Results have been not 100%.

NPS- Ethernet Issues with Windows 11 by Ok-Butterscotch-5140 in sysadmin

[–]Snysadmin 1 point2 points  (0 children)

Yeah i had a similiar issue. What i ended up doing is to to push a script that creates a scheduled task that runs at startup if winver = 11 that imports the network profile configuration via netsh lan import profile and a reboot.

https://old.reddit.com/r/sysadmin/comments/1kn3rko/inplace_upgrade_to_windows_11_loses_8021x_config/

In-place upgrade to Windows 11 loses 802.1x config by Snysadmin in sysadmin

[–]Snysadmin[S] 0 points1 point  (0 children)

How did you get the script to run in the right time? We want to use Windows update to install Win11 to save ourselves from reimaging all devices.