LIVE · cybersecurity feed
Live wire
CISA’s logging guidance works beyond governmentCISA orders urgent patching of actively exploited Zimbra flawZero-Click Grok Chat History Theft: Adversa AI Demonstrates Cryptographic Context InjectionMalware Hijacks Android Car Head UnitsCritical Flaw in NASA/JPL Open-Source Spacecraft Command Software Allowed Unauthenticated Command ExecutionCVE-2026-73570 · U.S. CISA adds Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogCVE-2024-3094 · Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply ChainHow an Emerging Industrial Protocol Family Could Put OT at Risk14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2Hundreds of leaked AWS keys give full control over corporate accounts
security

Microsoft Teams now lets admins block external bots from meetings

Microsoft is rolling out a new Teams meeting protection policy that allows administrators to automatically block all identified external bots from joining Teams meetings. [...]

zeroday.news ·

Microsoft has introduced a new policy for Teams that allows administrators to automatically block all identified external bots from joining meetings. This feature is designed to enhance meeting security by preventing third-party bots and potentially malicious applications from accessing conversations without explicit human approval.

The new policy builds on a previous update from June, which introduced smarter bot protection by tagging detected bots in the meeting lobby and requiring organizer approval for their admission. The latest iteration streamlines this process, automatically denying entry to external bots without requiring an organizer's manual confirmation.

According to a Microsoft 365 Message Center update, the company stated that this update provides administrators with greater control over how identified bots are handled, thereby helping to reduce organizational risk. The policy is currently in a targeted release phase, expected to conclude by the end of August, with worldwide general availability anticipated by late September.

Administrators can find the new setting under "Manage bots" within the meeting protection settings in the Teams admin center. It will be disabled by default, requiring activation and evaluation by an administrator before deployment. Once enabled, the policy can be assigned to specific users or groups through existing Teams meeting policy management.

The change addresses concerns that various third-party bots, used for tasks such as note-taking or transcription, as well as malicious apps controlled by threat actors, could join Teams meetings unnoticed. Microsoft previously warned in April about a surge in attacks exploiting Teams for initial access and lateral movement within enterprise networks. These attacks often involve threat actors impersonating IT or helpdesk personnel via cross-tenant chats to trick employees into granting remote access and stealing data.

Since December, administrators have also been able to block external Teams users via the Defender portal to counter cybercrime groups, including ransomware operators, who leverage Teams for social engineering attacks. Additional admin controls announced in June are also planned, including options to entirely block external bots, create allow lists for approved bots, and access admin reports and audit logs on bot detection and presence, along with more granular security controls.

ShareXLinkedInWhatsAppFacebook

More News

view all →
breach

South Korean startup platform breach exposes key management failures

A breach at South Korea's government-backed startup platform exposed encrypted personal data after an encryption key was included in an API. Penta Security explains why encryption keys must be securely managed and kept separate from the data they protect. [...]

security

Hired for One Job, Judged on Another: The CISO’s Real Problem

The skills that get a CISO hired are rarely the skills they are judged on later. Most security leaders are stuck in that gap. Closing it is the real job. The post Hired for One Job, Judged on Another: The CISO’s Real Problem appeared first on SecurityWeek.

security

Doubloon Dredger Abuses Notion to Harvest Authentication Tokens

Doubloon Dredger abused Notion and malicious PDFs to harvest Microsoft authentication tokens

security

Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts

Dutch Data Protection Authority said it is imposing a fine of 825 million euros because Uber violated the EU’s General Data Protection Regulation. The post Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts appeared first on SecurityWeek.

patch

Microsoft: August updates break printing, PDF export in WPF apps

Microsoft has confirmed that .NET Framework updates released as part of the August 2026 Patch Tuesday are breaking printing and PDF export in WPF applications. [...]

security

Venezuelan Gets Record Federal Prison Term for ATM Jackpotting

Juan Manuel Gouveia-Aguilera has been sentenced to 8 years in prison for his role in an ATM jackpotting scheme that caused millions in losses. The post Venezuelan Gets Record Federal Prison Term for ATM Jackpotting appeared first on SecurityWeek.