Microsoft tests the 15-character limit of Windows Server admins' patience

2026-05-28T19:24:04Z9af4afb96fb0d828e5b180ecddbe99abc124313a47af67db970cad46c9986641
AI-securitybotnetcert-inciscocode-signingdata-breachdrupalextortiongithubglasswormgrafanaincident-responselinuxmacosmegalodonnginxpatchingphishingransomwarerepository-poisoningshai-huludshinyhunterssupply-chaintanstackvulnerabilities

What happened

A broad set of security stories: multiple high-impact supply-chain and repository poisonings (TanStack, Megalodon, Shai‑Hulud, poisoned VS Code extension) and codebase/account compromises (Grafana, GitHub) led to exfiltration and malware spread. Major vendors and platforms are in the headlines — Microsoft (Windows Server hostname/patch issues and disruption of an illegal code‑signing operation), Cisco (tenant‑boundary Secure Workload admin flaw), Drupal (urgent critical core patch), and NGINX (RIFT exploit activity) — alongside data breaches and extortion incidents (Carnival/ShinyHunters, MyP­

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
9af4afb96fb0d828e5b180ecddbe99abc124313a47af67db970cad46c9986641
Enrichment time
2026-05-28T19:24:04Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.