WEEKLY BRIEFING · 29 JUN – 5 JUL 2026 · UTC
Public sources only
151 public updates in week 27
MSRC published 48 new Microsoft CVEs, 5 critical. 25 roadmap changes, led by Teams (7) and Microsoft 365 Copilot (6). CISA added 1 Microsoft CVE to its Known Exploited Vulnerabilities catalog. 11 lifecycle milestones fall in the next 30 days. 20 Windows and security articles from Microsoft blogs.
0Windows KB releases
0MSRC release notes
25Roadmap changes across 10 products
20Windows and security articles
48Microsoft CVEs published · 5 critical
1Microsoft CVEs added to CISA KEV
Security to act on1
Windows and security news20
- Windows 365 Boot4 Jul
- Microsoft Defender for Cloud Customer Newsletter2 Jul
- Customize the Start menu with updated policies2 Jul
- Building C# and C++ Apps with GitHub Copilot CLI and Visual Studio 20262 Jul
- Windows news you can use: June 2026 recap1 Jul
15 more
- Windows news you can use: June 20261 Jul
- Behind the Build with Gigamon: Enriching Microsoft Sentinel with Network-Derived Telemetry1 Jul
- ESR management completed the transition to Windows Backup for Organizations1 Jul
- Now generally available: Serverless posture coverage in Microsoft Defender CSPM1 Jul
- Extend data security to the network with Microsoft Purview and Microsoft Entra1 Jul
- Monthly news - July 20261 Jul
- Introducing a unified alert experience for Microsoft Purview Insider Risk Management30 Jun
- Microsoft Defender for Cloud expands multicloud coverage across AWS and Google Cloud30 Jun
- The state of MCP security in 202630 Jun
- What’s new in Microsoft Sentinel: June 202630 Jun
- The AI-first SOC: Copilot, UEBA, threat intelligence, and SOC optimization30 Jun
- The next frontier in endpoint security: Securing local AI agents with Microsoft Defender30 Jun
- Understand your Sentinel tables at a glance: Monitor with table insights29 Jun
- Elder Scrolls Online introduces new in-game event: High Seas of Tamriel29 Jun
- Your readiness playbook: adoption helper, costs, APIs, and the checklist29 Jun
Lifecycle milestones in the next 30 days11
- End of support · 11 products: Dynamics GP 2016, Dynamics GP 2016 R2, Infopath 2013, Project Server 2016, Project Server 2019, SharePoint Designer 2013, SharePoint Server 2016, SharePoint Server 2019, SQL Server 2014, Extended Security Updates Year 2, SQL Server 2016, Visual Studio 2022 , Version 17.12 (LTSC channel) 14 Jul
Microsoft product news99
Microsoft Purview what's new · 16
- In preview: Exchange Online DLP policies can detect classification failures caused by timeouts, throttling, and other scanning errors.1 Jul
- In preview: Expanded note capabilities across alerts and cases.1 Jul
- In preview: Expanded user profile details in the unified alert experience add additional user profile signals from Microsoft Entra, including office location, employee t…1 Jul
13 more
- In preview: Protect sensitive data in text and prompts by integrating with Microsoft Entra Global Secure Access (GSA).1 Jul
- In preview: Unified alert experience combines the Triage Agent and Standard alert dashboards into a single alerts list page.1 Jul
- New: Configure a manual business continuity and disaster recovery environment for Microsoft Purview Data Map.1 Jul
- Update1 Jul
- Updated: Added a checklist to help administrators understand auditing, regional availability, label scope, encryption settings, sensitive information types, file eligibi…1 Jul
- Updated: Administrators can use Microsoft Fabric governance experiences in the OneLake catalog to understand DLP activity and adoption.1 Jul
- Updated: Auto-labeling policies can remove or downgrade sensitivity labels.1 Jul
- Updated: Auto-labeling policy guidance now identifies supported and unsupported group types and explains membership-propagation delays.1 Jul
- Updated: Auto-labeling simulation isn't a completely silent dry run.1 Jul
- Updated: Licensing and configuration locations are documented for client-side Office auto-labeling, service-side auto-labeling policies, and container-level labels.1 Jul
- Updated: Microsoft Purview protection policies no longer support Azure SQL Database.1 Jul
- Updated: Priority cleanup policies now require three separate approvals before content can be permanently deleted: one Priority Cleanup administrator, one retention mana…1 Jul
- Updated: Troubleshoot why a specific SharePoint or OneDrive file was or wasn't labeled.1 Jul
Microsoft Intune what's new · 14
- Advanced Intune capabilities are being added to Microsoft 365 E3 and E529 Jun
- Auto-update for Enterprise App Management applications29 Jun
- Available macOS PKG apps update automatically when you upload a new version29 Jun
11 more
- Enterprise App Management support for GCC High and DoD29 Jun
- Intune support for Trustd Mobile as a mobile threat defense partner29 Jun
- Microsoft Tunnel adds support for Red Hat Enterprise Linux 9.729 Jun
- New Android Enterprise settings in the Intune settings catalog29 Jun
- New Microsoft Defender Antivirus settings for Linux Server devices29 Jun
- New setting added to the Windows security baseline version 25H229 Jun
- New supported OEMConfig apps for Android Enterprise29 Jun
- Newly available protected app for Intune29 Jun
- Remote Help support for RemoteApp in Azure Virtual Desktop29 Jun
- Support for WPA3-Personal in iOS/iPadOS Wi-Fi profiles29 Jun
- Updated security baseline for Microsoft 365 Apps for Enterprise29 Jun
Microsoft Graph changelog · 13
- Users (v1.0): Added the User.ReadUpdate.All delegated and application permission as the least privileged permission to call the Update user API. (+1 more)3 Jul
- Applications (beta): Added the servicePrincipalLockScope enumeration type. (+1 more)2 Jul
- Files (beta): Added the lock method to the driveItem resource. Use it to acquire an exclusive lock on a file or refresh an existing lock held by the call… (+1 more)2 Jul
10 more
- Device and app management (beta): Deprecated the cloudPcNotificationSetting resource. This resource will stop returning data on July 14, 2026. (+1 more)2 Jul
- Identity and access (beta): Added the priority property to the forwardingPolicyLink resource.1 Jul
- Identity and access (beta): Added the quarantined member to the lifecycleWorkflowProcessingStatus enumeration. (+13 more)1 Jul
- Identity and access (v1.0): Added the quarantined member to the lifecycleWorkflowProcessingStatus enumeration. (+13 more)1 Jul
- Identity and access (v1.0): Added the allowOnPremUpdateOfOnPremisesObjectIdentifierEnabled property to the onPremisesDirectorySynchronizationFeature resource.1 Jul
- Files (beta): Added the lockType enumeration type. (+2 more)30 Jun
- Identity and access (beta): Added the callerIdNumber property to the voiceAuthenticationMethodConfiguration resource.30 Jun
- Identity and access (v1.0): Added the canceling member to the lifecycleWorkflowProcessingStatus enumeration. (+3 more)30 Jun
- Security (beta): Added the caseManagement relationship to the security resource. (+39 more)29 Jun
- Security (beta): Added the optional workspaceId parameter to the runHuntingQuery method on the security resource. (+1 more)29 Jun
Claude Platform release notes · 10
- The Python (0.116.0), TypeScript (0.110.0), Go (1.56.0), Java (2.48.0), Ruby (1.55.0), PHP (0.36.0), C# (12.35.0), and CLI (1.16.0) SDKs now send agent-memory-2026-07-22…2 Jul
- We've added the agent-memory-2026-07-22 beta header, which changes how listing memories (GET /v1/memory_stores/{memory_store_id}/memories) behaves: results are returned…2 Jul
- We've restored access to Claude Fable 5 and Claude Mythos 5.1 Jul
7 more
- Claude Managed Agents session event streams now support event deltas.30 Jun
- Claude Managed Agents vaults now support an injection_location setting on environment variable credentials (the Environment variable tab).30 Jun
- Listing sessions for Claude Managed Agents now supports backward pagination.30 Jun
- We've launched Claude Sonnet 5 (claude-sonnet-5), the next generation of our Sonnet model family, at introductory pricing of $2 / $10 per MTok (made the standard price o…30 Jun
- Webhooks for Claude Managed Agents now cover the agent, deployment, and deployment run lifecycle.30 Jun
- When creating a Claude Managed Agents session, you can now override the agent's configuration for that session.30 Jun
- We've removed fast mode for Claude Opus 4.6.29 Jun
Microsoft Defender for Identity what's new · 7
- Automatic RPC auditing on domain controllers1 Jul
- Defender for Identity sensor updates1 Jul
- Expanded SaaS app support in Password protection (Preview)1 Jul
4 more
Microsoft Defender for Cloud release notes · 7
- Database-level recommendations for SQL Vulnerability Assessment (GA)1 Jul
- Deprecation completed: Legacy grouped recommendations removed from Azure portal1 Jul
- Discovery and posture for serverless container workloads is now generally available1 Jul
4 more
- Foundational CSPM moves to opt-in model for new Azure subscriptions1 Jul
- Kubernetes misconfiguration enforcement in Defender for Containers is now generally available1 Jul
- New container security capabilities are now generally available1 Jul
- Plan enablement API now blocks onboarding to five deprecated Defender plans1 Jul
Copilot Studio what's new · 6
- (Preview) Add a workflow or MCP server as a tool for agents powered by the GitHub Copilot harness to extend your agent with multistep automated processes or external ser…1 Jul
- (Preview) Export environment-level agent telemetry to Azure Application Insights through the Power Platform admin center.1 Jul
- (Preview) Let users attach files to a conversation and view files your agent creates during a conversation, for agents powered by the GitHub Copilot harness.1 Jul
3 more
- (Preview) Submit your MCP server for Microsoft certification to give customers and administrators confidence that it meets Microsoft's expectations for reliability, secu…1 Jul
- Deploy the same real-time agent across voice and digital messaging channels (digital messaging in preview) for consistent, natural, context-aware conversations.1 Jul
- Starting in July 2026, Copilot Studio automatically creates a Microsoft Entra Agent ID for every new agent, and you can no longer opt out at the environment level.1 Jul
Microsoft Defender XDR what's new · 4
- (GA) Real-time protection for Microsoft Agent 365 tooling servers1 Jul
- (GA) The Domain investigation page allows you to investigate an Active Directory domain.1 Jul
- (Preview) AI agent posture risk in Microsoft Defender1 Jul
Microsoft Defender for Office 365 what's new · 4
- Localized default Mark as and notify email templates1 Jul
- Microsoft Defender for Office 365 Plan 1 included in Microsoft 365 E31 Jul
- Prompt injection protection1 Jul
1 more
Classic Outlook known issues · 3
- [DESIGN CHANGE] How to use Outlook Support and Recovery Assistant diagnostics in Windows Get Help1 Jul
- [FIXED] Policy Tips are not displayed for message bodies or attachments in classic Outlook1 Jul
- [INVESTIGATING] Classic Outlook for Windows might crash when accepting a Shared Calendar invite1 Jul
Jamf Blog · 2
- Why classroom management tools are critical to student learning outcomes2 Jul
- How Jamf and Amplifier Security close the remediation gap1 Jul
Microsoft Intune Blog · 2
- Migrating frontline mobile devices: Identity considerations for assigned and shared devices1 Jul
- Streamlining macOS security: Automatically enable AutoFill after Platform SSO registration29 Jun
Microsoft Entra Blog · 2
- Bring business logic into PIM role activation workflows1 Jul
- Protect sensitive data in motion across SaaS and AI apps with Microsoft Purview and Microsoft Entra1 Jul
Gemini API release notes · 2
- Gemini Omni Flash in public preview30 Jun
- Released gemini-3.1-flash-lite-image (Nano Banana 2 Lite) to general availability (GA), our built-in multimodal model optimized for ultra-low latency and cost-effective…30 Jun
Microsoft 365 Blog · 1
Azure Connected Machine agent release notes · 1
Microsoft Sentinel what's new · 1
Azure Virtual Desktop what's new · 1
Microsoft 365 Developer Blog · 1
SharePoint Blog · 1
Microsoft Teams Blog · 1
From the community7
- EPM Part 3: Writing Intune Endpoint Privilege Management rules for the real world: File hash, certificate, and when each one is the wrong choice3 Jul
- How to Record Snapshots for Teams Memberships3 Jul
- Defender for Endpoint performance troubleshooting on Linux2 Jul
- The Misleading Teams Remove External Chat from User View API2 Jul
- Announcing Microsoft 365 for IT Pros (2027 Edition)1 Jul
Microsoft 365 roadmap25
Teams · 7
- Microsoft Teams: Add Breakout Room Participants in Bulk Using CSV1 Jul
- Microsoft Teams: Improved request flows for apps and agents blocked by admins1 Jul
- Microsoft Teams: Recently used emojis sync across devices1 Jul
4 more
- Microsoft Teams: Microsoft Teams: Secure Reliable Transport (SRT) Support for Teams town halls30 Jun
- Microsoft Teams: Live transcription in Teams Rooms on Android29 Jun
- Microsoft Teams: Restart your Town hall event29 Jun
- Microsoft Teams: Scoped Search for SharePoint app in Teams (Viva Connections)29 Jun
Microsoft 365 Copilot · 6
- Microsoft Copilot (Microsoft 365): [Copilot Extensibility] [AdminX] Pre-setup guides, editability, actionable errors & alerting support available for Connector admins2 Jul
- Microsoft Copilot (Microsoft 365): Improved content freshness using Copilot connectors with webhooks-led notifications1 Jul
- Microsoft Copilot (Microsoft 365): Web Link as a Reference in Copilot Notebooks30 Jun
3 more
Copilot Studio · 3
- Microsoft Copilot Studio: Block the use of maker-provided credentials for authentication2 Jul
- Microsoft Copilot Studio: Enforce safe sharing by detecting credential oversharing1 Jul
- Microsoft Copilot Studio: Invoke agents as workflow steps with the agent node1 Jul
Purview · 3
- Microsoft Purview: Data Security Investigations – Introducing new custom examination2 Jul
- Microsoft Purview compliance portal: Admin assignment time limit1 Jul
- Microsoft Purview: Data Loss Prevention - Extend Purview data security to the network layer via Entra GSA integration1 Jul
6 more products · 6 changes
Microsoft Edge · 1
Microsoft Entra · 1
Outlook · 1
Planner · 1
Universal Print · 1
Viva · 1
Every line opens its detail page or the original Microsoft source. This briefing uses public sources only and says nothing about your tenant or devices.