Sign in

Kay Sauter

@kaysauter.bsky.social
1.1K followers 641 following 157 posts

Data Platform MVP. Data solution architect. #a11y. Cochlear Implants. databash.live & aka.ms/dataTGIF organizer. He/him

PostsRepliesMedia
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 16/09/2026
NEW BLOG POST! In this blog post, you'll learn how two minutes of SQL database in Fabric activity can mean 17 minutes of compute billing. And when a CPU chart doesn't tell the whole story. data-mozart.com/the-query-fi...
data-mozart.com
The query finished...Why is my Fabric SQL database still consuming CUs? - Data Mozart
Two minutes of database activity can mean 17 minutes of compute billing. And a CPU chart doesn't tell the whole story. Let's work through SQL database in Fabric billing with examples from application ...
021
Reposted by Kay Sauter
Andres Bohren @andresbohren.bsky.social · 01/09/2026
🚨New #Azure #PowerShell Modules #AZ 16.3.0 have been released tinyurl.com/yeufuk4w
011
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 30/08/2026
Almost there! More than a year after @shbwatson.bsky.social and I started writing our "Analytics Engineering with Microsoft Fabric and Power BI" book for @oreilly.bsky.social, we are a few weeks from finally seeing the book released! You can already order it on Amazon www.amazon.com/Analytics-En...
amazon.com
Analytics Engineering with Microsoft Fabric and Power BI: The Definitive Guide for Building Enterprise-Grade Analytics Solutions
Analytics Engineering with Microsoft Fabric and Power BI: The Definitive Guide for Building Enterprise-Grade Analytics Solutions [Watson, Shabnam, Ilic, Nikola] on Amazon.com. *FREE* shipping on qualifying offers. Analytics Engineering with Microsoft Fabric and Power BI: The Definitive Guide for Building Enterprise-Grade Analytics Solutions
171
Reposted by Kay Sauter
Bluesky @bsky.app · 10/08/2026
v1.130 is live! Want to follow someone for their posts but not their reposts? Now you can — turn on "Hide reposts in feeds" for any account you follow.
A screenshot demonstrating how to hide reposts from an individual user: Go to their profile, tap the three-dot icon at top right, and select "Hide reposts in feeds" from the drop-down menu.
49596092396
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 27/07/2026
The most expensive code your data team ships this year won't be written by a human. It'll be generated by AI assistant. It'll look correct, but it'll quitely drop 14% of your rows because the join type was wrong. AI-assisted data engineering is here. courses.data-mozart.com
courses.data-mozart.com
AI-Native Data Engineering with Microsoft Fabric
A live 4-hour, code-first workshop on Fabric implementation, agentic scaffolding, metadata-driven ingestion, validation, cost, and production trust.
021
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 25/07/2025
A moment of disbelief! A little more than a year ago, when I started writing a book about #MicrosoftFabric, I couldn't have imagined that the day would come when I would have a physical copy in my hands...
4212
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 20/07/2026
I'm thrilled to announce that my 26th course at Pluralsight has just been released! Enterprise data succeeds when it is managed as a shared business asset. This course will teach you to recognize common data challenges and recommend practical improvements. www.pluralsight.com/courses/ente...
pluralsight.com
Introduction to Enterprise Data Management
161
Kay Sauter @kaysauter.bsky.social · 17/07/2026
In about 20 minutes, data TGIF hits off again today! #dataTGIF #free #meetup #online www.meetup.com/data-tgif/even…
meetup.com
Dashboard Literacy: Designing dashboards people actually understand, Fri, Jul 17, 2026, 5:00 PM | Meetup
Dashboards are often seen as a technical output. In reality, they are something else: a way to explain information to people so they can make decisions. In this session, I
030
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 14/07/2026
Full day, hands-on: build a production-grade Fabric lakehouse end to end. Metadata-driven ingestion, medallion, Delta optimization, Direct Lake. Real invoice-to-cash scenario, 3 sources. FabCon Europe 2026, Barcelona. espc.tech/conference/f...
011
Kay Sauter @kaysauter.bsky.social · 08/07/2026
Happy birthday my friend @dbanuggets.bsky.social! I hope you’ll have a great day today and enjoy your family.
static.klipy.com
Pusheen Cat Happy Birthday with Hamster
Alt: Pusheen Cat Happy Birthday with Hamster
010
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 22/06/2026
This Thursday, I'll be talking at the Microsoft Fabric UK User Group, about transitioning from data analyst to data engineer and upgrading your skills from Dataflows Gen2 to notebooks. It's free and it's online, so RSVP: www.meetup.com/microsoft-po...
meetup.com
Transition from Data Analyst to Data Engineer, Thu, Jun 25, 2026, 6:00 PM | Meetup
Join our Microsoft Fabric - UK User Group for our latest webinar. This session we are excited to announce our host Microsoft MVP Leon Gordon and co-host Microsoft MVP Prag
021
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 20/06/2026
My latest article at @towardsdatascience.com has just been published! This is a deep dive on Materialized Lake Views in #MicrosoftFabric. towardsdatascience.com/materialized...
towardsdatascience.com
Materialized Lake Views in Microsoft Fabric: When Your Medallion Fits in a SELECT Statement | Towards Data Science
Five surfaces collapsed into one declarative layer. Here's the full story of Materialized Lake Views in Microsoft Fabric - from syntax to the new GA capabilities
011
Reposted by Kay Sauter
Retro Tech Dreams @retrotechdreams.bsky.social · 01/06/2026
Sid Meier's Civilization (1993)
421827
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 01/06/2026
Still getting your head around #MicrosoftFabric? Not sure if you should take lakehouse or warehouse path? What changes in #PowerBI workloads? Next Monday, I'll be running live online training at @oreilly.bsky.social to help you get started with the Fabric. www.oreilly.com/live-events/...
oreilly.com
Getting Started With Microsoft Fabric
Learn the fundamental skills to work with Microsoft Fabric
032
Reposted by Kay Sauter
Tom Warren @tomwarren.co.uk · 19/05/2025
Microsoft is hosting its annual Build developer conference today. It’s time for developers, developers, developers, and AI, AI, and AI. All the details on how to watch and follow along, below 👇 www.theverge.com/news/669276/...
theverge.com
How to watch Microsoft’s Build 2025 conference
It’s all about AI for Build 2025
0488
Kay Sauter @kaysauter.bsky.social · 21/05/2026
Love the talk by David Schneider from at Azure Bootcamp Berne 2026, explaining why AI projects may fail and how to avoid this.
100
Kay Sauter @kaysauter.bsky.social · 21/05/2026
Just arrived at azure boot camp 2026, together with a team mate. Looking forward to a great day of learnings #azure #azurebootcamp
030
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 20/05/2026
NEW BLOG POST! Quick question for Fabric Warehouse folks: If clustering reduces CPU by 40% and I/O by 69%, but elapsed time stays the same, is it working? Yes. And the explanation is more interesting than the answer. 100M-row demo with real numbers: data-mozart.com/cluster-by-i...
data-mozart.com
CLUSTER BY in Fabric Warehouse: when the magic shows up and when it doesn't! - Data Mozart
Microsoft's announcement post for data clustering in Fabric Warehouse promised 24x speedups. So I built a 100-million-row clickstream table and tested it myself. The result is more nuanced than the ma...
211
Reposted by Kay Sauter
Azure Weekly @azureweekly.info · 10/05/2026
On-premises data gateway April 2026 release by Irtoyou #Azure community.fabric.microsoft.com/t5/Fabric-Up...
community.fabric.microsoft.com
On-premises data gateway April 2026 release
Author: Leo Li - Principal Program Manager ________________________________________________ The April 2026 release of the on-premises data gateway is (version 3000.314). New Features On-premises Data...
031
Reposted by Kay Sauter
Azure Weekly @azureweekly.info · 10/05/2026
Azure SQL BACPAC Export Failure with CDC & db_cdcreader (SQL71501) by Mohamed Baioumy techcommunity.microsoft.com/t5/azure-dat...
techcommunity.microsoft.com
021
Reposted by Kay Sauter
Azure Weekly @azureweekly.info · 09/05/2026
#VSCode Curbs Token Use Ahead of Copilot's Controversial Usage-Based Billing Switch by David Ramel visualstudiomagazine.com/articles/202...
visualstudiomagazine.com
031
Reposted by Kay Sauter
Azure Weekly @azureweekly.info · 09/05/2026
Fabric April 2026 Feature Summary by Katie Murray #VSCode #MicrosoftFabric #Azure blog.fabric.microsoft.com/en-GB/blog/f...
blog.fabric.microsoft.com
Fabric April 2026 Feature Summary
Welcome to the April 2026 Microsoft Fabric update! This month’s update brings a broad set of new capabilities across Microsoft Fabric, spanning the platform experience, Data Engineering, Data Science,...
031
Reposted by Kay Sauter
Neowin @neowin.net · 09/05/2026
Windows 11's new CPU boost trick may make apps feel faster, but it also rewards lazy software optimization and hardware brute force. #Windows11 #Performance
neowin.net
Windows 11 is getting faster the lazy way
Windows 11's new CPU boost trick may make apps feel faster, but it also rewards lazy software optimization and hardware brute force.
031
Reposted by Kay Sauter
Jen Gentleman @jenmsft.bsky.social · 07/05/2026
Today is world password day, so don't forget to tell your password he's a strong good password
910412
Reposted by Kay Sauter
Neowin @neowin.net · 07/05/2026
PCI-SIG has confirmed PCIe 8.0 is expected in 2028 with immensely higher bandwidth for next-gen NVMe SSDs and GPUs. Interestingly, a new connector is coming. #PCIe8 #SSD
neowin.net
PCIe 8.0 launching in 2028 with a new connector, 8 times faster NVMe SSDs and GPUs
PCI-SIG has confirmed PCIe 8.0 is expected in 2028 with immensely higher bandwidth for next-gen NVMe SSDs and GPUs. Interestingly, a new connector is coming.
021
Reposted by Kay Sauter
Eitan Blumin ⚡ @eitanblumin.bsky.social · 06/05/2026
#Azure Data Studio is retired: Move your #AzureSQL workflow to #VSCode in 10 minutes devblogs.microsoft.com/azure-sql/az... #Microsoft #SQLServer #SqlDBA #MadeiraData
devblogs.microsoft.com
Azure Data Studio is retired: Move your Azure SQL workflow to VS Code in 10 minutes - Azure SQL Dev Corner
Azure Data Studio (ADS) retired on February 6, 2025, and support ended on February 28, 2026. The recommended path forward is Visual Studio Code with the MSSQL extension. If you used ADS daily, this…
021
Reposted by Kay Sauter
Alex Power[s] @itsnotaboutthecell.com · 27/04/2026
Raki is all over Reddit sharing tons of great advice and musings.
131
Kay Sauter @kaysauter.bsky.social · 26/04/2026
I think one of the lesser know blogs that really deserve more attention is the one by Raki Rahman whom blog I came across today. www.rakirahman.me I am really impressed of the knowledge he’s posting here!
rakirahman.me
Raki Rahman
Big Data & AI
141
Reposted by Kay Sauter
Hugo Kornelis @hugokornelis.bsky.social · 21/04/2026
In my new blog post, I ask you to help me for a change. Do you have suggestions for a good video hosting platform? Please let me know! sqlserverfast.com/blog/hugo/20...
sqlserverfast.com
Request for help – video hosting - SQLServerFast
I create a lot of videos for the SQL Server community. These come in three categories. Recordings of conference sessions. Sometimes made by myself, sometimes by the conference organization. Typically ...
011
Reposted by Kay Sauter
Brent Ozar @brento.bsky.social · 14/04/2026
Reading: Anthony Nocentino is doing what Microsoft gave up on 6-7 years ago: www.nocentino.com/posts/2026-0...
nocentino.com
Introducing the SQL Server on Kubernetes Operator - Anthony Nocentino's Blog
An open-source Kubernetes operator that automates deploying and managing SQL Server Always On Availability Groups, including automatic failover, certificate exchange, and listener routing.
252
Reposted by Kay Sauter
POSETTE: An Event for Postgres @posetteconf.com · 26/02/2026
📣 The POSETTE 2026 schedule just dropped! Big welcome to this year’s fabulous Postgres speakers. Check out the schedule and start planning your can’t-miss sessions. Don’t forget to Register & Save-the-Date. 🗓️ posetteconf.com/2026/schedule/
posetteconf.com
Schedule | POSETTE: An Event for Postgres 2026
Schedule and Sessions for POSETTE: An Event for Postgres, a virtual and free developer event happening Jun 16-18, 2026. There will be 4 separate livestreams. Organized by the Postgres team at…
032
Reposted by Kay Sauter
POSETTE: An Event for Postgres @posetteconf.com · 13/04/2026
Taiob Ali (sqlworldwide.bsky.social) Microsoft Data Platform MVP, compares PostgreSQL & SQL Server security models, including differences in how they handle user authentication, roles, & permissions Register for updates to POSETTE 2026 Livestream 1 on Tue 16 Jun posetteconf.com/2026/talks/p...
Promotional graphic for POSETTE: An Event for Postgres 2026. Session title reads ‘PostgreSQL vs. SQL Server: Security Model Differences.’ Speaker name Taiob Ali is shown. Hosted by Microsoft. June 16–18, 2026. posetteconf.com
063
Kay Sauter @kaysauter.bsky.social · 11/04/2026
Today I learned that @spotify can host and stream video Podcasts, including subtitles. That'll make media much more accessible to me! #a11y #captions #spotify
010
Reposted by Kay Sauter
Bluesky @bsky.app · 09/04/2026
More and more organizations, publishers, and creators are abandoning legacy platforms that throttle their reach. Bluesky gives them a direct line to their audiences, without suppression or gatekeeping bsky.app/profile/eff....
2015037611
Reposted by Kay Sauter
Bluesky @bsky.app · 03/04/2026
We've launched an official Japanese account! Give it a follow if you're interested in more Japan-specific information.
712919753
Reposted by Kay Sauter
Proton @proton.me · 31/03/2026
Today we're launching Proton Meet: end-to-end encrypted video calls where no one can listen in, not even Proton. Built on the same zero-access architecture as Proton Mail. Read more: proton.me/business/blog/introducing…
Proton Meet, secure video conferencing next to an image showing Proton Meet in action, a group of people on a video call.
2342587
Kay Sauter @kaysauter.bsky.social · 02/04/2026
I get emails on a daily basis like "You were chosen for a donateion by the immensively rich person X" and similar. If I truly would get that money of each such email I get, I wouldn't have to work anymore. But on the other hand, I guess if that was reality, no money would be worth anything anymore.
000
Reposted by Kay Sauter
Power BI Weekly @powerbiweekly.info · 26/03/2026
A Generated Report - How AI can make Dashboards (with Injae Park) by Reid Havens #Data #Analytics #microsoft #PowerBI www.youtube.com/watch?v=meah...
youtube.com
A Generated Report - How AI can make Dashboards (with Injae Park)
This session explores how AI can be applied to the creation and modification of Power BI visuals, focusing on the different levels at which AI tools can inte...
021
Reposted by Kay Sauter
Ken Puls, FCPA, MS MVP @excelguru.ca · 26/03/2026
In today’s data-driven world, ensuring #PowerBI reports are accessible to all users is not just an ethical responsibility but a fundamental necessity. At our April 16 meet-up, Juliana Smith will provide practical strategies for embedding accessibility. ♿️📊 Sign up here: www.meetup.com/vancouver-po...
meetup.com
Power BI for Everyone: Practical Accessibility in Action | Juliana Smith, Thu, Apr 16, 2026, 9:00 AM | Meetup
**SESSION TRACK:** Power BI **SESSION OUTLINE:** In today’s data-driven world, ensuring Power BI reports are accessible to all users is not just an ethical responsibility
031
Reposted by Kay Sauter
Alex Power[s] @itsnotaboutthecell.com · 26/03/2026
And we are LIVE! Quit scrolling and jump in to ask the #MicrosoftFabric #DataFactory team anything! www.reddit.com/r/MicrosoftF...
reddit.com
From the MicrosoftFabric community on Reddit: Hi! We're the Data Factory team - ask US anything!
Explore this post and more from the MicrosoftFabric community
042
Reposted by Kay Sauter
404 Media @404media.co · 26/03/2026
NEW: Wikipedia has banned AI-generated content.
404media.co
Wikipedia Bans AI-Generated Content
“In recent months, more and more administrative reports centered on LLM-related issues, and editors were being overwhelmed.”
203237906758
Reposted by Kay Sauter
Voilà: Francis Gagnon @chezvoila.com · 26/03/2026
A reminder that if you’re looking for dataviz content on Bluesky, there’s a lot here 👇📊
13820
Kay Sauter @kaysauter.bsky.social · 17/03/2026
🚀 Data TGIF this Fri, 20 Mar at 17:00 CET! Killing the Refresh Button: Power BI Gets a Notebook 📒 Upgrade with Augustin D. Bukvic. Fabric Notebooks → faster workflows, fewer manual steps, near real‑time insights. Join free: www.meetup.com/data-tgif/ev... #PowerBI #MicrosoftFabric #DataTGIF
000
Reposted by Kay Sauter
dbatools 🚀 @dbatools.io · 13/11/2025
Look at that commands page featuring our nearly 700 commands 😍 So useful now and easy to navigate.
The screenshot shows the "dbatools Commands" page from the dbatools website, listing PowerShell commands for SQL Server. The interface includes a search bar, filterable categories on the left, and a grid of command cards in the center. Visible commands include “Copy-DbaLogin,” “Invoke-DbaQuery,” and “Restore-DbaDatabase,” each with a short description, a yellow star icon indicating popularity, and category tags like “Migration” or “Backup & Restore.” The site header includes links for Getting Started, Commands, Blog, Book, Team, GitHub, and Builds, with an “Install” button and dark mode toggle.
185
Reposted by Kay Sauter
Clearyb @clearyb.bsky.social · 25/02/2026
It’s #InternationalCochlearImplantDay Mine goes on first thing in the morning & comes off last thing at night. It quells my tinnitus, gives me stereo hearing & changed my life. My CI led to the crazy story below. I’m forever grateful for being able to access one & hope that access widens in time.
121
Reposted by Kay Sauter
Nikola Ilic @datamozart.bsky.social · 18/02/2026
NEW BLOG POST! You’ve probably spent the last year hearing about Lakehouses and Warehouses until your ears are ringing. If a Lakehouse is a massive library and a Warehouse is a high-end bank vault, the Eventhouse is a 24-hour Air Traffic Control Tower. data-mozart.com/the-new-hous...
data-mozart.com
The new house on the block: Why you need a smoke alarm, not just a newspaper - Data Mozart
You’ve probably spent the last year hearing about Lakehouses and Warehouses until your ears are ringing. If a Lakehouse is a massive library and a Warehouse is a high-end bank vault, the Eventhouse is...
021
Reposted by Kay Sauter
InfoSec @infosec.skyfleet.blue · 18/02/2026
New ‘Foxveil’ Malware Loader Leverages Cloudflare, Netlify, and Discord to Evade Detection
cybersecuritynews.com
New ‘Foxveil’ Malware Loader Leverages Cloudflare, Netlify, and Discord to Evade Detection
A new malware loader called “Foxveil” has been discovered actively targeting systems through legitimate cloud platforms, raising concerns about how threat actors are weaponizing trusted services to bypass security measures. The malware has been operational since August 2025 and has since evolved significantly. It now exists in two distinct variants, each using sophisticated techniques to establish persistence and deploy secondary payloads. Security researchers at CATO CTRL identified this previously undocumented loader during routine threat hunting operations, tracking its activity across multiple compromised systems. The malware derives its name from embedded “fox” strings found within the code samples, and represents a concerning shift in how attackers abuse legitimate infrastructure to hide malicious operations. Foxveil operates by contacting threat actor-controlled staging locations hosted on Cloudflare Pages, Netlify domains, and Discord attachments to retrieve shellcode payloads. This approach allows the malware to blend seamlessly into regular enterprise network traffic, making detection significantly more challenging for traditional security tools that rely on blocklists. Once the shellcode is downloaded, Foxveil executes it through injection techniques that vary between the two identified variants. The first variant uses Early Bird APC injection, spawning a fake svchost.exe process and injecting malicious code before the target thread fully resumes. The second variant simplifies this process by performing self-injection within the same process context, often retrieving payloads directly from Discord attachments. Foxveil kill chain overview (Source – CATO) Both versions establish persistence by either registering themselves as Windows services or dropping additional executables into the SysWOW64 directory with filenames mimicking legitimate system processes like sihost.exe and taskhostw.exe. After establishing initial access, Foxveil downloads additional executables from Netlify and Cloudflare Pages domains, placing them strategically in system directories to maintain long-term access. The malware includes a unique string-mutation mechanism that rewrites common analysis keywords such as “payload,” “inject,” “beacon,” and “meterpreter” with randomly generated values, complicating static detection and reverse engineering efforts. Defense Evasion Through String Mutation One particularly unusual feature sets Foxveil apart from typical first-stage loaders: its runtime string mutation capability. The malware contains code that actively scans for high-signal strings commonly used by security analysts and replaces them with random values during execution. String-mutation logic targeting “fox” and common C2 indicators (Source – CATO) This technique specifically targets terms associated with command-and-control frameworks and post-exploitation tools, making it harder for automated security systems to identify the threat through signature-based detection. Security teams should monitor for unusual process execution chains, staged downloads followed by shellcode injection , and suspicious file writes into system directories like SysWOW64. Organizations are advised to implement behavior-based detection controls that focus on execution context rather than relying solely on domain reputation or static signatures. Follow us on  Google News ,  LinkedIn , and  X  to Get More Instant Updates ,  Set CSN as a Preferred Source in  Google . The post New ‘Foxveil’ Malware Loader Leverages Cloudflare, Netlify, and Discord to Evade Detection appeared first on Cyber Security News .
031
Reposted by Kay Sauter
InfoSec @infosec.skyfleet.blue · 18/02/2026
Notepad++ v8.9.2 Released with “Double-Lock” Update Mechanism Following Recent Hack
cybersecuritynews.com
Notepad++ v8.9.2 Released with “Double-Lock” Update Mechanism Following Recent Hack
The widely used open-source text and code editor has released version v8.9.2, introducing a major security enhancement known as the “Double-Lock” update mechanism. This update addresses vulnerabilities that were exploited in a recent state-sponsored attack targeting the application’s update infrastructure. Last month, Notepad++’s official site confirmed that attackers had successfully hijacked its update channel, allowing the distribution of a malicious update. Following the incident, the development team promised to fortify the update verification process. That promise has now been fulfilled with the v8.9.2 release. Strengthening the Update Process The latest release introduces  XMLDSig (XML Digital Signature)  verification for update files. The XML returned by Notepad++’s update server is now cryptographically signed, and both the signature and certificate will be verified before any updates are applied. Fixed in Notepad++ v8.9.2 (source : notepad-plus-plus.org) This means that, starting with v8.9.2, all future updates will only be accepted if they are verified against trusted Notepad++ certificates. In addition to this measure, Notepad++ now performs two independent verifications forming what the developers describe as a “Double-Lock” update system: Verification Layer Source Version Purpose XML Signature Verification Notepad++ official site v8.9.2 Verifies signed update metadata (XML) to prevent tampering or spoofed update info. Installer Signature Verification GitHub v8.8.9 Validates installer digital signature to block modified or malicious binaries. Together, these measures create a resilient security model that prevents malicious interception or tampering of update files. The development team notes that this design effectively makes the update process “robust and unexploitable.” WinGUp Auto-Updater Enhancements The WinGUp auto-updater, which manages update downloads and installations, has also undergone a significant security overhaul. Key improvements include: Category Improvement Description Update Security XMLDSig signing Update XML files from Notepad++ server are digitally signed for integrity verification. Double Verification Dual update validation Signed XML (official site) + signed installer from GitHub. Certificate Enforcement Strict signature checks Certificates validated before updates install. Auto-Updater Hardening Removed libcurl.dll Eliminates DLL side-loading risk. Stronger SSL Disabled weak cURL options Enforces stricter TLS/SSL validation. Plugin Control Signed plugins only Only plugins signed with official certificate allowed. Stability & Transparency Bug fixes + public response Improves stability and maintains open communication post-incident. Moreover, users who prefer manual update control can turn off the auto-updater during installation or use the MSI parameter: msiexec /i npp.8.9.2.Installer.x64.msi NOUPDATER=1 Follow us on Google News , LinkedIn , and X for daily cybersecurity updates. Contact us to feature your stories. The post Notepad++ v8.9.2 Released with “Double-Lock” Update Mechanism Following Recent Hack appeared first on Cyber Security News .
021
Reposted by Kay Sauter
InfoSec @infosec.skyfleet.blue · 11/02/2026
Windows Notepad Vulnerability Allows Attackers to Execute Code Remotely
cybersecuritynews.com
Windows Notepad Vulnerability Allows Attackers to Execute Code Remotely
Microsoft has patched a critical remote code execution (RCE) flaw in the Windows Notepad app, tracked as CVE-2026-20841, which could let attackers run malicious code on victims’ machines. Disclosed on February 10, 2026, Microsoft Patch Tuesday updates , the vulnerability stems from improper neutralization of special elements in commands (CWE-77: Command Injection) and carries a CVSS v3.1 base score of 8.8/10, rated “Important.” The bug affects the modern Windows Notepad app, available via the Microsoft Store. An unauthorized attacker could exploit it over a network by tricking users into opening a booby-trapped Markdown (.md) file. Once loaded, a malicious link inside the file prompts the app to handle unverified protocols. Clicking the link triggers Notepad to fetch and execute remote files, injecting arbitrary commands without proper sanitization. Attackers craft Markdown files with hyperlinks using custom schemes (e.g., mimicking safe protocols but pointing to attacker-controlled servers). When a user opens the file in Notepad and clicks the link, the app processes it naively, leading to command injection . The payload executes in the logged-in user’s security context, granting attackers the same privileges – from file access to privilege escalation if the user has admin rights. The patch rolled out via the Microsoft Store for Notepad (build 11.2510+), with full release notes and a direct security update link. Users must update manually or enable auto-updates, as it’s customer action required. Microsoft credits independent researchers Delta Obscura (delta.cyberm.ca) and “chen” for coordinated disclosure. This flaw underscores risks in everyday apps that handle rich text, such as Markdown, especially as Notepad evolves from a basic editor into a feature-rich tool. While legacy Notepad.exe remains unaffected, the Store version’s popularity amplifies exposure. Mitigation Steps Update Notepad immediately from the Microsoft Store. Enable automatic app updates in Windows Settings. Avoid opening untrusted Markdown files or clicking links in them. Use an antivirus with behavior-based detection for anomalous protocol handlers. Follow us on Google News , LinkedIn , and X for daily cybersecurity updates. Contact us to feature your stories. The post Windows Notepad Vulnerability Allows Attackers to Execute Code Remotely appeared first on Cyber Security News .
161
Reposted by Kay Sauter
InfoSec @infosec.skyfleet.blue · 11/02/2026
GitLab Patches Multiple Vulnerabilities That Enables DoS and Cross-site Scripting Attacks
cybersecuritynews.com
GitLab Patches Multiple Vulnerabilities That Enables DoS and Cross-site Scripting Attacks
A critical security update has been released for both the Community Edition (CE) and Enterprise Edition (EE) to address multiple high-severity vulnerabilities. The patches, available in versions 18.8.4, 18.7.4, and 18.6.6, fix flaws that could allow attackers to crash servers, steal data, or hijack user sessions. Security experts urge administrators of self-managed instances to upgrade immediately, noting that GitLab.com has already been patched.​ The most severe vulnerability, tracked as CVE-2025-7659 (CVSS 8.0), lies in the Web IDE. This flaw involves “incomplete validation,” meaning the system fails to verify who is accessing certain data properly. An unauthenticated attacker, someone without a username or password, could exploit this to steal access tokens and view private software repositories.​ CVE ID Severity Type Description CVE-2025-7659 High (8.0) Token Theft Unauthenticated access to private tokens via Web IDE. CVE-2025-8099 High (7.5) DoS Service crash via repeated GraphQL queries. CVE-2026-0958 High (7.5) DoS Resource exhaustion via JSON validation bypass. CVE-2025-14560 High (7.3) XSS malicious script injection in Code Flow. The update also resolves two dangerous Denial-of-Service (DoS) issues . In a DoS attack, a hacker tries to overwhelm a system to knock it offline. CVE-2025-8099 (CVSS 7.5) allows attackers to crash the service by sending repeated, complex queries to the GraphQL interface. CVE-2026-0958 (CVSS 7.5) exploits the JSON validation middleware, letting attackers exhaust the server’s memory or CPU.​ Another major fix addresses CVE-2025-14560 (CVSS 7.3), a Cross-Site Scripting (XSS) vulnerability in the “Code Flow” feature. XSS flaws allow attackers to inject malicious scripts into trusted websites. In this case, an attacker could hide code that executes when another user views it, potentially allowing them to perform actions on behalf of that victim.​ GitLab strongly recommends that all customers running affected versions upgrade to the latest patch immediately. While the update fixes these critical issues, it also addresses several medium-severity bugs, including Server-Side Request Forgery (SSRF) and HTML injection flaws. Administrators should be aware that upgrading single-node instances may require brief downtime for database migrations. Follow us on Google News , LinkedIn , and X for daily cybersecurity updates. Contact us to feature your stories. The post GitLab Patches Multiple Vulnerabilities That Enables DoS and Cross-site Scripting Attacks appeared first on Cyber Security News .
012