“Patch test Microsoft's August 2026 AAD/Entra patches in a non-production tenant today and schedule customer rollout for this week.”
Microsoft 365 Activation Prompts & Service Disruption Reported — August 24, 2026
Users reported unexpected activation prompts when launching Word and PowerPoint on August 24, 2026, with outage trackers showing elevated reports despite Microsoft's status page showing services as operational. The disruption appears limited rather than a full outage; workaround is to wait for backend stabilisation rather than reinstalling Office apps.
Read more →August 2026 Patch Tuesday: Critical Azure Active Directory EoP (CVE-2026-50481, CVSS 9.9) and Entra Provisioning Flaw (CVE-2026-59115, CVSS 9.9) Patched
Microsoft's August Patch Tuesday addressed CVE-2026-50481, a 9.9-rated Azure AD elevation-of-privilege flaw allowing an authorized attacker to escalate privileges over the network, and CVE-2026-59115, a path traversal flaw in the Microsoft Entra Provisioning Service also rated 9.9. A third critical flaw, CVE-2026-62873 (CVSS 9.8) in the Microsoft 365 Admin Center, allows unauthenticated privilege escalation remotely without user interaction. Apply August Patch Tuesday updates immediately.
Read more →Fortinet Leads 2026 Firewall CVE Count with Eight Unauthenticated Flaws — Several Under Active Exploitation
A mid-year analysis confirms Fortinet has accumulated the most unauthenticated vulnerabilities of any firewall vendor in 2026, with several under active exploitation and a notable 27-CVE April. Security teams are advised to track FortiGuard PSIRT advisories and the CISA KEV catalog, treating any 'unauthenticated' plus 'internet-facing' combination as a same-week emergency. Review FortiOS, FortiProxy, FortiWeb and FortiPAM firmware versions against current FortiGuard advisories.
Read more →Subscribers get the full “From the Floor” take with every issue — not just the news summary you just read.
Written from 12 years on the helpdesk floor. Always free.