“Immediately verify Chrome version across all managed endpoints and stage deployment of 152.0.7977.83; simultaneously audit for unpatched SonicWall SMA1000 devices and treat as potential compromise if found.”
September 2026 Patch Tuesday Due 8 September — Prioritise August Zero-Day CVE-2026-68820 Still Unpatched in Many Environments
The next Microsoft Patch Tuesday lands 8 September 2026, and many environments still need to apply the August batch which included a confirmed in-the-wild exploitation of CVE-2026-68820, a use-after-free elevation-of-privilege bug in the Windows Ancillary Function Driver for WinSock (afd.sys) allowing SYSTEM-level access. Two additional zero-days — CVE-2026-62832 (Windows User Profile Service) and CVE-2026-72971 (Windows Container Isolation FS Filter Driver) — were publicly disclosed before patches existed. Apply the August update rollup immediately and prepare for the September release on 8 September.
Read more →Azure Change Tooling Guardrail Improvements Underway After July West US Outage
Microsoft's post-incident review of the July 23 West US Azure outage confirmed a maintenance automation bug stripped IP routes from more devices than intended, taking down SharePoint, OneDrive, and other M365 services for hours. Azure has committed to shipping improved change tooling guardrails preventing simultaneous multi-device isolation — targeted for completion September 2026. Australian customers on geo-redundant tenants should verify their failover regions are not co-dependent on West US infrastructure.
Read more →Google Chrome CVE-2026-85046 Exploited in the Wild — Update to 152.0.7977.83
Google confirmed CVE-2026-85046 is being actively exploited in the wild, addressed in Chrome update 152.0.7977.82/.83 which also fixes 11 additional CVEs. MSPs should push this browser update urgently across all managed endpoints via RMM. No workaround exists; the fix is only available via update.
Read more →ShieldBreak (CVE-2026-69414): Unpatched Elevation-of-Privilege Bypass in Microsoft Defender Malware Protection Engine
Researchers published ShieldBreak, a bypass of Microsoft's earlier Defender patch (RoguePlanet/July 8 fix), assigning it CVE-2026-69414 — an EoP flaw in the Microsoft Malware Protection Engine with proof-of-concept code publicly available and exploitation rated 'more likely'. Microsoft has confirmed the issue and says it is still working on a fix. No official workaround; ensure Defender definitions are fully up to date and monitor Microsoft's MSRC advisory page for an out-of-band patch.
Read more →SonicWall SMA1000 Actively Exploited — CISA KEV Deadline Was September 5
CISA warned of active exploitation of two vulnerabilities in the SonicWall SMA1000 and added them to its KEV catalog with a remediation deadline of September 5, 2026. MSPs with SMA1000 appliances still unpatched are now overdue and should treat this as an emergency. Isolate affected appliances from the internet and apply SonicWall's firmware update immediately as the only remediation.
Read more →AI in CI/CD Pipelines Reduces Deployment Failures 30% — MSPs Supporting Dev Clients Should Take Note
Teams deploying AI-powered CI/CD tooling are reporting a 30% reduction in deployment failures and a 20% increase in release frequency, according to JetBrains research. Platforms like TeamCity are leading adoption through container-first integration and AI-driven anomaly detection that automatically reverts failed deployments. MSPs with software development or DevOps clients should incorporate AI-assisted pipeline health monitoring into service offerings.
Read more →Subscribers get the full “From the Floor” take with every issue — not just the news summary you just read.
Written from 12 years on the helpdesk floor. Always free.