Cybersecurity Today Month in Review: Microsoft Zero-Days, AI Deregulation

Host Jim Love and panelists David Shipley, Laura Payne, and Jeff Williams discuss a researcher (“Chaotic/Nightmare Eclipse”) publicly disclosing multiple Windows zero-days affecting components including Defender and BitLocker, frustration with Microsoft’s vulnerability disclosure process, and backlash to Microsoft’s initially threatening tone before it was partially walked back; the panel debates responsible disclosure, the need for […]

New HTTP/2 Bomb Attack, Trump’s AI Security Reviews, Android Zero-Day & The Patching Crisis

A newly disclosed attack called HTTP/2 Bomb can crash major web servers in seconds using a single computer and a modest internet connection. Researchers say the attack combines two known techniques into a powerful memory-exhaustion exploit affecting widely used platforms including Apache, NGINX, Microsoft IIS, and Envoy. The attack also highlights a growing trend in […]

Microsoft’s AI Reset? Scout Agent Launches as SpaceX IPO Faces Valuation Doubts

Microsoft is making one of its biggest AI bets yet. In today’s Hashtag Trending, Jim Love examines Microsoft’s launch of the Scout AI agent and its new MAI-Thinking-1 reasoning model as the company tries to move beyond criticism of Copilot and redefine its AI strategy. Also in this episode: 🔹 Anthropic expands access to its […]

Carnival Data Breach Exposes Millions as Microsoft Backs Down on Researcher Threats

Cybersecurity Today for June 2, 2026. Microsoft has backed away from its hard-line stance against vulnerability researchers after widespread criticism from the security community. The dispute began after independent researcher Nightmare Eclipse published proof-of-concept code for unpatched Microsoft vulnerabilities, triggering a public debate over responsible disclosure, zero-days, and researcher relations. Cybersecurity Today would like to […]

Microsoft Threatens Security Researcher | Palo Alto VPN Exploited | Google Insider Trading Case

Microsoft’s dispute with a former security researcher takes a dramatic turn as the company raises the possibility of criminal action over the publication of proof-of-concept code for unpatched zero-day vulnerabilities. David Shipley examines the escalating conflict between Microsoft and “Nightmare Eclipse,” the criticism from prominent security researchers including Kevin Beaumont and Katie Moussouris, and what […]