Microsoft has fixed a vulnerability in its AI-enabled Azure Health Bot that could have allowed attackers to access cross-tenant resources. The elevation of privilege vulnerability was discovered by Tenable researchers in June and patched by July. During routine investigations into data connections, the researchers were able to access an internal Microsoft subscription ID, potentially making other resources accessible.

PowerSchool Attackers Extorting Teachers, Security Leaders Respond
Security leaders advise organizations to carefully evaluate ransom payments in response to the PowerSchool attacks targeting teachers. They emphasize the importance of implementing strong cybersecurity