← All stories
● Covered by 1 source · 1 reportMedium impact1 neutral

Microsoft Cloud Patches Released, Dropbox Accounts Compromised, Texas Water Utilities Get Cyber Defense

🔄 Updated 44m ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • Microsoft patched nine vulnerabilities in cloud services like Entra ID and Azure Cosmos DB.
  • 5,000 Dropbox accounts were compromised via a Lenovo email verification flaw.
  • Project Watershed 250 offers cyber defense to Texas water utilities.
  • Winona County paid $128K ransom after a January 2026 ransomware attack.

Microsoft Cloud Vulnerabilities Patched

Microsoft deployed server-side patches for nine vulnerabilities affecting various cloud services. These services include Entra ID, Azure Cosmos DB, Power Automate, Copilot Studio, Azure Active Directory B2C, Fabric, Azure AI Language, and Discovery Studio. Customers are not required to take any action as the fixes were implemented on Microsoft's servers.

Dropbox Accounts Compromised via Lenovo Integration

Dropbox notified approximately 5,000 users that their accounts were compromised. Attackers exploited an issue with Lenovo's email verification process, registering Lenovo IDs with victims' email addresses to gain access to their Dropbox accounts. Dropbox has closed all unauthorized sessions and access related to this incident.

Cybersecurity for Texas Water Utilities

The White House and Texas' Governor initiated Project Watershed 250, a federal-private sector collaboration. This project aims to provide water and wastewater utilities in Texas with free cyber defense resources, strengthening their defenses against cyberattacks from foreign adversaries like China and Iran.

Ransomware Incidents and Exchange Server Exploit

Winona County in Minnesota reportedly paid a ransom of $128,539.57 to restore services and protect personal information following a ransomware attack in January 2026. The county experienced a second ransomware attack in April, claimed by the InterLock gang, though the perpetrator of the January incident is unknown.

Exploit code for CVE-2026-62911, a high-severity Microsoft Exchange Server vulnerability patched in August, has been published. The Netherlands National Cyber Security Centre issued a warning, and The Shadowserver Foundation observed over 21,000 unpatched servers as of September 1.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~19 min · 16 stories · Sep 04

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Microsoft released server-side patches for nine vulnerabilities across its cloud services, requiring no customer action. Separately, approximately 5,000 Dropbox accounts were compromised due to an issue with Lenovo's email verification process. The White House and Texas Governor launched Project Watershed 250 to provide cybersecurity resources to Texas water utilities.