The Security Insights Show
The Security Insights Show
The Security Insights Show·May 15, 2026·55m

The "AI" Security Insights Show Episode 291 - Aditya and Nanda from DataBahn

Show notes

Guest link - https://www.databahn.ai/

* Nithya Nareshkumar - President & Cofounder

* https://www.linkedin.com/in/nithya-nareshkumar-80955a30/

* Aditya Sundararam - Chief Products Officer & Cofounder

* https://www.linkedin.com/in/adityasundararam/

Words of Wisdom:

“You can be whatever you want, so be the person who ends meetings early”

General

* Monthly news – May 2026 | Microsoft Defender XDR Blog

* Microsoft Agent 365, now generally available, expands capabilities and integrations | Microsoft Security Blog

* World Passkey Day: Advancing passwordless authentication | Microsoft Security Blog

AI Security

* When prompts become shells: RCE vulnerabilities in AI agent frameworks | Microsoft Security Blog

* Microsoft named an overall leader in Kuppinger Cole Analyst’s 2026 Emerging AI Security Operations Center (SOC) report | Microsoft Security Blog

Agent365

* Microsoft Agent 365, now generally available, expands capabilities and integrations | Microsoft Security Blog

* What’s New in Agent 365: May 2026 | Microsoft Tech Community

* Overview of Microsoft Agent 365 | Microsoft Learn

* Microsoft Agent 365 documentation hub | Microsoft Learn

Azure Security & Defender for Cloud News

* What’s new in Defender for Cloud features (May 2026 updates) | Microsoft Learn

Threat Intelligence

* Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise | Microsoft Security Blog

Microsoft Entra

* What’s New in Microsoft Entra: May 2026 | Microsoft Tech Community

Device Management & Protection (Intune)

* What’s new in Microsoft Intune (May 2026) | Microsoft Learn

Defender XDR & Sentinel

* Monthly news – May 2026 | Microsoft Defender XDR Blog

* What’s new in Microsoft Sentinel | Microsoft Learn

* Best practices for Microsoft Sentinel | Microsoft Learn

* Defender XDR + Sentinel integration guide | Microsoft Learn

Copilot for Security

* Microsoft Security Copilot overview | Microsoft Learn

* Security Copilot agents overview | Microsoft Learn

Purview – Compliance & Governance

* Microsoft Purview protections for generative AI & Copilot | Microsoft Learn

* Use Microsoft Purview to manage data security for Microsoft 365 Copilot | Microsoft Learn

* Purview for AI agents & Agent 365 | Microsoft Learn

Featured Resources & Deep Dives

* Setup & deployment guide for Microsoft Defender XDR

* Advanced hunting best practices in Defender XDR

* Best practices for data collection in Sentinel

* Configure a secure foundation for Microsoft 365 Copilot

* Security for AI solutions hub

What’s New in Defender (May 2026)

* What’s new in Microsoft Defender XDR | Microsoft Learn (Official Reference)

* In advanced hunting, the Take action wizard now lets you allow or block top-level domains and file attachment hashes in emails

* New identity-focused predefined scenarios in the hunting graph (Kerberoast, AS-REP roast, OAuth risks, etc.)

* (GA) Built-in alert tuning rules expanded

* Enhanced AI agent visibility and context mapping

Featured Items This Week:

2026 Microsoft 365 Packaging UpdateID: MC1304290 | Service: Exchange Online, Microsoft Intune | Tags: User impact, Admin impactStarting mid-June 2026, Microsoft 365, Office 365, and EMS suites will receive enhanced security features like Microsoft Defender Plan 1, URL time-of-...

Lock-free coauthoring in Microsoft WordID: MC1304289 | Service: Microsoft 365 apps | Tags: New feature, User impactLock-free coauthoring in Microsoft Word allows multiple users to edit the same paragraph simultaneously, enhancing real-time collaboration. It will ro...

Outlook: Support for storing S/MIME certificates in contacts in new OutlookID: MC1302908 | Service: Exchange Online, Microsoft 365 apps | Tags: New feature, User impactThe new Outlook for Windows will support storing S/MIME certificates directly in Contacts, enabling encrypted emails and continuity from classic Outlo...

Microsoft 365 Copilot: Schedule prompts in Agent BuilderID: MC1302906 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impactMicrosoft 365 Copilot’s Agent Builder will support scheduled workflows to run prompts automatically on hourly, daily, weekly, monthly, or yearly caden...

(Updated) Flux.2 Flex model availability in PowerPoint for Microsoft 365 CopilotID: MC1302900 | Service: Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, User impactMicrosoft 365 Copilot in PowerPoint now supports the Flux.2 Flex image generation model, offering higher-quality visuals and layout. Available worldwi...

Microsoft Copilot Studio - Create workflows using natural language with the Agentic Workflow BuilderID: MC1302852 | Service: Microsoft Copilot (Power Platform) | Tags: New feature

Microsoft 365 Copilot Cowork: Plugins, connectors, and partner integrations (Frontier)ID: MC1301832 | Service: Microsoft Copilot (Microsoft 365) | Tags: New feature, User impact, Admin impactMicrosoft 365 Copilot Cowork is expanding with plugins, connectors, and partner integrations for Frontier participants starting May 2026. It enables s...

Upgrade to Windows Server 2025, now via Windows UpdateID: MC1301827 | Service: Windows | Tags: Admin impact

Change Optics report for Exchange Online begins public previewID: MC1301802 | Service: Exchange Online | Tags: New feature, User impact, Admin impactThe Change Optics report for Exchange Online is in public preview, providing administrators visibility into email traffic affected by upcoming transpo...

Microsoft Copilot Studio - Use MCP-compliant tools in agent workflowsID: MC1301505 | Service: Microsoft Copilot (Power Platform) | Tags: New feature

New Roadmap Items:

Outlook: Export to PDF (preserving sensitivity labels)ID: 561651 | Product: Outlook | Status: In developmentAbility to create PDFs from email messages and preserve Sensitivity labels. This feature is accessible from File -> Open & Export -> Create PDF.

Microsoft Teams: Room availability signal for Teams eventsID: 561647 | Product: Microsoft Teams | Status: In developmentIn the Events app in Teams, Teams events organizers will now be able to see if the chosen room or space they have selected for their event is availabl...

Microsoft Teams: Chat panel open by default in the gallery view on Teams Rooms on AndroidID: 561604 | Product: Microsoft Teams | Status: In developmentThe chat panel will open by default in gallery view, allowing participants in Teams Room on Android to quickly see ongoing meeting chat when they join...

Microsoft Edge: Passkey Sync for Enterprise UsersID: 561652 | Product: Microsoft Edge | Status: In developmentMicrosoft Edge is introducing support for passkey synchronization for enterprise users, enabling secure, passwordless authentication across devices. P...

Microsoft Purview: Information Protection- File Labeler and File Viewer for MacOSID: 561327 | Product: Microsoft Purview | Status: In developmentThis feature is bringing the Information Protection Filer Labeler and Viewer applications to the MacOS platform. Enabling customers to have the same c...

Updated Roadmap Items:

Microsoft Edge: Validate Edge builds early with enterprise previewID: 557185 | Product: Microsoft Edge | Status: In developmentEnterprise preview provides a simpler way for admins to flight pre-release Edge builds to their users. To reduce friction and bolster usage, users wil...

Microsoft Teams: Chat with anyone who has an email addressID: 513271 | Product: Microsoft Teams | Status: CancelledWe are not releasing this feature at this time. We apologize for any inconvenience this may cause. Start a chat with anyone who has an email address, ...

Microsoft Viva: Feature conversations to all network membersID: 558438 | Product: Microsoft Viva | Status: LaunchedThe featured conversation feature in public Viva Engage communities will include the option to feature a conversation to all network members or only t...

Microsoft Purview: Data Loss Prevention – Enrich Defender alerts Graph API with DLP event dataID: 558681 | Product: Microsoft Purview | Status: In developmentEnhance current API infrastructure to provide easy and simple way for customers to export data to integrate with SIEM tools, create automated workflow...

Microsoft Edge: Extensions monitoring in the Edge management serviceID: 552597 | Product: Microsoft Edge | Status: In developmentThe Microsoft Edge management service now allows admins to gain visibility into extensions installed across their managed users.

New Message Center Items:

Finance and operations apps - Monitor data management framework with Azure Application InsightsID: MC1305579 | Service: Finance and Operations Apps | Tags: New feature

Updates to SharePoint home sitesID: MC1304293 | Service: SharePoint Online | Tags: New feature, User impact, Admin impactSharePoint home sites are being updated with simplified setup, new Resources and Announcements web parts, and enhanced customization for the renamed V...

2026 Microsoft 365 Packaging UpdateID: MC1304290 | Service: Exchange Online, Microsoft Intune | Tags: User impact, Admin impactStarting mid-June 2026, Microsoft 365, Office 365, and EMS suites will receive enhanced security features like Microsoft Defender Plan 1, URL time-of-...

Lock-free coauthoring in Microsoft WordID: MC1304289 | Service: Microsoft 365 apps | Tags: New feature, User impactLock-free coauthoring in Microsoft Word allows multiple users to edit the same paragraph simultaneously, enhancing real-time collaboration. It will ro...

Microsoft Exchange Online: Upcoming secure-by-default changes for Exchange APIsID: MC1304287 | Service: Exchange Online | Tags: New feature, User impact, Admin impactStarting June 2026, Microsoft will update the default user consent policy for Microsoft Graph to require admin consent for additional Exchange-related...

Updated Message Center Items:

(Updated) Microsoft 365 admin center - Usage reports: Agent usage (preview)ID: MC1148545 | Service: Microsoft 365 suite, Microsoft Copilot (Microsoft 365) | Tags: Updated message, New feature, Admin impactA new preview usage report for Microsoft 365 Copilot Chat agents is available in the Microsoft 365 admin center, showing active users, agents, usage d...

(Updated) Microsoft Purview: Data Lifecycle Management - Retention support Microsoft Teams call logsID: MC1261586 | Service: Microsoft Purview | Tags: Updated message, Feature update, Admin impactMicrosoft Purview Data Lifecycle Management will support retention and deletion policies for Microsoft Teams call logs starting late April 2026. Compl...

(Updated) Microsoft Teams: Chat with anyone with an email addressID: MC1182004 | Service: Microsoft Teams | Tags: Updated message, New feature, User impact, Admin impactThe feature allowing Teams users to chat with anyone via email without requiring recipients to have a Teams account was planned but is not being relea...

(Updated) New Feature: Account Manager in Outlook for WindowsID: MC1129718 | Service: Exchange Online, Microsoft 365 apps | Tags: Updated message, New feature, User impactOutlook for Windows will introduce a new Account Manager by mid-May 2026, showing profile pictures, enabling account switching, and providing quick ac...

(Updated) Microsoft Teams Copilot without transcription becomes default for meetings - conversation history now persistsID: MC1139493 | Service: Microsoft Teams | Tags: Updated message, Feature update, User impact, Admin impactMicrosoft Teams Copilot will default to running without transcription for new meetings starting mid-July 2026, with conversation history persisting du...



This is a public episode. If you would like to discuss this with other subscribers or get access to bonus episodes, visit www.microsoftsecurityinsights.com