// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE CLK-MicDTG 0600Z
Vendor Clock

Microsoft
Exposure Clock

DAYS SINCE LAST PUBLIC RESET

How long since Microsoft's last public CVE, breach, demonstration, lab miss, and capability launch — the five resets that define a vendor's current exposure window.

CVE Disclosed
13d
since 2026-08-12
Lazarus exploits Windows zero-day CVE-2026-68820 in Operation Dream Job
Field Breach
5d
since 2026-08-20
UAT-10147 Uses AI-Assisted Playbooks to Compromise IIS Servers and Add Defender Exclusions
Demo / Bypass
3d
since 2026-08-22
Defender’s own boot-time driver illustrates the bypass problem
Lab Miss
117d
since 2026-04-30
1.0% miss · Business Security Test (Mar–Apr 2026)
Capability Launch
6d
since 2026-08-19
Microsoft launches Azure Government Top Secret cloud - TechTarget

Each tile shows the days since the most recent event of that type drawn from public reporting, with the headline that reset the counter.

The Exposure Clock is an original ColdRecon metric. A small number is not "bad" and a large number is not "good" — they're counts of days since something happened, drawn from open-source reporting. See Microsoft's full spine →

Three days since Microsoft's last reset is a fact. What you do about it in the next deal is judgment.

ColdRecon delivers a daily intelligence brief from the seller's seat — every reset turned into a one-sentence position for your next call. Request clearance and the first lands tomorrow at 0600.

Request Clearance →