Archive for Recast

CVEs have spiked 10x since March Says Tuukka Tiainen Of Recast Software

Posted in Commentary with tags on August 19, 2026 by itnerd

Recast tracks CVE disclosures for third-party applications through its Setup Store catalog. Since March 2026, the number of unique CVEs registered each month has climbed from roughly 150-200 to more than 60,000 in June alone. This trend lines up with major software vendors (Chromium, Firefox among them) adopting AI-assisted vulnerability testing.

Tuukka Tiainen serves as Senior Security Engineer at Recast Software, bringing over a decade of experience in IT and information security. His expertise spans technical security as well as governance, risk, and compliance. Passionate about threat and vulnerability management, Tuukka also brings deep knowledge of Microsoft’s security solutions.

His Bio is here and here is his LinkedIn profile: .

What’s driving the trend?

This trend is driven by the industry with the assumption that with the expended usage of the AI tools, vendors can test more and catch more vulnerabilities in their software.

I can only talk about what I’ve seen during the time I have reviewed the monthly statistics (since May 2024). It is visibly clear that something has changed in the number of unique vulnerabilities patched by vendors this year. You can see those spikes starting to grow in March this year.

Browsers: Chromium and Firefox have dominated the vulnerabilities number wise for the last three months. Both Mozilla and Google are participating in Project Glasswing, giving them access to Anthropic’s frontier AI model. Firefox is evidence that harnessing Claude Mythos in their pipelines has greatly increased the number of security bugs found. See the blog written by their Tech Lead and Principal Engineer.

Microsoft and Google haven’t disclosed similar information about the findings to public but at least Microsoft has admitted publicly that they use Mythos. There’s a pretty strong assumption that the reason is the same for them resulting in more patched vulnerabilities in the last few months. I think that the Project Glasswing is just the first wave. Once the model and other frontier models get into the hands of more software vendors it will result in even more vulnerabilities to be patched.

What are the operational or security implications? What should organizations be doing differently as a result?

By following the same narrative, organizations using the 3rd party software should have more vulnerabilities to deal with. I would even claim that the number of exploits will grow because AI has become so much better in autonomously discovering weaknesses and chaining multiple lower-severity issues into exploits. In the worst-case scenario there will be more of everything: vulnerabilities, software versions (patches), out-of-band patches, exploits and zero-day vulnerabilities.

Another big aspect of this is the patch gap possibly becoming the most important vulnerability management metric. The “patch gap” is the time between a security patch becoming available and it being installed on your systems. The industry has traditionally focused on zero-days, but the patch gap may become an equally important security challenge. If AI can help attackers quickly reverse engineer patches and understand the vulnerabilities they fix, the window between a patch being released and an exploit becoming available could shrink dramatically. In that world, the greatest risk is not necessarily the vulnerability no one knows about, but the one everyone knows about and hasn’t patched yet. If this is the case, patch management vendors need to help to minimize the time between a software vendor releasing a patch, making it available for the customers and customers actually applying the patch on their systems.

If organizations need to patch more and faster, it might become a heavy burden for IT and security. I think this is one of the reasons why, for example, CISA is driving its new initiative for patching. Check out Patch Smarter, Not Harder. I also wrote a blog over a year ago how to patch smarter based on other factors than just the good old CVSS.

According to CISA, only the most critical vulnerabilities should be patched within three days. It is up to organizations to come up with their own processes, but it will be even more important to be able to prioritize in the future. Organizations should also play with the idea that they must be able to effectively patch a vulnerability within three days. How does that change the existing practices and models?

A brief explanation of where the data came from, how it was collected, what timeframe it covers, and approximately how many applications/CVEs were analyzed.

The vendors report CVEs when a new version is published. Sometimes this information is added later (a few days). We (Recast) scan those resources and as soon as the CVE data is available, it is added to the Setup Store. We are collecting the data about the applications stored in the catalog. The trend started to take a clear shape from March 2026 on. 

Are all these applications in Setup Store? Just third-party apps? Enterprise apps? Does the data include severity (Critical/High/etc.)?

This is related only to the applications stored in the Setup Store, so the scale in the market is larger. Those are 3rd party applications that were eligible to be added to the catalog. The data does not include the severity.

What is the biggest or most surprising trend?

It’s not that it’s surprising but rather expected. It is confirmation of the global security changes written in the data and that AI tools are used extensively and vendors are focusing on improving.

Here’s some raw data in graph form for your viewing pleasure:

Recast has some new research that has just come out

Posted in Commentary with tags on July 28, 2026 by itnerd

There’ new research from Recast called “The State of Intune in 2026”.

The report explores how organizations are navigating the transition from Microsoft Configuration Manager to Intune, revealing that while Intune is well regarded, many IT teams continue to struggle with manual application management, third-party patching, and the realities of operating hybrid environments. 

You can read the research here.

Recast Responds to Customer Needs for Rapid Patching with New Product Bundle

Posted in Commentary with tags on July 16, 2026 by itnerd

Recast today announced a new bundled offering that brings together Right Click Tools, Right Click Tools Patching, and Warranty Insights. The bundle was developed in response to the need for a more practical way to accelerate patching, close update gaps, and gain clearer visibility into Microsoft Intune, Configuration Manager, and hybrid environments. As AI accelerates vulnerability research and discovery, IT organizations face increasing pressure to keep applications secure. They need capabilities that help them move from awareness to action without adding more disconnected workflows.

AI is changing how security vulnerabilities are detected

With the rise of AI, both security professionals and threat actors can identify vulnerabilities faster than ever. In fact, Recast’s proprietary database tracked a 341% increase in Common Vulnerabilities and Exposures (CVEs) in the first half of 2026, from 477 in Q1 to 2,102 in Q2. That shift is compressing the time organizations have to assess exposure, prioritize fixes, and deploy updates across their environments. In response to this change, the Cybersecurity & Infrastructure Security Agency (CISA) issued a Binding Operational Directive (BOD 26-04) in June that requires federal agencies to prioritize patching efforts based on risk.

For IT teams already managing large application portfolios in Configuration Manager, Intune, or both, patching has become a complex, ongoing task rather than a weekly or monthly requirement. Not only must these teams be able to keep third-party and custom applications patched, but they also need to determine that their efforts truly are reducing risk.

The new Recast bundle connects endpoint actions, third-party patching, and hardware lifecycle visibility in a single offering designed to help teams work faster and with more control.

  • Right Click Tools helps administrators identify and remediate endpoint issues quickly from familiar workflows within Configuration Manager, Intune, or both.
  • Right Click Tools Patching reduces manual update work with a catalog of nearly 6,500 applications and custom patching capabilities that support policy-driven patch management. Reporting and validation help teams understand coverage, track patch status, and confirm successful deployments.
  • Warranty Insights helps administrators identify devices approaching warranty expiration, plan refresh activities, and reduce hardware lifecycle risk.

Together, these capabilities enable organizations to shift from reactive endpoint management to more consistent endpoint control.

“Customers are telling us that patching has become a very different challenge than it was just a few years ago,” said Will Teevan, CEO, Recast. “They need to respond faster, prove impact, and keep applications and devices secure without adding more manual work. We created this bundle to bring the capabilities customers consistently ask for into one practical offering built around the workflows they already use.”

New data on future of VDI and workspace delivery put out by Recast Software

Posted in Commentary with tags on June 30, 2026 by itnerd

Recast, in partnership with Nerdio and VMblog, today released the findings of the 2026 State of VDI Survey in a new report, “VDI Isn’t Done. It’s Being Reworked.” The results show that VDI remains part of the workspace mix, but many IT teams are changing how they operate, secure, and support these environments. Notably, administrators lack confidence in their ability to patch VDI environments in a timely manner, making them prone to risk.

VDI is not being abandoned, but it is being actively retooled

Contrary to industry lore, VDI isn’t dead. However, it is evolving. Only 2% of respondents planned to exit an existing deployment entirely in the next 12 to 18 months, while 49% of current users reported a significant change to their VDI, Cloud PC, or published application environment over the last two years. Plans were mixed across keeping, expanding, replacing, reducing, evaluating, or starting deployments, which points to active modernization rather than a broad move away from VDI.

VDI teams lack confidence that their environments are being patched on time

The survey highlights a patch confidence gap between operations and security. Among current users, only 34% were very or extremely confident that required operating system and third-party application updates were being applied on time. Security concerns extended beyond access, with 47% citing audit logging and traceability, 41% citing data leakage controls, and 31% citing patch or vulnerability exposure windows. Although confidence is not proof of failure, it is an important operating signal. Secure access matters, but teams also need timely updates, clear reporting, and proof that controls are working.

The real cost of VDI is the burden of everyday operational work

Performance variability was the top operational pain point at 41%, but 53% of current users cited at least one lifecycle-related issue, including image management and update effort, application delivery or updates, or user profiles and personalization. Additionally, 32% of current users cited high ongoing cost, and 61% of those asked about barriers to change cited budget constraints. Together, the findings suggest that much of the cost and friction in VDI comes from the everyday work of keeping environments current, usable, and supportable.

The report is based on a significant number of responses from IT professionals with awareness of VDI, Cloud PCs, and published applications. Percentages are rounded, and some questions were multi-select.

Recast Names Intune and Configuration Manager Expert Shanmugam Senthil as Senior Director of Engineering

Posted in Commentary with tags on May 12, 2026 by itnerd

Recast today announced that Shanmugam Senthil has joined the company as Senior Director of Engineering and India Site Leader. Based in Bangalore, Senthil will help establish Recast’s India presence and strengthen the company’s engineering organization to support continued growth. His combination of Microsoft platform expertise and technology leadership experience gives Recast added depth as it evolves its capabilities to help customers manage and secure complex IT environments.

A 30-year technology industry veteran, Senthil has built and led engineering teams at Microsoft, Yahoo!, Samsung, and Sun Microsystems. During his decade at Microsoft, he led engineering teams responsible for evolving core endpoint management capabilities within Intune and ConfigMgr. That experience aligns closely with Recast’s mission and product direction as organizations look for more effective ways to manage, secure, and optimize endpoints across hybrid and cloud environments.

In his new role, Senthil will help shape the structure, culture, and daily operations in India. He will also collaborate closely with Recast’s global engineering and product teams to expand the company’s capabilities in support of its long-term product strategy.

Recast Expands Right Click Tools

Posted in Commentary with tags on April 29, 2026 by itnerd

Recast today announced Right Click Tools includes new enhancements to simplify complex hybrid and Intune-only environments. The shift from ConfigMgr to Intune is the defining operational challenge facing enterprise IT today, and most organizations are running both. Recast helps IT teams see what they have, keep it current and secure, and operate it across ConfigMgr, Intune, and everything in between.

Right Click Tools is the gold standard for helping IT teams get more value out of their Microsoft ecosystem. Moving to Intune and Entra presents organizations with a new set of challenges, and Right Click Tools continues to add capabilities that pinpoint these needs. With modules for PatchingInsights, and Privileged Access, the Right Click Tools product line addresses all aspects of endpoint management for IT organizations regardless of size.

Recast has a long history of using direct customer feedback to inform its product roadmap, building incremental improvements into the product line each month to get enhancements into users’ hands faster. Many of the capabilities already delivered this year were developed based on input from customers and the Recast Community of users.

Operating across ConfigMgr and Intune without navigating between consoles 

Recast has bolstered Right Click Tools with new options for managing devices in Intune, Entra ID, and Autopilot. These updates empower users to: 

  • Launch Intune Remote Help directly from the browser, without leaving the admin workflow 
  • Register devices in Autopilot without manual scripting, CSV uploads, or console hopping 
  • Retrieve LAPS passwords across hybrid-identity environments from a single interface 
  • Open Right Click Tools menus from six additional Intune pages, bringing the total to more than 20 pages 

Closing the third-party patching gap across 6,000+ applications

Running the latest versions of hundreds or thousands of applications is a key challenge for IT organizations as they strive to balance user productivity and infrastructure security. Drawing from a catalog of more than 6,000 applications, Right Click Tools Patching now enables users to: 

  • Configure settings for individual applications, so admins no longer have to create a separate deployment process if an app requires a custom setting 
  • Set up ConfigMgr or Intune deployment processes to allow the installation of 32-bit applications on 64-bit machines 
  • Restart all paused deployment processes with one click 
  • Display all deployment process events on a single page, for easier deployment process event scheduling 

Gaining visibility across extensive device fleets 

The Warranty Dashboard in Right Click Tools Insights helps IT leaders understand hardware coverage at a glance so they can anticipate refresh needs, minimize surprise costs, and extend the value of their device investments. Users can now: 

  • Determine device age and remaining coverage 
  • Filter remaining coverage by status  
  • Drill into device by status and warranty expiration timeline  

Survey data Recast Highlights pain points in Windows deployments 

Posted in Commentary with tags on March 31, 2026 by itnerd

According to modern application and endpoint management provider Recast, the results suggest the industry is in a transitional moment: while organizations are moving toward modern management platforms like Microsoft Intune, many still rely on traditional operating system deployment workflows, including tools that have recently been retired.

You can look at the results here: https://www.recastsoftware.com/?p=10926

Recast and System Center Dudes Showcase Free Tools for Intune from Microsoft MVPs

Posted in Commentary with tags on January 13, 2026 by itnerd

Recast, a leader in modern application and endpoint management, and System Center Dudes (SCD), a globally recognized consulting firm specializing in Microsoft Enterprise Mobility, today announced a joint initiative to discuss innovative, free tools for Microsoft Intune developed by Microsoft Most Valuable Professionals (MVPs) worldwide. This collaboration empowers organizations to unlock the full potential of Intune and simplify the complexities of daily systems management with input from top MVPs.

Empowering IT Teams Through Community Innovation

Since joining forces in October, Recast and SCD have focused on helping customers design, deploy, and optimize Microsoft endpoint environments by integrating SCD’s MVP-driven consulting with Recast’s robust systems management tools. Their combined expertise aims to make endpoint management more efficient, secure, and effective for enterprises of all sizes.

Webinar Series: Community Tools for Intune from MVPs Around the Globe

To further support the IT community, Recast and SCD will host a four-part webinar series, “Community Tools for Intune from MVPs Around the Globe.” Each session will feature a different MVP sharing insights and demonstrating the free tools they’ve developed for Microsoft Intune administrators. Topics include:

  • Using agents to proactively identify and resolve errors
  • Managing multi-tenant, multi-customer environments
  • Comparing Intune policies across tenants or between tenants and baselines
  • Backing up, restoring, and minimizing configuration drift

Session details:

  • January 22 at 10 a.m. CT – Sandy Zeng, MVP, Security, Windows and Devices, will do a deep dive into her IntuneDiff tool.
  • January 29 at 10 a.m. CT – Jannik Reinhard, MVP, Security, Azure AI Foundry, will announce the release of his new agent for Intune.
  • February 5 at 10 a.m. CT – Andrew Taylor, MVP, Security, will discuss four of the most popular free tools he has created for the Intune community.
  • February 12 at 10 a.m. CT – David Segura, MVP, Microsoft Azure, will share some of his favorite tools designed to improve user experiences with Intune.

Those interested can register for these events on Recast’s website.

Recast Names Jake Mosey Chief Product Officer

Posted in Commentary with tags on January 6, 2026 by itnerd

Recast today announced Jake Mosey has joined the company as Chief Product Officer. Mosey is a trusted customer advocate and technology industry veteran with a deep understanding of the opportunities and challenges ahead for Recast’s global customers using both Application Workspace and Right Click Tools. With a proven track record of translating user feedback into actionable strategies, he is committed to driving innovation by consistently elevating the voice of the customer.

Mosey has extensive experience in product strategy and development. He held several strategic roles during his 17-year tenure at Jamf, most recently serving as Vice President of Small and Medium-Sized Business Markets. As one of the founders of Jamf Nation, a vibrant community of IT systems administrators, he championed IT productivity, security, and knowledge sharing. These open exchanges informed product direction and helped drive the company’s notable growth and success.

Free Recast Tools Support the IT Community

Recast has also established a thriving and fast-growing user community. Mosey will be actively involved in using the input from this dynamic group to define the company’s product vision. In fact, his appointment comes at an exciting time for Recast, which expanded its portfolio of free community tools in 2025 with the addition of OSDCloud and the launch of Right Click Tools for Intune.

Recast Unveils Notable Right Click Tools Updates to Strengthen Endpoint Management

Posted in Commentary with tags on December 19, 2025 by itnerd

Recast today announced the latest Right Click Tools advancements. Features include new tools for administering Intune and Entra environments as organizations continue to blend the capabilities of ConfigMgr and Intune. Right Click Tools enables IT teams to manage endpoints more efficiently, reduce operational costs, and ensure consistent security and performance.

The Right Click Tools product line extends endpoint management with add-ons for PatchingInsights, and Privileged Access. The Intune-first companion unifies today’s ConfigMgr reality with tomorrow’s cloud management future, empowering organizations to accelerate and ensure success on their cloud journey.

Expanded Intune and Entra ID Capabilities in Right Click Tools


In recent months, Right Click Tools has introduced powerful new options for managing devices in Intune and Entra ID environments. Users can now:

  • Run Intune-specific tools simultaneously on multiple devices. This includes deleting devices from Intune/Azure, adding devices to Entra groups, and syncing Intune application and compliance policies. 
  • Remove devices from Intune and/or Entra with a single tool, and trigger policy updates with ease.
  • Leverage new Windows Autopilot management features such as adding/editing group tags and removing devices from Autopilot for streamlined device onboarding and lifecycle management.

Optimizations for Right Click Tools Patching


Recast’s development team completed numerous product enhancements within Right Click Tools Patching throughout 2025. The product now enables users to:

  • Set up automatic email notification templates that alert systems administrators of application deployment successes or failures.
  • Upload and deploy custom applications alongside Recast’s library of nearly 4,500 software titles.  
  • Use pre- and post-deployment PowerShell scripting for advanced configuration.
  • Schedule deployments to align with Microsoft’s Patch Tuesday.
  • Update third-party applications using an existing ConfigMgr Software Update catalog.
  • Create Intune deployment processes for the applications in ConfigMgr ARP inventory.

New Device Visibility in Right Click Tools Insights

The Warranty Information Dashboard now provides real-time visibility into warranty status over time and by manufacturer for devices handled in Microsoft Intune. This enhancement helps IT teams proactively manage hardware lifecycles and ensure device reliability across the enterprise.

The new Insights node in Recast Management Server offers device inventory data from more than a dozen existing Insights inventory classes.