Windows Server 2025 AD DS synchronization disruption after KB5065426
Service Disruption
Summary
Hide ▲
Show ▼
A Windows Server 2025 known issue is disrupting Active Directory Domain Services (AD DS) synchronization, causing incomplete sync for large AD security groups and risking directory inconsistency. The bug affects systems that installed the September 2025 Windows security update (KB5065426) or later updates and can break Microsoft Entra Connect Sync workflows. Administrators can mitigate the problem with a Known Issue Rollback Group Policy or a temporary registry change. A full fix is rolling out before next month's Patch Tuesday.
Related Happenings
Microsoft WUSA network-share Windows update failure
Service Disruption
H score0
First: 12.06.2026 14:44
Last: 12.06.2026 14:44
Sources 1
About this happening:
Microsoft has fixed a **WUSA** problem that caused **Windows updates** to fail when installed from a **network share**, disrupting update deployment on **Windows 11 24H2/25H2** an...
Microsoft WUSA network-share Windows update failure
Service DisruptionAbout this happening: Microsoft has fixed a **WUSA** problem that caused **Windows updates** to fail when installed from a **network share**, disrupting update deployment on **Windows 11 24H2/25H2** an...
Microsoft Windows Server 2025 and Windows 11 23H2 BitLocker recovery fix
Security Patch Release
H score15
First: 11.06.2026 11:44
Last: 11.06.2026 11:44
Sources 1
About this happening:
Microsoft shipped **KB5094125** for **Windows Server 2025** and **KB5093998** for **Windows 11 23H2** to fix a **BitLocker recovery** bug tied to the **April 2026 security update*...
Microsoft Windows Server 2025 and Windows 11 23H2 BitLocker recovery fix
Security Patch ReleaseAbout this happening: Microsoft shipped **KB5094125** for **Windows Server 2025** and **KB5093998** for **Windows 11 23H2** to fix a **BitLocker recovery** bug tied to the **April 2026 security update*...
Microsoft My Sign-Ins MFA outage
Service Disruption
H score25
First: 01.06.2026 14:40
Last: 01.06.2026 14:40
Sources 1
About this happening:
**Microsoft** is dealing with an **ongoing outage** that is blocking some users from setting up **multi-factor authentication (MFA)** and accessing **My Sign-Ins**. Affected users...
Microsoft My Sign-Ins MFA outage
Service DisruptionAbout this happening: **Microsoft** is dealing with an **ongoing outage** that is blocking some users from setting up **multi-factor authentication (MFA)** and accessing **My Sign-Ins**. Affected users...
Microsoft Windows Known Issue Rollback guidance for KB5089549
Advisory/Mitigation
H score14
First: 01.06.2026 13:59
Last: 01.06.2026 13:59
Sources 1
About this happening:
Microsoft's **Known Issue Rollback** guidance gives **Windows 11** users and admins a workaround for **KB5089549** installation failures caused by low **EFI System Partition (ESP)...
Microsoft Windows Known Issue Rollback guidance for KB5089549
Advisory/MitigationAbout this happening: Microsoft's **Known Issue Rollback** guidance gives **Windows 11** users and admins a workaround for **KB5089549** installation failures caused by low **EFI System Partition (ESP)...
Microsoft Windows Server 2016 domain controller discovery failure after KB5087537
Service Disruption
H score0
First: 26.05.2026 10:41
Last: 26.05.2026 10:41
Sources 1
About this happening:
Microsoft confirmed a **known issue** in **Windows Server 2016** after **KB5087537** that can prevent **domain controller discovery**, disrupting administrative operations and app...
Microsoft Windows Server 2016 domain controller discovery failure after KB5087537
Service DisruptionAbout this happening: Microsoft confirmed a **known issue** in **Windows Server 2016** after **KB5087537** that can prevent **domain controller discovery**, disrupting administrative operations and app...
Timeline
-
20.10.2025 18:27 3 articles · 7mo ago
Microsoft rolls out fix for Windows Server 2025 AD DS sync issue
Initial DisclosureMicrosoft is rolling out a fix for a known issue affecting Windows Server 2025 systems that installed the September 2025 Windows security update (KB5065426) or later, where Active Directory Domain Services (AD DS) synchronization and Microsoft Entra Connect Sync can produce incomplete synchronization for large AD security groups exceeding 10,000 members. Administrators can apply a Known Issue Rollback Group Policy on managed devices or use the temporary registry value 2362988687 under Computer\HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Policies\Microsoft\FeatureManagement\Overrides until the fix reaches all customers next month.
Show sources
- Microsoft fixes Windows Server Active Directory sync issues — www.bleepingcomputer.com — 20.10.2025 18:27
- Microsoft fixes Windows Server Active Directory sync issues — www.bleepingcomputer.com — 20.10.2025 18:27
- Microsoft: Sept Windows Server updates cause Active Directory issues — www.bleepingcomputer.com — 15.10.2025 18:54