Intelligence View
Your Phone calling feature to come to Windows 10 on ARM PCs in April
The ability to make phone calls through Your Phone on Windows 10 on ARM PCs is currently not supported, but that's about to be fixed. If you have a Surface Pro X (five of us do here at Windows Central) or any Windows 10 on ARM PC, you may…
If you have a Surface Pro X (five of us do here at Windows Central) or any Windows 10 on ARM PC, you may have noticed that the calling support in Your Phone doesn't quite work. The feature for Windows 10 on ARM often results in phone calls coming through distorted rendering it effectively useless (all the other Your Phone perks work as expected).
The good news is if you have experienced this effect, even with the latest and greatest phones from Samsung, you're not alone. Your misery may also be ending soon.
We asked Vishnu Nath, Partner Director of PM at Microsoft Mobile and Cross-Device Experiences, about plans to fix this and the team is on it:
We are testing this as we speak, running it on my Pro X - we anticipate it should reach you ~April— Vishnu Nath ?????⌨️? (@VishnuNath) March 11, 2020
Microsoft is currently testi...
1. Sofort-Triage & Abwehrmaßnahmen
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - Your Phone calling feature to come to Windows 10 on ARM PCs in April
id: 84b4adef-e96f-4fc5-9611-0d2bfe6170c6
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-27
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-27"
description = "YARA Signature for "
strings:
$str = "Your Phone calling feature to " ascii wide
condition:
any of them
}index=security sourcetype IN ("cisco:asa", "pan:traffic", "zeek_conn", "suricata", "WinEventLog:Security")
("Your Phone calling feature to come to Wi")
| stats count earliest(_time) as first_seen latest(_time) as last_seen by src_ip, dest_ip, dest_host, signature
| eval first_seen=strftime(first_seen, "%Y-%m-%d %H:%M:%S"), last_seen=strftime(last_seen, "%Y-%m-%d %H:%M:%S")
| sort - countmessage: "*Your Phone calling feature to come to Wi*"CommonSecurityLog
| where Message has "Your Phone calling feature to come to Wi"
| summarize EventCount = count(), FirstSeen = min(TimeGenerated), LastSeen = max(TimeGenerated) by SourceIP, DestinationIP, DestinationPort, Activity
| extend DetectionRule = "iShareStuff-CTI-Compiled"
| sort by EventCount desc2. Cyber Threat Intelligence & Forensik
MITRE ATT&CK Matrix Navigator 14 Taktiken
tsecurity.de Cognitive Threat RAG
Analyse für identifizierte Bedrohung auf Basis von Live-CTI (ENISA EUVD): CVSS 0.0 · EPSS 0.0% · CISA KEV: nein. Handlungsableitung aus den verlinkten Hersteller-Quellen.
Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.
- 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
- 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
- 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.