Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft Security Blog

20 articles

Microsoft Security Blog vendor Microsoft 2d ago

From guidance to action: Security fundamentals that materially reduce risk 

AI has made fundamental changes to the operating environment for cybersecurity. Explore exposure management guidance on recommended controls and take action ...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Apple 2d ago

Improving email security outcomes with real-world Microsoft Defender insights

The latest email security benchmarking reports show strong Microsoft Defender performance across pre-delivery and post-delivery scenarios and reveal where th...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 10

Protecting organizations from AI-assisted executive impersonation and invoice fraud

Microsoft examines an AI-assisted business email compromise campaign that used executive impersonation and fake invoices to target finance teams with ACH pay...

T1598

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 10

Detect and disrupt AI-themed attacks with Microsoft Defender

See how Microsoft Defender detects and disrupts AI-themed phishing, malware, and multi-stage attacks across the attack chain. The post Detect and disrupt AI-...

T1566

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 9

Threat Matrix: Mapping threats across cloud web applications

Microsoft introduces the Cloud Web Applications Threat Matrix, a MITRE ATT&CK-aligned framework that helps defenders understand, prioritize, and mitigate thr...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 9

Passkey-themed social engineering leads to identity and cloud compromise

Passkey-themed social engineering is being used to compromise identities and enable broader cloud attacks. Learn how threat actors establish MFA persistence,...

T1204 T1592

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 4

How to secure edge AI in customer-owned environments

As AI moves into customer-owned environments, organizations need new ways to verify the systems, software, and AI assets they trust before releasing sensitiv...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 3

ASCII smuggling crosses over from AI prompt injection to phishing evasion

Invisible Unicode characters popularized for hiding instructions from AI models are now being used to obfuscate words before email filters parse them. The po...

T1566

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Sep 2

Impersonating IT support: how threat actors turn a remote session into enterprise-wide access

Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain...

T1204 T1021

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 1

Counterfeit installers to system compromise: Tracking a deceptive software download campaign

An active campaign is impersonating legitimate software vendors to deliver malware through look-alike download pages and regenerated installer archives. Micr...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 1

Cybersecurity IR Workshop: The workshop you shouldn’t miss

Cyber resilience starts before a crisis. Gain practical insights from DART to strengthen readiness and response.

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Aug 29

TerminalFix campaign deploys a reverse tunnel through multistage intrusion

Microsoft Threat Intelligence provides analysis of a ClickFix campaign that uses fake CAPTCHA prompts, DLL sideloading, and a reverse tunnel, with detections...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Aug 27

​​​​​​What’s new in Microsoft Security: August 2026

This month’s updates provide new capabilities to help organizations gain insights into agent activity, expand security coverage across supported environments...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Aug 26

When AI infrastructure becomes the target: Securing gateways and control points

Microsoft Threat Intelligence examines attacks on exposed AI workloads, including LiteLLM gateway exploitation, credential harvesting, persistence, and crypt...

T1598

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Aug 25

The patch window is collapsing: Why security needs a new control plane

Organizations need protection that operates in the gap between discovery and remediation. The post The patch window is collapsing: Why security needs a new c...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Aug 19

Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026

Microsoft is named a visionary leader in the 2026 Frost Radar for Cloud Workload Protection Platforms, recognized for unified runtime security with Microsoft...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Aug 18

Hunting MacSync Stealer infrastructure through behavioral pivots

MacSync Stealer rapidly rotates domains to evade detection, but its behavior remains consistent. Learn how Microsoft uncovered 30+ related domains using dura...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Aug 10

Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise 

Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and h...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Aug 10

DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure

Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastruct...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Aug 5

​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)

Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft named ...

Microsoft Security Blog → Details

1 2 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA