Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

BleepingComputer general Microsoft NEW 2h ago

Microsoft PowerToys adds Alt+Tab-style switching for an app's windows

Microsoft updated its Windows PowerToys toolset with a new utility dubbed "Window Hopper" that lets users switch between an app's windows more quickly. [.

BleepingComputer → Details

Help Net Security general Microsoft Citrix NEW 2h ago

Citrix UniconOS dual boot turns Windows endpoints into their own recovery device

Citrix announced Citrix UniconOS dual boot, a new endpoint resiliency capability designed to help organizations recover access to work in minutes — without s...

T1592

Help Net Security → Details

SC Media general Microsoft NEW 2h ago

New 'Sleepwalker' backdoor uses custom command language

Discovered by malware researcher Dominik Reichel, Sleepwalker impersonates Microsoft's dpapi.dll and loads via side-loading into ESET Management Agent.

SC Media → Details

GBHackers general Microsoft NEW 4h ago

Scammers Impersonate Microsoft to Push Fake Security Scans and Refund Fraud

A cluster of fraudulent websites impersonating Microsoft is using fake “security scans” to pressure victims into uninstalling antivirus products, disclosing ...

GBHackers → Details

The Hacker News general Microsoft NEW 4h ago

Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows

Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 acc...

T1566

The Hacker News → Details

CSO Online enterprise Microsoft Cisco Linux Intel NEW 4h ago

AI helps Chinese-speaking hackers speed up attacks on exposed servers

A Chinese-speaking cybercrime group is using AI-driven tools to help compromise internet-facing Windows and Linux web servers, according to Cisco Talos, Cisc...

CSO Online → Details

Help Net Security general Microsoft Google 6h ago

Unpatched Zimbra servers are falling to CVE-2026-73570 attacks

At least 274 internet-facing Zimbra instances have been compromised by unknown attackers via CVE-2026-73570, the Shadowserver Foundation shared on Monday. Ab...

1 IOC

Help Net Security → Details

GBHackers general Microsoft 9h ago

EvilTokens Abuses Microsoft Device Codes to Hijack Accounts Without Stealing Passwords

EvilTokens is pushing phishing-as-a-service beyond credential theft by abusing Microsoft’s device authorization flow to obtain valid Microsoft 365 tokens. Vi...

T1566 T1078

GBHackers → Details

GBHackers general Microsoft 11h ago

Microsoft Teams New Security Policy Lets Admins Automatically Block Meeting Bots

Microsoft is introducing a new Microsoft Teams meeting policy that automatically blocks identified external bots. This aims to address growing concerns regar...

GBHackers → Details

GBHackers general Microsoft Apple Amazon Palo Alto Networks Linux 11h ago

5 Palo Alto GlobalProtect Flaws Let Attackers Gain SYSTEM/Root Access and Steal AD Passwords

Security researcher Martijn van Ramesdonk has disclosed five vulnerabilities affecting Palo Alto Networks’ GlobalProtect, an enterprise VPN and endpoint agen...

T1548 T1068

GBHackers → Details

Qualys Blog vendor Microsoft Qualys 15h ago

CVE-2026-69414 ShieldBreak Zero-Day: No Patch, and CISA BOD 26-04 Gives You 14 Days

Executive Summary ShieldBreak (CVE-2026-69414) is a zero-day elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsof...

1 IOC

Qualys Blog → Details

SC Media general Microsoft 18h ago

Microsoft says Entra ID identity software not exploited, revises CVE

While the urgency has changed, security pros say teams should still review Entra ID logs for anything suspicious before the patch.

SC Media → Details

Rapid7 Blog vendor Microsoft Rapid7 23h ago

Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)

T1190 1 IOC

Rapid7 Blog → Details

BleepingComputer general Microsoft 1d ago

Microsoft Teams now lets admins block external bots from meetings

Microsoft is rolling out a new Teams meeting protection policy that allows administrators to automatically block all identified external bots from joining Te...

BleepingComputer → Details

GBHackers general Microsoft 1d ago

North Korean Hackers Hide AnyDesk on Victim PCs to Maintain Secret Remote Access

North Korea-linked Kimsuky operators have targeted organizations in South Korea and Japan with spear-phishing campaigns that install and conceal AnyDesk, giv...

T1566 T1059.001

GBHackers → Details

Infosecurity Magazine general Microsoft 1d ago

Doubloon Dredger Abuses Notion to Harvest Authentication Tokens

Doubloon Dredger abused Notion and malicious PDFs to harvest Microsoft authentication tokens

Infosecurity Magazine → Details

BleepingComputer general Microsoft 1d ago

Microsoft: August updates break printing, PDF export in WPF apps

Microsoft has confirmed that .NET Framework updates released as part of the August 2026 Patch Tuesday are breaking printing and PDF export in WPF applications.

BleepingComputer → Details

The Hacker News general Microsoft 1d ago

WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords

Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoader that's used to deliver next-stage payloads and likely se...

The Hacker News → Details

CSO Online enterprise Microsoft Check Point Linux 1d ago

Windows Defender’s own driver can leave systems defenseless

A Microsoft-signed Windows Defender remediation driver can be repurposed into a kernel-level “operation engine” capable of deleting files, modifying the regi...

CSO Online → Details

BleepingComputer general Microsoft 1d ago

Microsoft shares temporary fix for Windows 11 gaming issues

Microsoft has shared a temporary fix for ongoing gaming issues caused by Windows 11 updates released during the August 2026 Patch Tuesday. [.

BleepingComputer → Details

1 2 3 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA