Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

SecurityWeek general Microsoft Linux Aug 11

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges.

SecurityWeek → Details

BleepingComputer general Microsoft Aug 11

Windows 10 KB5120249 cumulative update released with fixes

Microsoft has released Windows 10 KB5120249 cumulative update for versions 22H2 and 21H2 to fix security vulnerabilities and bugs. [.

BleepingComputer → Details

BleepingComputer general Microsoft Amazon Aug 11

Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days

Today is Microsoft's August 2026 Patch Tuesday, and with it comes security updates for a massive 400 flaws, including one actively exploited and two publicly...

BleepingComputer → Details

Tenable Blog vendor Microsoft AMD Aug 11

Microsoft's August 2026 Patch Tuesday Addresses 398 CVEs (CVE-2026-68820)

42Critical 355Important 1Moderate 0Low Microsoft addresses 398 CVEs in the eighth Patch Tuesday of 2026, with three zero-days, including one that was exploit...

3 IOCs

Tenable Blog → Details

SANS ISC advisories Microsoft Docker Aug 11

Microsoft Patch Tuesday August 2026, (Tue, Aug 11th)

This month we got patches for 418 vulnerabilities. Of these, 62 are critical, 1 is being exploited in the wild, and 2 were publicly disclosed as zero-days.

T1190 T1548

SANS ISC → Details

BleepingComputer general Microsoft Aug 11

Windows 11 KB5121003 & KB5120240 cumulative updates released

Microsoft has released Windows 11 KB5121003 and KB5120240 cumulative updates for versions 25H2/24H2 and 23H2 to fix security vulnerabilities, bugs, and add n...

BleepingComputer → Details

The Hacker News general Microsoft Aug 11

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE

Security researchers found a way to enter Microsoft SharePoint servers as any user, including an administrator, with no valid account. A significant part of ...

1 IOC

The Hacker News → Details

The Hacker News general Microsoft Aug 11

DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt

The ransomware group known as DeadLock has been observed using decentralized infrastructure to facilitate victim communications and data leak operations in a...

The Hacker News → Details

Security Affairs general Microsoft Apple Amazon Cisco Linux Aug 11

Cisco Warns of Seven ClamAV Flaws, Two With Public PoCs

Cisco warns that seven ClamAV flaws affect Secure Endpoint Connector products, with two having public PoCs that could enable remote DoS attacks. Cisco warned...

T1498

Security Affairs → Details

Rapid7 Blog vendor Microsoft Rapid7 Aug 11

Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)

Overview On July 14, 2026, Rapid7 and Microsoft disclosed CVE-2026-55040, an authentication bypass vulnerability affecting Microsoft SharePoint. Today we are...

T1556 1 IOC

Rapid7 Blog → Details

Rapid7 Blog vendor Microsoft Rapid7 Aug 11

CVE-2026-63520: Microsoft SharePoint Remote Code Execution (FIXED)

Overview Rapid7 Labs conducted a zero-day research project against Microsoft SharePoint, resulting in the discovery of two new vulnerabilities that, when cha...

T1190 2 IOCs

Rapid7 Blog → Details

BleepingComputer general Microsoft Aug 11

CISA: Microsoft SharePoint flaw now exploited in ransomware attacks

CISA confirmed today that ransomware gangs have begun abusing a high-severity Microsoft SharePoint remote code execution vulnerability, which has been flagge...

T1190

BleepingComputer → Details

GBHackers general Microsoft Aug 11

Plug & Pwn Attack Exploits Windows PnP to Gain SYSTEM Access With Zero Clicks

Security researchers Alejandro Hernando, also known as 0xedh, and Borja Martínez have unveiled a research project titled “Plug & Pwn.” This project demonstra...

GBHackers → Details

CSO Online enterprise Microsoft GitHub Aug 11

GitHub already has an EDR. You just have to listen to it

Many of the recent supply-chain attacks could have been caught earlier if defenders looked closely at the telemetry GitHub already provides, researchers said...

CSO Online → Details

CISA Advisories advisories Microsoft Cisco Aug 11

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.

3 IOCs

CISA Advisories → Details

The Hacker News general Microsoft Aug 11

Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11

Windows Plug and Play can be abused to fetch signed vendor software for an emulated USB device and execute privileged installation components that researcher...

The Hacker News → Details

GBHackers general Microsoft WordPress Aug 11

ErrTraffic Combines WordPress Hacks, Blockchain C2 and Rotating Malware Domains in One Delivery Network

An active ErrTraffic malware-as-a-service campaign that combines compromised WordPress sites, ClickFix lures, Polygon blockchain smart contracts and rapidly ...

T1588

GBHackers → Details

GBHackers general Microsoft Aug 11

DeadLock Ransomware Disables Windows Defender, Backups and Event Logs Before Encrypting Files

DeadLock, an emerging financially motivated ransomware operation that couples conventional intrusion tradecraft with decentralized infrastructure engineered ...

GBHackers → Details

GBHackers general Microsoft Aug 11

Pass-the-Passkey Attack Exploits Windows and Entra ID to Bypass MFA

Security researchers have recently revealed a new attack family named “Pass-the-Passkey,” which enables adversaries to impersonate enterprise users and circu...

T1566

GBHackers → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-541: (Pwn2Own) Microsoft Windows win32kfull Use-After-Free Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

«Previous page 1 ... 8 9 10 11 12 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA