Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-540: (Pwn2Own) Microsoft Windows win32kfull Use-After-Free Information Disclosure Vulnerability

This vulnerability allows local attackers to disclose sensitive information on affected installations of Microsoft Windows. An attacker must first obtain the...

1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-539: (Pwn2Own) Microsoft Windows ipt.sys Incorrect Permission Assignment Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-538: (Pwn2Own) Microsoft Exchange Improper Authorization Privilege Escalation Vulnerability

This vulnerability allows remote attackers to escalate privileges on affected installations of Microsoft Exchange. Although authentication is required to exp...

T1548 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-537: (Pwn2Own) Microsoft Windows storport Integer Overflow Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-536: (Pwn2Own) Microsoft Windows http.sys Integer Overflow Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-535: (Pwn2Own) Microsoft Exchange External Control of File Path Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Exchange. Although authentication is required to ...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-534: (Pwn2Own) Microsoft Exchange Capture-Replay Authentication Bypass Vulnerability

This vulnerability allows remote attackers to bypass authentication on affected installations of Microsoft Exchange. Authentication is not required to exploi...

T1556 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-544: Microsoft Windows Deployment Services Use-After-Free Remote Code Execution Vulnerability

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Microsoft Windows Server. Authentication is not r...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-543: Microsoft Windows ICC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Windows. Interaction with the Mscms.

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-542: Microsoft Windows UMPDDrvBitBlt Improper Object Management Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

SC Media general Microsoft Intel Aug 10

Storm-1175 actor deploys new StormEncryptor ransomware after N-central vulnerability exploitation

Microsoft Threat Intelligence indicates that Storm-1175, believed to be China-based, likely exploited an authentication-bypass vulnerability (CVE-2026-18577)...

1 IOC

SC Media → Details

The Hacker News general Microsoft Intel Aug 10

China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw

Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain calle...

The Hacker News → Details

Microsoft Security Blog vendor Microsoft Intel Aug 10

Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise 

Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and h...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Aug 10

DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure

Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastruct...

Microsoft Security Blog → Details

SC Media general Microsoft Aug 10

Defense supplier IEH Corporation discloses Microsoft 365 mailbox breach via phishing

The breach occurred when an employee fell victim to a phishing scam, impersonating a business contact and presenting a fake Microsoft sharing link.

T1566

SC Media → Details

SC Media general Microsoft Aug 10

Windows Hello for Business keys can be silently abused by malware

Researcher Dirk-jan Mollema demonstrated that malware can exploit Windows Hello for Business keys on TPM-backed systems without extracting private keys, reco...

SC Media → Details

Help Net Security general Microsoft Apple Aug 10

Microsoft Entra ID is removing an extra MFA hurdle for Windows Hello and macOS PSSO users

Microsoft is changing how Entra ID handles MFA for people who sign in with Windows Hello for Business (WHfB) or macOS Platform Single Sign-On (PSSO). The rol...

T1566

Help Net Security → Details

The Record general Microsoft Aug 10

China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns

A China-linked threat actor is believed to be exploiting a critical vulnerability affecting cybersecurity software from the company N-able.

The Record → Details

The Hacker News general Microsoft Aug 10

New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA

Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are design...

T1566

The Hacker News → Details

CSO Online enterprise Microsoft Google Atlassian Aug 10

One-click flaw in Atlassian Rovo exposed enterprise data via prompt injection attack

Atlassian’s enterprise AI assistant Rovo, which is usually connected across sensitive work environments like Slack, Microsoft 365, and Google Workspace, was ...

CSO Online → Details

«Previous page 1 ... 9 10 11 12 13 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA