Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

GBHackers general Microsoft Aug 10

Play Ransomware Masquerades as PsExec to Blend Into Legitimate Windows Administration

Play ransomware is using a familiar Windows-administration disguise to reduce suspicion during intrusions: a custom service binary named PSexesvc.exe.

T1021

GBHackers → Details

Kaspersky Securelist research Microsoft Apple Aug 10

IT threat evolution in Q2 2026. Non-mobile statistics

The report presents key trends and statistics on malware that targeted personal computers running Windows and macOS, as well as internet of things (IoT) devi...

Kaspersky Securelist → Details

The Hacker News general Microsoft GitHub Aug 10

Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials

Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code (VS Code) extension named Solidity Pro ("solidity-pro") that has been observe...

The Hacker News → Details

GBHackers general Microsoft Intel Aug 10

North Korean Hackers Explore AI Transcription for Stolen Calls and Meetings

North Korea-linked Kimsuky operators are expanding their artificial intelligence capabilities, with newly observed evidence showing experimentation with loca...

T1566

GBHackers → Details

GBHackers general Microsoft Aug 10

Payroll Pirates Abuse Microsoft Graph to Find HR and Finance Staff After Account Compromise

A widespread phishing operation that compromises Microsoft 365 accounts through adversary-in-the-middle (AiTM) infrastructure, then uses Microsoft Graph to i...

T1566 T1557

GBHackers → Details

Help Net Security general Microsoft Google Apple Linux Aug 10

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model

Enpass is a password manager that stores passwords, passkeys, payment cards, identities, secure notes, software licenses, and other sensitive information in ...

Help Net Security → Details

Exploit Database advisories Microsoft Aug 10

[local] Microsoft Edge 150.0.4078.48 - RCE

Microsoft Edge 150.0.

Exploit Database → Details

Security Affairs general Microsoft Aug 9

U.S. Defense Manufacturer IEH Hit by Phishing Attack, Exposing Potentially Export-Controlled Data

IEH was breached by a phishing attack that exposed its Microsoft 365 inbox, including emails and potentially export-controlled military data. IEH Corporation...

T1566

Security Affairs → Details

The Hacker News general Microsoft Aug 8

New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens

New research shows content inside an email can escape its message boundary and interfere with the webmail interface. Across attack chains spanning Outlook, G...

The Hacker News → Details

GBHackers general Microsoft Apple Zoom Aug 8

Fake Zoom Installer Uses .NET Downloader to Deploy Overlord RAT on macOS

A cross-platform malware campaign that disguises itself as a legitimate Zoom installer to deploy Overlord, an open-source remote access trojan (RAT), on both...

GBHackers → Details

GBHackers general Microsoft Intel Aug 8

Storm-1175 Launches StormEncryptor Ransomware Attacks Using N-able Security Flaw

Microsoft Threat Intelligence has identified a new ransomware campaign attributed to the financially motivated threat actor Storm-1175 that began deploying a...

GBHackers → Details

AWS Security Blog vendor Microsoft Amazon Aug 7

A decade of enterprise identity in the cloud with AWS Managed Microsoft AD

Ten years ago, we launched AWS Directory Service for Microsoft Active Directory, a fully managed Microsoft Active Directory in the AWS Cloud. In that origina...

AWS Security Blog → Details

The Hacker News general Microsoft Linux Aug 7

Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer

A cluster of nearly 800 malicious packages has been published to the npm registry as part of a new campaign designed to deliver cross-platform malware target...

The Hacker News → Details

GBHackers general Microsoft Aug 7

Windows Hello Key Abuse Lets Attackers Access Microsoft Entra ID Accounts

Security researcher has disclosed a technique involving Windows Hello for Business (WHFB) that could allow attackers with access to an active Windows user se...

GBHackers → Details

Help Net Security general Microsoft Aug 7

200 accounts compromised in Swiss government’s Microsoft SharePoint breach

Hackers exploited vulnerabilities in Microsoft SharePoint servers belonging to Switzerland’s Federal Office of Information Technology, Systems and Telecommun...

Help Net Security → Details

GBHackers general Microsoft Google Apple Amazon Oracle Linux Aug 7

Google Chrome 151 Update Fixes 41 Security Vulnerabilities, Including 6 Critical Flaws

Google has released Chrome version 151.0.

GBHackers → Details

The Hacker News general Microsoft Aug 7

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniqu...

T1566 T1557

The Hacker News → Details

The Hacker News general Microsoft Aug 7

New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables

Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hija...

The Hacker News → Details

SecurityWeek general Microsoft Apple Aug 7

Microsoft, Apple Release Fresh Security Updates

Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass. The post Microsoft, ...

T1556

SecurityWeek → Details

The Hacker News general Microsoft Aug 7

Malware Can Abuse Windows Hello for Business Keys for Persistent Entra ID Access

Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hija...

The Hacker News → Details

«Previous page 1 ... 10 11 12 13 14 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA