Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Help Net Security general Microsoft Aug 7

August 2026 Patch Tuesday forecast: How do we deal with the patch apocalypse?

July 2026 Patch Tuesday was record-setting in so many ways. The sheer volume of security patches for almost every product in the Microsoft portfolio was the ...

Help Net Security → Details

GBHackers general Microsoft Aug 7

Hackers Can Abuse Microsoft WSUS Servers to Deploy Malicious Updates via NTLM Relay

Security researchers have shown how attackers could exploit Microsoft Windows Server Update Services (WSUS) infrastructure to distribute malicious software u...

GBHackers → Details

BleepingComputer general Microsoft Aug 6

Swiss government SharePoint breach compromised 200 accounts

Switzerland's federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 accounts. [.

BleepingComputer → Details

Check Point Research research Microsoft Check Point Aug 6

Day 2 at Black Hat: Check Point Research Takes the Stage

Day two at Black Hat, and Check Point Research brought two talks to the stage that gave the room plenty to think about. One dug into a fifteen year old blind...

Check Point Research → Details

GBHackers general Microsoft Oracle Aug 6

Fake Xeno Roblox Executor Delivers Powercat Java Stealer Through Discord

The fake “undetected” Xeno Roblox executor currently circulating on gaming forums and Discord is a weaponized loader for the Powercat Java stealer, a multi‑s...

GBHackers → Details

The Hacker News general Microsoft Oracle Aug 6

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

Attackers broke into an organization's Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation to...

The Hacker News → Details

Help Net Security general Microsoft Aug 6

Microsoft extends zero trust deeper into enterprise AI

Microsoft expanded its Zero Trust for AI strategy with updates to the Zero Trust Assessment tool and the Zero Trust Workshop. The additions help organization...

Help Net Security → Details

AWS Security Blog vendor Microsoft Amazon Aug 5

AWS partners with Anthropic and OpenAI to bring AWS Continuum into developer workflows

Customers have access to models that are continuously getting better with each new generation bringing larger context windows, stronger reasoning, and lower ...

AWS Security Blog → Details

HackRead general Microsoft Aug 5

OctLurk and SilkLurk Windows Backdoors Target Governments in 6 Countries

Kaspersky links OctLurk and SilkLurk to cyberespionage attacks stealing passwords, emails and files from government systems in six countries since January 2025.

HackRead → Details

The Hacker News general Microsoft Apple Intel Aug 5

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures

A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change M...

T1592

The Hacker News → Details

Microsoft Security Blog vendor Microsoft Aug 5

​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)

Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft named ...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Apple Aug 5

From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide

A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicio...

T1592

Microsoft Security Blog → Details

GBHackers general Microsoft Oracle Aug 5

Four Million Malware Reports Reveal a Widespread No-DNS C2 Blind Spot

A long‑running supply chain compromise of the QuickFox VPN accelerator that quietly delivered an FDMTP backdoor to carefully profiled Windows systems, exposi...

T1195

GBHackers → Details

GBHackers general Microsoft Cisco Aug 5

Stolen Greatness Tokens Provide Microsoft 365 Access More Than Two Weeks After Phishing

Stolen Greatness authentication tokens are providing sustained, MFA‑approved access to victim Microsoft 365 tenants for more than two weeks after the initial...

T1566 T1557

GBHackers → Details

GBHackers general Microsoft Aug 5

Microsoft Paid Record $20 Million in Bug Bounties to 562 Security Researchers Worldwide

Microsoft’s Bug Bounty Program awarded over $20 million to 562 security researchers this year, marking the highest total payout and the largest number of rec...

GBHackers → Details

Help Net Security general Microsoft Google Tenable Aug 5

Tenable broadens AI visibility across major LLMs and AI tools

Tenable has announced enhanced AI security capabilities within the Tenable One Exposure Management Platform. Tenable One AI Exposure now delivers expanded pl...

Help Net Security → Details

The Hacker News general Microsoft Aug 5

Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk

Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device c...

T1566

The Hacker News → Details

GBHackers general Microsoft Salesforce AMD Aug 5

Fake Open VSX Extensions Hijack AMD, Azure, Salesforce and Government Namespaces

Fake Open VSX extensions have hijacked high‑trust namespaces like AMD, Azure, Salesforce, Hyperledger, and a U.S.

GBHackers → Details

GBHackers general Microsoft Apple Aug 5

ScreenConnect Attackers Hide Windows, Delete Installers and Masquerade as Software Updates

ScreenConnect is being systematically weaponized in the SMOKE#SCREEN campaign, where attackers hide execution windows, delete installers, and disguise malici...

GBHackers → Details

Help Net Security general Microsoft Aug 5

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove

A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and t...

T1566

Help Net Security → Details

«Previous page 1 ... 11 12 13 14 15 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA