Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

CSO Online enterprise Microsoft Jul 31

Microsoft confirms an AI worm is propagating through Copilot and other MS apps

A prominent Norwegian AI researcher on Tuesday posted details about an AI worm that is wreaking havoc in various Microsoft applications, including Word and C...

CSO Online → Details

CSO Online enterprise Microsoft Jul 31

Copilot worm can spread through Microsoft Word docs

An “AI worm” can spread through Microsoft Word documents using Copilot as a vector, a prominent Norwegian AI researcher reported on Tuesday. The report from ...

CSO Online → Details

Elastic Security Labs research Microsoft Jul 31

What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

Elastic Defend automatically generates and instantly deploys vulnerable driver YARA rules from VirusTotal, LOLDrivers and Microsoft's blocklist, closing the ...

Elastic Security Labs → Details

SC Media general Microsoft Amazon Jul 30

FTC sues Hims & Hers for alleged deceptive privacy practices and data sharing

The lawsuit alleges that Hims & Hers placed pixel-sized trackers from Meta, Snap, Microsoft, Pinterest, Reddit and X on its website.

SC Media → Details

HackRead general Microsoft Jul 30

Top 10 Companies to Hire Power BI Developers in 2026

Compare 10 Power BI development companies for 2026, covering DAX, Microsoft Fabric, data engineering, security, compliance, AI, and enterprise BI project needs.

HackRead → Details

SC Media general Microsoft Jul 30

Critical Azure Cosmos DB flaw risked cross-tenant compromise

Patched Azure Cosmos DB bug threatened Microsoft and customer databases.

SC Media → Details

Microsoft Security Blog vendor Microsoft Jul 30

​​​​What’s new in Microsoft Security: July 2026

This month’s updates help security and IT teams secure their AI environments, use AI to defend, and strengthen the foundations that AI-powered operations dep...

Microsoft Security Blog → Details

BleepingComputer general Microsoft Jul 30

Microsoft Teams vishing attacks lead to Chaos ransomware attacks

Threat actors are impersonating IT support staff in Microsoft Teams calls to gain remote access to corporate devices and deploy Chaos ransomware in attacks t...

BleepingComputer → Details

HackRead general Microsoft Jul 30

Microsoft Fixes CosmosEscape Flaw That Could Allow Any Cosmos DB Takeover

Cybersecurity researchers at Wiz found CosmosEscape in Azure's Gremlin API, exposing a master key that could access any Cosmos DB account. Microsoft fixed it...

HackRead → Details

Help Net Security general Microsoft Proofpoint Jul 30

Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)

Russia-affiliated cyber espionage group Laundry Bear (aka Void Blizzard, aka TA488) is exploiting CVE-2026-42897, a cross-site scripting vulnerability in Mic...

1 IOC

Help Net Security → Details

The Hacker News general Microsoft Jul 30

Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database

A now-patched vulnerability in Azure Cosmos DB could have let an attacker escape the service's Gremlin query sandbox and obtain full read and write access to...

The Hacker News → Details

GBHackers general Microsoft Jul 30

AtlasRAT Uses Four-Stage In-Memory Loader to Keylog and Inject Malware Into WeChat

AtlasRAT is a modular Windows remote access trojan that uses a four-stage, fully in-memory loader chain to quietly establish TLS‑ and ChaCha20‑protected comm...

GBHackers → Details

Infosecurity Magazine general Microsoft Check Point Jul 30

Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages

Check Point researchers detail phishing attack as an example of attackers dropping fake Microsoft login pages in favor of abusing Microsoft’s legitimate auth...

T1566

Infosecurity Magazine → Details

CISA Advisories advisories Microsoft Linux Jul 30

o6 Automation open62541

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to disclose sensitive information, cause a denial of service, or p...

T1498

CISA Advisories → Details

The Hacker News general Microsoft Jul 30

Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents

Hidden instructions in a Word document can make Microsoft 365 Copilot rewrite figures in a report, then copy the same instructions into the finished file. Hå...

The Hacker News → Details

Help Net Security general Microsoft Check Point Jul 30

Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks

Attackers are moving away from fake Microsoft login pages in favor of abusing Microsoft’s own authentication system, letting phishing campaigns slip past the...

T1566

Help Net Security → Details

CSO Online enterprise Microsoft Proofpoint Jul 30

Russian hackers turn Exchange flaw into ‘half-click’ mailbox takeover

A Russia-aligned threat group used a “half-click” exploit against Microsoft Exchange’s Outlook Web Access to install a browser-based backdoor when recipients...

CSO Online → Details

GBHackers general Microsoft VMware Linux Jul 30

New GenieLocker Ransomware Encrypts Windows, Linux and VMware ESXi Systems

GenieLocker is a custom ransomware family linked to the Toy Ghouls group (also known as Bearlyfy or Labubu). It can encrypt systems running Windows, Linux, a...

GBHackers → Details

GBHackers general Microsoft Jul 30

Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware

Hackers are abusing Microsoft Teams voice calls and fake IT helpdesk personas to gain remote access to corporate endpoints, drop a custom post‑exploitation t...

GBHackers → Details

CSO Online enterprise Microsoft Jul 30

A Scattered Spider member was indicted. Microsoft’s GDID went to trial.

A recently released criminal complaint against Peter Stokes, an alleged member of the Scattered Spider cybercrime group, reveals previously unpublicized deta...

CSO Online → Details

«Previous page 1 ... 14 15 16 17 18 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA