Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Kaspersky Securelist research Microsoft VMware Linux Jul 30

Toy Ghouls’ new toy: the GenieLocker ransomware

Kaspersky experts dissect GenieLocker: new custom ransomware variants for Windows, Linux, and ESXi systems. We found this family in attacks by Toy Ghouls, a ...

Kaspersky Securelist → Details

The Hacker News general Microsoft Jul 30

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation

The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another vulnerability, t...

The Hacker News → Details

GBHackers general Microsoft Google Apple Amazon Linux Jul 30

Google Chrome 151 Fixes 370 Security Flaws, Including 7 Critical Bugs

Google has released stable Chrome version 151 updates for Windows, macOS, and Linux, addressing 370 security vulnerabilities. This update includes fixes for ...

GBHackers → Details

GBHackers general Microsoft Oracle Jul 30

TA488 Exploits Outlook Half-Click Flaw to Deploy Persistent OWAReaper Backdoor

TA488 has resurfaced with a high‑end half‑click campaign against on‑premises Outlook Web Access (OWA), exploiting CVE‑2026‑42897 to deploy a persistent JavaS...

GBHackers → Details

GBHackers general Microsoft Jul 30

Microsoft Word Copilot Flaw Lets Hidden Prompts Spread Self-Propagating AI Worms Across Documents

Security researcher Håkon Måløy has disclosed a cross-domain prompt injection vulnerability affecting Microsoft Copilot for Word. This vulnerability could al...

GBHackers → Details

Help Net Security general Microsoft Google Apple Linux Jul 30

Product showcase: Dashlane Password Manager is more security toolkit than password vault

Dashlane is a password manager for individuals and families that stores passwords, passkeys, payment cards, personal information and secure notes in an encry...

T1566 T1555

Help Net Security → Details

BleepingComputer general Microsoft Jul 29

Russian hackers exploit Exchange OWA zero-day for long-term mailbox access

The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email camp...

BleepingComputer → Details

Microsoft Security Blog vendor Microsoft Jul 29

​​Better security starts with better questions

Learn how better questions, trusted AI, and human judgment help security leaders make confident decisions and build resilient systems. The post ​​Better secu...

Microsoft Security Blog → Details

Infosecurity Magazine general Microsoft Jul 29

Russian-Alligned TA488 Returns With Persistent Outlook Web Access Attack

TA488 returned with OWA half-click exploit deploying OWAReaper implant that survived re-imaging

Infosecurity Magazine → Details

The Record general Microsoft Jul 29

Laundry Bear’s webmail hackers had more in store after February, report says

Researchers say the Russian state-linked hacking group tracked as Laundry Bear recently began exploiting a bug in Microsoft Outlook Web Access.

The Record → Details

BleepingComputer general Microsoft Jul 29

Windows 11 KB5101684 update released with 42 changes and fixes

​​Microsoft has released the KB5101684 preview cumulative update for Windows 11 24H2 and 25H2, which 42 bug fixes and additional feature improvements for the...

BleepingComputer → Details

Schneier on Security general Microsoft Linux Jul 29

Long-Lived Vulnerability in Microsoft Secure Boot

Microsoft’s Secure Boot has had a serious vulnerability for most of its existence. An industry-wide standard Microsoft invented to protect Windows, and later...

Schneier on Security → Details

GBHackers general Microsoft GitHub Intel Jul 29

Attackers Abuse GitHub Actions Workflow to Publish Provenance-Signed npm Malware

Attackers have been observed abusing GitHub Actions workflows to distribute provenance-signed malicious npm packages, marking a significant escalation in sof...

T1195

GBHackers → Details

SC Media general Microsoft Jul 28

Proof-of-concept exploit released for Certighost Windows AD CS vulnerability

Reported by Bleeping Computer. A proof-of-concept exploit was released for a vulnerability in Windows Active Directory Certificate Services (AD CS) known as ...

SC Media → Details

SC Media general Microsoft Jul 28

German government report details Windows Hello for Business biometric security limitations

Germany’s Federal Office for Information Security (BSI) published a technical analysis of Windows Hello for Business, detailing how the system performs biome...

SC Media → Details

SC Media general Microsoft Google Jul 28

Google introduces new cybercrime naming taxonomy, diverging from Microsoft's initiative

The Register reports that Google unveiled its own taxonomy for categorizing cybercrime groups, a move that appears to sideline a previous industry-wide effor...

SC Media → Details

Help Net Security general Microsoft Amazon Intel Jul 28

SpecterOps brings AWS attack path management and AI to hybrid identity security

SpecterOps has announced new capabilities built to give defenders a dynamic understanding of how adversaries traverse their hybrid environment and the abilit...

Help Net Security → Details

Infosecurity Magazine general Microsoft Jul 28

Microsoft Launches Flurry of AI Security Initiatives to Combat AI-Enabled Threats

Microsoft has launched a new agentic security system for cyber defenders as well as its first cyber-focused AI model

Infosecurity Magazine → Details

GBHackers general Microsoft Jul 28

Dismantled Kratos Phishing Kit Becomes Blueprint for Attacks on Microsoft 365 Users

The takedown of the Kratos phishing-as-a-service (PhaaS) platform in July 2026 has done little to slow the broader threat landscape. As security researchers ...

T1566 T1598

GBHackers → Details

The Hacker News general Microsoft Jul 28

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

The Iranian state-backed hacking group tracked as Nimbus Manticore (aka GalaxyGato, Mirage Kitten, Smoke Sandstorm, Subtle Snail, and UNC1549) has been attri...

The Hacker News → Details

«Previous page 1 ... 15 16 17 18 19 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA