Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

BleepingComputer general Microsoft 4d ago

Microsoft warns of max severity Entra ID flaw exploited in attacks

Microsoft has patched a maximum-severity vulnerability in the Entra ID identity and access management (IAM) platform that has been exploited in attacks. [.

BleepingComputer → Details

BleepingComputer general Microsoft 4d ago

Hackers abuse FTP server banners to deliver new Windows malware

Threat actors are abusing FTP banners to hide commands that deliver two previously undocumented remote access trojans named E4del and PINHOLE. [.

BleepingComputer → Details

SecurityWeek general Microsoft 4d ago

Microsoft Rolls Out 22 Fresh Security Patches

Most of the fixes resolve code execution, privilege escalation, and information disclosure vulnerabilities. The post Microsoft Rolls Out 22 Fresh Security Pa...

T1548

SecurityWeek → Details

GBHackers general Microsoft Google 4d ago

Hackers Use Fake Google Gemini Installer to Deploy Vidar Stealer and Steal Browser Credentials

Threat actors are exploiting interest in generative AI software to distribute the Vidar information stealer through a fake Google Gemini installer hosted via...

GBHackers → Details

The Hacker News general Microsoft 4d ago

Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution

Microsoft on Thursday warned of a maximum-severity security flaw in Entra ID that it said has been exploited in the wild, but noted that no customer action i...

T1190 1 IOC

The Hacker News → Details

GBHackers general Microsoft Linux 4d ago

Windows Defender Driver Abuse Enables Kernel-Level EDR and Antivirus Bypass

Security researcher Jiří Vinopal has published a detailed analysis of BTR.sys, the Microsoft Defender Boot-Time Removal driver.

GBHackers → Details

GBHackers general Microsoft 4d ago

Microsoft Entra ID RCE Flaw Lets Unauthorized Attackers Execute Code Remotely

Microsoft has disclosed a critical remote code execution vulnerability in Microsoft Entra ID, identified as CVE-2026-69836. This flaw could enable unauthoriz...

T1190 1 IOC

GBHackers → Details

Qualys Blog vendor Microsoft Qualys 5d ago

ShieldBreak: The Windows Defender Zero-Day With No Patch — Detect It, Mitigate It, With Qualys

Executive Summary ShieldBreak (CVE-2026-69414) is a zero-day elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsof...

1 IOC

Qualys Blog → Details

GBHackers general Microsoft Apple 5d ago

MacSync Stealer Uses 30+ Rotating Domains to Steal macOS Credentials and Exfiltrate Data

MacSync Stealer is expanding its macOS-focused theft operation through a rotating network of more than 30 domains, using stable execution and network pattern...

T1041

GBHackers → Details

SC Media general Microsoft 5d ago

Microsoft Defender bug causing crashes resolved

The bug caused Windows Defender quick or full scans to fail, sometimes requiring the service to be restarted.

SC Media → Details

SANS ISC advisories Microsoft 5d ago

Using Microsoft Graph and Powershell - Risk Detection Commands, (Thu, Aug 20th)

Building on the last diary on Using MS Graph and Powershell, let&#;x26;#;39;s look at "Risky" logins.

SANS ISC → Details

Check Point Research research Microsoft Linux 5d ago

BTR Reforged: Weaponizing Defender’s Remediation Driver as a Kernel Operation Primitive

Research by: Jiří Vinopal (@vinopaljiri) Abstract What if a trusted security component could be repurposed into an attacker-controlled kernel primitive? What...

Check Point Research → Details

SC Media general Microsoft Google Apple 5d ago

Black Hat/DEF CON attendees targeted in malware scheme with Google Doc lure

A malicious Google Apps Script sidebar leads to payloads for both macOS and Windows.

SC Media → Details

SANS ISC advisories Microsoft 5d ago

Using Microsoft Graph and Powershell to Mine for Information - Stale Accounts and Licenses, (Thu, Aug 20th)

Microsoft Graph is a newer API that is meant to replace several others.&#;x26;#;xc2;&#;x26;#;xa0; OK, it&#;x26;#;39;s at version 2.

SANS ISC → Details

GBHackers general Microsoft 5d ago

Hackers Create Hidden Microsoft 365 Inbox Rules to Conceal Vendor Payment Fraud

Threat actors are increasingly abusing Microsoft 365 identity sessions rather than deploying malware, as shown in a cloud-only business email compromise (BEC...

T1566 T1557 T1598

GBHackers → Details

GBHackers general Microsoft Sophos 5d ago

Hackers Impersonate Claude, ChatGPT and Copilot to Deliver Infostealers and Backdoors

Threat actors are increasingly abusing the popularity of generative AI brands to distribute malware, turning trusted names such as Claude, ChatGPT and Micros...

GBHackers → Details

BleepingComputer general Microsoft 5d ago

Microsoft says August Windows updates may cause gaming issues

Microsoft is investigating a potential issue with the August 2026 updates that may prevent some games from launching or cause them to crash on affected Windo...

BleepingComputer → Details

GBHackers general Microsoft Intel 5d ago

Microsoft Defender Update Crashes Virus Scans on Windows PCs

Microsoft Defender has been aborting Quick, Full, and Offline virus scans on Windows systems following a series of Security Intelligence updates released on ...

GBHackers → Details

Microsoft Security Blog vendor Microsoft 5d ago

Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026

Microsoft is named a visionary leader in the 2026 Frost Radar for Cloud Workload Protection Platforms, recognized for unified runtime security with Microsoft...

Microsoft Security Blog → Details

SC Media general Microsoft 6d ago

Microsoft removes WMIC tool from Windows 11

WMIC, a legacy command-line utility for interacting with Windows Management Instrumentation (WMI), has been progressively phased out.

SC Media → Details

«Previous page 1 2 3 4 5 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA