Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

SC Media general Microsoft 6d ago

Microsoft removes WMIC tool from Windows 11

WMIC, a legacy command-line utility for interacting with Windows Management Instrumentation (WMI), has been progressively phased out.

SC Media → Details

SC Media general Microsoft 6d ago

‘TWINLOOT’ Python implant abuses Microsoft services for stealthy C2

The implant ensures defenders only see legit Microsoft services rather than unknown external domains, making it more challenging to block attacks.

SC Media → Details

GBHackers general Microsoft 6d ago

CISA Warns Microsoft Internet Key Exchange RCE Flaw Is Actively Exploited

The U.S.

1 IOC

GBHackers → Details

GBHackers general Microsoft 6d ago

Windows 11 24H2 Home and Pro Support Ends in October 2026

Microsoft has issued a 60-day reminder that the Windows 11 version 24H2 Home and Pro editions will reach the end of updates on October 13, 2026. This date al...

GBHackers → Details

BleepingComputer general Microsoft 6d ago

Microsoft fixes known issue causing Windows Defender crashes

Microsoft has resolved a bug that caused Windows Defender to crash after a recent security update, resulting in 0xc0000005 access violation errors on some af...

BleepingComputer → Details

The Hacker News general Microsoft Apple Amazon VMware 6d ago

Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation

The U.S.

1 IOC

The Hacker News → Details

SecurityWeek general Microsoft Apple Amazon VMware 6d ago

CISA Urges Immediate Patching of Exploited Microsoft, VMware, Apple Vulnerabilities

The flaws can be exploited for remote code execution, authentication bypass, and device takeover. The post CISA Urges Immediate Patching of Exploited Microso...

T1190 T1556

SecurityWeek → Details

GBHackers general Microsoft 6d ago

Cursor 0-Day Lets Attackers Execute Malicious Code by Opening a Repository

A recently disclosed security issue in Cursor IDE exposed a serious Windows binary-planting vulnerability that could allow malicious code to execute simply b...

1 IOC

GBHackers → Details

BleepingComputer general Microsoft 6d ago

Critical RCE flaw in Windows IKE Extension now actively exploited

The U.S.

T1190

BleepingComputer → Details

GBHackers general Microsoft Amazon 6d ago

BeyondTrust Endpoint Privilege Management Flaws Enable Local Privilege Escalation

BeyondTrust has revealed two high-severity vulnerabilities in its Endpoint Privilege Management (EPM) Windows Deployment product, which could lead to local p...

T1548 T1068 T1562 2 IOCs

GBHackers → Details

BleepingComputer general Microsoft 6d ago

Windows 11 24H2 Home and Pro reach end of support in 2 months

Microsoft has reminded customers that systems running Home and Pro editions of Windows 11 24H2 will stop receiving updates in two months. [.

BleepingComputer → Details

Security Affairs general Microsoft 6d ago

Microsoft Tracks MacSync Stealer by Its Behavior, Not Its Domains

Microsoft tracked over 30 MacSync Stealer domains by focusing on behavioral patterns, revealing a campaign targeting passwords, keys, wallets and other data....

Security Affairs → Details

GBHackers general Microsoft Apple 6d ago

Microsoft Links 30+ Domains to MacSync Stealer’s Credential-Theft and Data-Exfiltration Infrastructure

More than 30 domains tied to MacSync Stealer, exposing a rotating macOS-focused infrastructure that supports payload delivery, command-and-control, credentia...

T1078 T1041

GBHackers → Details

Security Affairs general Microsoft Apple Amazon VMware Broadcom 6d ago

U.S. CISA adds Apple macOS, Microsoft SharePoint, Broadcom VMware vCenter, and Microsoft IKE flaws to its Known Exploited Vulnerabilities catalog

U.S.

T1190 1 IOC

Security Affairs → Details

The Hacker News general Microsoft Apple 6d ago

Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure

Microsoft Defender Experts have linked more than 30 web domains to MacSync Stealer, a macOS-focused information stealer, after correlating recurring endpoint...

T1041

The Hacker News → Details

GBHackers general Microsoft 6d ago

Critical Microsoft Copilot CoSnitch Flaw Lets Hackers Steal Sensitive Data With One Click

A critical one-click vulnerability in Microsoft Copilot Personal, tracked as CVE-2026-24301 and dubbed CoSnitch. This flaw could enable an attacker to trigge...

1 IOC

GBHackers → Details

CSO Online enterprise Microsoft 6d ago

Microsoft finally patches critical one-click Copilot vulnerability, almost eight months after learning of it

Almost eight months after confirming a critical security vulnerability within the personal version of its AI assistant, Copilot, Microsoft on Tuesday issued ...

CSO Online → Details

SC Media general Microsoft 6d ago

McDonald's employee records allegedly stolen from Azure

The seller, operating under the name TheHatman, advertised the data dump, titled "McDonalds 1.7M+ Azure Internal Employee Dump," on a forum.

SC Media → Details

Qualys Blog vendor Microsoft 6d ago

CVE-2026-68820 is in KEV. Here Is What CISA BOD 26-04 Actually Requires Now

Executive Summary CVE-2026-68820 is an actively exploited Windows vulnerability listed in CISA’s Known Exploited Vulnerabilities (KEV) Catalog, with a remedi...

1 IOC

Qualys Blog → Details

The Hacker News general Microsoft Amazon 6d ago

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently p...

T1041

The Hacker News → Details

«Previous page 1 2 3 4 5 6 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA