Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Kaspersky Securelist research Microsoft Linux Aug 14

APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections fro...

Kaspersky Securelist → Details

GBHackers general Microsoft SentinelOne Akamai Aug 14

New Bring Your Own EDR Attack Turns SentinelOne Into Trojan Horse to Bypass Windows PPL

Security researchers have introduced a new technique called “Bring Your Own EDR” (BYOEDR) that exploits legitimate SentinelOne components to bypass Windows P...

GBHackers → Details

GBHackers general Microsoft Amazon Fortinet Aug 14

Fortinet FortiWeb and FortiClient Flaws Let Unauthenticated Attackers Gain Access and Execute Arbitrary Code

Fortinet has released security updates to address high-severity vulnerabilities in FortiWeb and FortiClient for Windows. These vulnerabilities could allow un...

2 IOCs

GBHackers → Details

CSO Online enterprise Microsoft Aug 14

5 key takeaways from Black Hat USA 2026

AI’s potential as a security tool and the danger of autonomous AI agents as a new attack surface were key themes of the presentations and product announcemen...

CSO Online → Details

BleepingComputer general Microsoft Aug 13

Microsoft patches LegacyHive Windows zero-day vulnerability

Microsoft has released security patches to address a Windows zero-day vulnerability known as "LegacyHive," disclosed after the July 2026 Patch Tuesday. [.

BleepingComputer → Details

Security Affairs general Microsoft Amazon Cisco Aug 13

U.S. CISA adds Metabase, Windows, and Cisco Secure Firewall flaws to its Known Exploited Vulnerabilities catalog

U.S.

1 IOC

Security Affairs → Details

Security Affairs general Microsoft Amazon Cisco Aug 13

U.S. CISA adds Metabase, Windows, and Cisco Secure Firewall flaws to its Known Exploited Vulnerabilities catalog

U.S.

1 IOC

Security Affairs → Details

Help Net Security general Microsoft Rapid7 Aug 13

Attackers exploit critical SharePoint flaw after PoC goes public (CVE-2026-55040)

Threat actors have begun exploiting a critical Microsoft SharePoint flaw following the release of proof-of-concept (PoC) exploit code by Rapid7. About CVE-20...

1 IOC

Help Net Security → Details

GBHackers general Microsoft Amazon Aug 13

Microsoft Exchange Server Vulnerabilities Allow DoS, Privilege Escalation, and RCE

Microsoft has released security updates that address six vulnerabilities in Exchange Server. These vulnerabilities include flaws that could allow remote code...

T1190 T1548 1 IOC

GBHackers → Details

CSO Online enterprise Microsoft Amazon Aug 13

It took $58 to break Microsoft’s SCCM, but a patch made it harder

Researchers at XM Cyber found that a standard domain user with no Microsoft SCCM privileges can chain multiple flaws to reach remote code execution, although...

T1190

CSO Online → Details

GBHackers general Microsoft Aug 13

CISA Adds Actively Exploited Windows WinSock Vulnerability to KEV Catalog

The U.S.

1 IOC

GBHackers → Details

GBHackers general Microsoft Aug 13

Armored Likho Turns Windows Microphones Into Automated Eavesdropping Devices

Armored Likho, also tracked as Eagle Werewolf, has expanded its espionage capability with a Rust-based toolkit that can hijack Telegram sessions and transfor...

GBHackers → Details

SecurityWeek general Microsoft Aug 13

Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’

Dropped on Patch Tuesday, the exploit allows any user to spawn a shell with System privileges. The post Nightmare Eclipse Drops Windows Zero-Day Exploit ‘Shi...

SecurityWeek → Details

CSO Online enterprise Microsoft Aug 13

Microsoft wants you to rethink your approach to cyber defense

Cyber defenders need to shake off traditional best practices and switch from reactive patching to building inherently resilient systems in the face of AI-acc...

CSO Online → Details

Security Affairs general Microsoft Aug 13

Storm-1175 Replaces Medusa With New StormEncryptor Ransomware

Microsoft says China-linked Storm-1175 is using a new ransomware called StormEncryptor, replacing Medusa in its latest attacks. Microsoft says China-linked, ...

Security Affairs → Details

GBHackers general Microsoft Aug 13

Akira Ransomware Reboots Windows Into Safe Mode to Disable EDR and Microsoft Defender

An Akira ransomware affiliate has been observed rebooting a compromised Windows host into Safe Mode with Networking to disable endpoint protection an anti-ED...

T1078

GBHackers → Details

Security Affairs general Microsoft Check Point Aug 13

North Korean Lazarus Group Uses Windows Zero-Day in Operation Dream Job

Lazarus targets defense professionals with fake Lockheed Martin jobs, exploiting a Windows zero-day to deploy backdoors and evade security controls. Check Po...

Security Affairs → Details

The Hacker News general Microsoft Aug 13

Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerab...

T1556 1 IOC

The Hacker News → Details

GBHackers general Microsoft Apple Palo Alto Networks Linux Aug 13

Palo Alto GlobalProtect Vulnerabilities Enable SYSTEM and Root-Level Access

Palo Alto Networks has released security advisories for multiple vulnerabilities in the GlobalProtect App that could allow a local attacker to elevate their ...

GBHackers → Details

Help Net Security general Microsoft Aug 13

Wireshark 4.6.8 patches 28 security bugs, nine in file parsers

Wireshark 4.6.

Help Net Security → Details

«Previous page 1 ... 5 6 7 8 9 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA