Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Graham Cluley general Microsoft Aug 12

Smashing Security podcast #480: This is the AI service you should never sign up to

Would you like access to Anthropic's Claude at 90% off the normal price? All you have to do is redirect your traffic to a mysterious service called "Poison C...

T1566

Graham Cluley → Details

SC Media general Microsoft Aug 12

New 'Plug and Pwn' attacks exploit Windows Plug and Play for SYSTEM privileges

Security researchers Alejandro Hernando and Borja Martínez demonstrated attacks at DEF CON 34 that exploit Windows' automatic hardware identification and dri...

SC Media → Details

CSO Online enterprise Microsoft Aug 12

Researcher creates workaround for Microsoft Defender security patch

Just weeks after Microsoft patched a critical hole in Microsoft Defender, a cybersecurity researcher has posted an apparent workaround that provides system-l...

CSO Online → Details

CSO Online enterprise Microsoft Aug 12

Researcher bypasses Microsoft Defender security patch, seizing control

Just weeks after Microsoft patched a critical hole in Microsoft Defender, a cybersecurity researcher has posted an apparent bypass that provides system-level...

CSO Online → Details

The Hacker News general Microsoft Check Point Aug 12

Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor

The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impacting Microsoft Wi...

The Hacker News → Details

BleepingComputer general Microsoft Aug 12

Plug and Pwn attack uses fake USB devices for Windows SYSTEM access

Security researchers have disclosed new "Plug and Pwn" attacks that abuse the Windows Plug and Play feature to trigger Windows into installing vulnerable or ...

BleepingComputer → Details

BleepingComputer general Microsoft Aug 12

Lazarus hackers exploited Windows zero-day to target defense firms

North Korean hackers have been exploiting a Windows zero-day vulnerability (CVE-2026-68820) to target defense-sector companies as part of the Operation Dream...

1 IOC

BleepingComputer → Details

SecurityWeek general Microsoft Aug 12

SharePoint Vulnerability Exploited Shortly After PoC Release

The vulnerability was patched by Microsoft in July and CISA warned that it could end up being exploited in the wild. The post SharePoint Vulnerability Exploi...

SecurityWeek → Details

GBHackers general Microsoft Aug 12

ShieldBreak Windows Defender 0-Day Lets Attackers Bypass Microsoft Patch and Gain SYSTEM Privileges

Security researcher Nightmare-Eclipse, also known as Chaotic Eclipse, has released a new Windows privilege escalation exploit named ShieldBreak. This exploit...

T1548 1 IOC

GBHackers → Details

Infosecurity Magazine general Microsoft Aug 12

Lazarus Used Post-Quantum Key Exchange to Deliver Zero-Day

Lazarus malware used post-quantum key exchange to protect delivery of a Windows zero-day exploit

Infosecurity Magazine → Details

Infosecurity Magazine general Microsoft Amazon Fortinet Aug 12

Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure

Gunra actors are using stealth to exfiltrate vast volumes of data from Microsoft services, US and Korean agencies have warned

T1041

Infosecurity Magazine → Details

The Record general Microsoft Aug 12

Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery

This month’s update features about five times the volume of patches Microsoft was shipping in a typical month before AI-assisted vulnerability discovery took...

The Record → Details

BleepingComputer general Microsoft Rapid7 Aug 12

Hackers leverage new Microsoft SharePoint exploit in attacks

Hackers have already begun using a proof-of-concept (PoC) exploit for a critical Microsoft SharePoint vulnerability, published by cybersecurity company Rapid...

BleepingComputer → Details

The Record general Microsoft Aug 12

CISA gives federal agencies two weeks to patch Microsoft bug exploited in DPRK campaign

Researchers disclosed the bug to Microsoft after examining a long-running campaign by North Korean hackers to exploit the job application process.

The Record → Details

Help Net Security general Microsoft Check Point Aug 12

Lazarus hackers pair fake job offers with Windows zero-day exploit

The North Korea-linked Lazarus group is using fake job offers, trojanized PDF software and a Windows zero-day in attacks aimed primarily at the defense secto...

Help Net Security → Details

CSO Online enterprise Microsoft Google Oracle Aug 12

Fake CCleaner downloads turn Chrome into a credential-stealing surveillance tool

A convincing fake version of the widely used CCleaner utility is being used to deliver a multi-stage Windows malware that ultimately abuses Google Chrome for...

T1078

CSO Online → Details

GBHackers general Microsoft Google Apple Linux Aug 12

Google Chrome 151 Update Fixes 5 High-Severity Use-After-Free Vulnerabilities

Google has released Chrome version 151.0.

GBHackers → Details

GBHackers general Microsoft Aug 12

Microsoft SharePoint RCE Vulnerability Lets Remote Attackers Execute Code

A newly disclosed vulnerability in Microsoft SharePoint Server, tracked as CVE-2026-63520, could allow attackers to execute arbitrary code remotely on affect...

1 IOC

GBHackers → Details

GBHackers general Microsoft Google Aug 12

Malicious CCleaner Installer Patches Chrome Security Extension to Deploy Browser Spyware

A counterfeit installer for the widely used PC-cleaning utility CCleaner is being used to compromise Windows systems and deploy a malicious Chrome extension ...

GBHackers → Details

BleepingComputer general Microsoft Aug 12

New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges

Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldBreak" after Microsoft released the August 2026 Patch Tuesday security ...

BleepingComputer → Details

«Previous page 1 ... 6 7 8 9 10 ... 26 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA