Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

SC Media general Microsoft NEW 3h ago

Ransomware group PAYLOAD weaponizes Microsoft Active Directory for disruption

The PAYLOAD ransomware group targeted a manufacturing organization in the Middle East, gaining initial access via a compromised VPN account, Kaspersky reported.

SC Media → Details

BleepingComputer general Microsoft Cloudflare NEW 4h ago

Placeholder domain used in dev docs now serves ClickFix attacks

The "third-party.com" domain, commonly used as a placeholder in developer documentation and code examples, is serving a fake Cloudflare verification page tha...

1 IOC

BleepingComputer → Details

Microsoft Security Blog vendor Microsoft 10h ago

Reimagining the SOC for the agentic era in Microsoft Defender

We are announcing ISOC in Microsoft Defender: a foundation built for agentic security that brings leading solutions for SIEM and threat protection together. ...

Microsoft Security Blog → Details

The Hacker News general Microsoft Cisco 12h ago

This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move

A Windows malware called CLOSEDQUORUM is built to take orders from a vote of up to four AI models instead of an attacker's server, Cisco Talos said on Septem...

T1555

The Hacker News → Details

HackRead general Microsoft 12h ago

Microsoft Disrupts AI-Powered EvilTokens Service Linked to 12,000 Hacked Inboxes

Microsoft disrupted EvilTokens after the AI-powered phishing service compromised 12,000 inboxes across 10,000 organisations and enabled complex financial fraud.

T1566

HackRead → Details

Infosecurity Magazine general Microsoft 12h ago

Windows Botnet x47.c Offers AI API Draining, 18 Attack Methods

Qrator found a Windows botnet advertised with AI API draining, credential theft and SOCKS5 proxying

T1078

Infosecurity Magazine → Details

The Hacker News general Microsoft Apple Linux 13h ago

Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI

Unknown threat actors have managed to compromise two legitimate MemTensor packages across the npm and Python Package Index (PyPI) repositories to push a plat...

The Hacker News → Details

SecurityWeek general Microsoft 15h ago

AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft

The cybercrime platform leveraged AI at every step of the attack chain, including writing social engineering messages and deciding targets. The post AI-Power...

T1566 T1204

SecurityWeek → Details

BleepingComputer general Microsoft 15h ago

Microsoft: September Windows updates break Always On VPN connections

Microsoft warned that the September 2026 security updates may also break Always On VPN connections on some Windows 11 systems. [.

BleepingComputer → Details

Security Affairs general Microsoft 15h ago

EvilTokens made phishing-as-a-service look easy. Then it got taken down

Microsoft, Coinbase and law enforcement took down EvilTokens, a phishing kit that compromised 12,000 inboxes through device-code phishing and AI. EvilTokens ...

T1566

Security Affairs → Details

GBHackers general Microsoft 16h ago

Microsoft Warns of EvilTokens AI Phishing Service Hijacking Thousands of Accounts

Microsoft has warned that the EvilTokens phishing-as-a-service platform has become a major driver of AI-enabled device-code phishing, compromising more than ...

T1566 T1592 T1598

GBHackers → Details

GBHackers general Microsoft 17h ago

ManageEngine RCE Flaw Enables SYSTEM Code Execution From Windows Login Screen

ManageEngine has addressed a critical remote code execution vulnerability in ADSelfService Plus, which could allow an unauthenticated attacker to execute arb...

T1190 1 IOC

GBHackers → Details

GBHackers general Microsoft Google Apple Amazon Linux 17h ago

Chrome Update Fixes 108 Vulnerabilities Including Critical GPU, WebGL and ANGLE Flaws

Google released Chrome version 154 to the Stable channel for Windows, macOS, and Linux, fixing 108 security vulnerabilities. This update addresses 11 critica...

GBHackers → Details

GBHackers general Microsoft 18h ago

Microsoft SharePoint Flaw Lets Low-Privilege Attackers Execute Remote Code

A detailed Microsoft SharePoint vulnerability, tracked as CVE-2026-65660, allows authenticated, low-privileged users to execute arbitrary code on vulnerable ...

T1190 1 IOC

GBHackers → Details

Help Net Security general Microsoft Cloudflare 18h ago

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes

The EvilTokens phishing service, which compromised more than 12,000 inboxes at over 10,000 organizations, has been disrupted by a coalition of law enforcemen...

T1566

Help Net Security → Details

Help Net Security general Microsoft Google Amazon 18h ago

Claude Opus 5.5 cuts costs and adds safeguards for autonomous AI

Claude Opus 5.5 is available across Anthropic’s platforms, Amazon Web Services, Google Cloud and Microsoft Azure.

Help Net Security → Details

The Hacker News general Microsoft Google 18h ago

Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware

A Chinese threat actor codenamed UTA0565 has been observed exploiting the recently disclosed Google Chrome-Microsoft Windows exploit chain as zero-days throu...

3 IOCs

The Hacker News → Details

Security Affairs general Microsoft GitHub 18h ago

Fake LastPass on GitHub Led to an Infostealer That Killed 145 Security Tools

Attackers spoofed LastPass on GitHub, used a Microsoft-signed driver to disable 145 security products, then deployed an infostealer. Someone impersonated Las...

Security Affairs → Details

GBHackers general Microsoft Cisco 19h ago

12 Best MFA Solutions Compared (2026): Features & Pricing

Cisco Duo is the best MFA for most buyers comparing on price and speed published per-user tiers, a free small-team floor, and device trust included while Mic...

T1566 T1598

GBHackers → Details

GBHackers general Microsoft 21h ago

Researchers Find Malware That Uses AI Models Instead of Human Hackers for Control

A Windows malware implant named CLOSEDQUORUM that uses commercial large language models as an autonomous command-and-control layer, shifting tactical decisio...

GBHackers → Details

1 2 3 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA