Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Help Net Security TTPs Microsoft NVIDIA May 21

AI red teaming agents change how LLMs get tested

Adversarial probing of LLMs has piled up a sprawling toolkit over the past three years. Attack techniques with names like Tree of Attacks with Pruning, Cresc...

Help Net Security →

GBHackers General Microsoft May 21

New GhostTree Attack Causes EDR Tools to Hang, Leaving Files Unscanned

A newly disclosed attack technique dubbed “GhostTree” is raising concerns among defenders after researchers demonstrated how it can disrupt endpoint detectio...

GBHackers →

The Hacker News Data Breach Microsoft GitHub May 21

GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension

GitHub on Wednesday officially confirmed that the breach of its internal repositories was the result of a compromise of an employee device involving a poison...

The Hacker News →

CSO Online Zero-Day Microsoft May 21

Microsoft is working on a patch for ‘YellowKey’ attack on Bitlocker, offers temporary fix

Microsoft says it is considering a patch for a zero-day vulnerability, dubbed YellowKey, that allows attackers with access to a Windows device to bypass Bitl...

1 IOC

CSO Online →

Cyberscoop General Microsoft May 20

Meet Rampart and Clarity, Microsoft’s new red team combo AI agents

Microsoft’s AI red team lead talked to CyberScoop about the goals behind open sourcing a pair of security tools meant for developers and incident responders....

Cyberscoop →

Microsoft Security Blog Malware Microsoft Amazon GitHub Linux Kubernetes May 20

Mini Shai Hulud: Compromised @antv npm packages enable CI/CD credential theft

Compromised @antv npm packages deploy the Mini Shai-Hulud payload to steal CI/CD secrets from Linux-based automation environments. The malware executes durin...

T1078

Microsoft Security Blog →

The Hacker News General Microsoft Intel May 20

Microsoft Open-Sources RAMPART and Clarity to Secure AI Agents During Development

Microsoft has unveiled two new open-source tools called RAMPART and Clarity to assist developers in better testing the security of artificial intelligence (A...

The Hacker News →

Microsoft Security Blog General Microsoft May 20

Securing the gaming culture of cultures

Read about the unique challenges and rewards of securing gaming platforms and how to better protect gaming communities. The post Securing the gaming culture ...

Microsoft Security Blog →

CSO Online Data Breach Microsoft GitHub May 20

GitHub admits major source code leak after 3,800 internal repositories breached

Microsoft’s GitHub has suffered what appears to be its biggest ever security breach after confirming that attackers exfiltrated code from around 3,800 of the...

T1041

CSO Online →

SecurityWeek General Microsoft May 20

Microsoft Rolls Out Mitigations for ‘YellowKey’ BitLocker Bypass

The exploitation is mitigated by preventing the FsTx Auto Recovery Utility from starting when the WinRE image launches. The post Microsoft Rolls Out Mitigati...

SecurityWeek →

Security Affairs CVE Microsoft May 20

Microsoft issues YellowKey mitigation, no patch yet

Microsoft acknowledged the YellowKey BitLocker bypass flaw and released mitigations, urging admins to disable autofstx.exe and enable TPM+PIN.

1 IOC

Security Affairs →

Microsoft Security Blog General Microsoft May 20

Introducing RAMPART and Clarity: Open source tools to bring safety into Agent development workflow

The AI systems shipping inside enterprises today are fundamentally different from the ones we were building even two years ago, because they have moved well ...

T1598

Microsoft Security Blog →

Cyberscoop General Microsoft GitHub May 20

GitHub says internal repositories were taken in poisoned VS Code extension attack

GitHub said late Tuesday that internal repositories were exfiltrated after an employee device was compromised through a poisoned Visual Studio Code extension...

T1041

Cyberscoop →

The Hacker News Ransomware Microsoft May 20

Microsoft Takes Down Malware-Signing Service Behind Ransomware Attacks

Microsoft on Tuesday said it disrupted a malware-signing-as-a-service (MSaaS) operation that weaponized the company's Artifact Signing system to deliver mali...

The Hacker News →

SC Media TTPs Microsoft May 20

Storm-2949 actor targets Microsoft 365 and Azure environments

Storm-2949 initiates attacks by targeting users with privileged roles, such as IT personnel or senior leadership, using social engineering tactics to obtain ...

T1204

SC Media →

SC Media General Microsoft May 20

Microsoft to phase out SMS authentication for account recovery

Microsoft has announced it will begin phasing out SMS-based authentication and account recovery, citing it as a leading source of fraud.

SC Media →

SC Media Malware Microsoft May 20

Microsoft disrupts Fox Tempest malware-signing service

Fox Tempest operated a platform called signspace[.]cloud, which allowed threat actors to obtain short-lived Microsoft-issued certificates via Artifact Signing.

SC Media →

SC Media General Microsoft May 20

Microsoft addresses Windows Update failures in restricted environments

The failures occur in environments with strict network limitations, including air-gapped systems and heavily firewalled networks.

SC Media →

The Hacker News TTPs Microsoft Broadcom May 20

Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph API

Cybersecurity researchers have flagged fresh activity from a China-aligned threat actor known as Webworm in 2025, deploying custom backdoors that employ Disc...

The Hacker News →

GBHackers Campaigns Microsoft May 20

Microsoft DurableTask Python Client Targeted in TeamPCP Cyberattack

The ongoing TeamPCP software supply chain campaign has compromised the official Microsoft DurableTask Python client, a widely used package for orchestrating ...

T1195

GBHackers →

«Previous page 1 ... 11 12 13 14 15 ... 28 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA