Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

GBHackers general Microsoft CrowdStrike Sep 4

CrowdStrike Falcon Zero-Day Lets Attackers Escalate Privileges on Windows Systems

A recently released proof-of-concept, named FalconFlank, claims to reveal a local privilege escalation vulnerability in the CrowdStrike Falcon Sensor on Wind...

T1548 T1068

GBHackers → Details

Microsoft Security Blog vendor Microsoft Sep 3

ASCII smuggling crosses over from AI prompt injection to phishing evasion

Invisible Unicode characters popularized for hiding instructions from AI models are now being used to obfuscate words before email filters parse them. The po...

T1566

Microsoft Security Blog → Details

The Hacker News general Microsoft Sep 3

BraZetsu Malware Turns Compromised Windows Hosts Into Criminal Marketplace Inventory

Cybersecurity researchers have disclosed details of a sophisticated Python-based Windows malware framework called BraZetsu that fuels an underground marketpl...

The Hacker News → Details

BleepingComputer general Microsoft Sep 3

Microsoft: KB5120998 mouse reset bug affects only non-English PCs

Microsoft says a known issue that reverts mouse settings after installing the KB5120998 August 2026 preview update affects only non-English Windows 11 system...

BleepingComputer → Details

SC Media general Microsoft Sep 3

New 'Spring Ring' operation uses vishing via Microsoft Teams

The "Spring Ring" operation, observed between January and April, illustrates a shift from traditional email phishing to attacks leveraging trusted enterprise...

T1566

SC Media → Details

SC Media general Microsoft Sep 3

New browser malware uses remote commands to control Windows systems

The malware, disguised as a "privacy browser," was distributed via a deceptive sponsored search result after an employee mistyped a URL.

SC Media → Details

GBHackers general Microsoft Sep 3

Rogue ScreenConnect Clients Spread Worm-Like Malware Across Connected Windows Systems

A malicious ScreenConnect campaign in which rogue remote-access clients do more than provide attackers with hands-on control: modified clients can automatica...

GBHackers → Details

SC Media general Microsoft Google Sep 3

Microsoft Defender for Office 365 mistakenly flags Google search links as malicious

The false positive is attributed to an inaccurate security classification within the Defender for Office 365 Safe Links feature.

SC Media → Details

BleepingComputer general Microsoft Sep 3

Microsoft says KB5120998 Windows update resets desktop settings

Microsoft has confirmed that desktop settings are lost or reset on some Windows devices after installing the KB5120998 August 2026 preview update. [.

BleepingComputer → Details

GBHackers general Microsoft Linux Sep 3

Microsoft to Automatically Enable Memory Integrity on Windows Devices to Block Kernel Attacks

Microsoft will start automatically enabling Memory Integrity protection on eligible Windows devices through quality updates beginning in October 2026. This c...

GBHackers → Details

GBHackers general Microsoft Sep 3

Avast Antivirus Zero-Day PoC Lets Attackers Dump SAM Database and Gain SYSTEM Shell

A public proof-of-concept (PoC) repository has revealed a local privilege escalation zero-day vulnerability in GenDigital’s Avast Antivirus. This vulnerabili...

T1548 T1068 T1003

GBHackers → Details

CSO Online enterprise Microsoft Sep 3

Counterfeit installers turn routine software downloads into enterprise breaches

Microsoft has warned that attackers are breaching enterprise systems via counterfeit download sites impersonating software including Microsoft Edge, Kaspersk...

CSO Online → Details

BleepingComputer general Microsoft Sep 3

Microsoft Teams, Outlook fail to launch on ARM-based Windows PCs

Microsoft is working to fix a known issue that causes crashes and launch failures for Microsoft Teams and New Outlook users after installing updates released...

BleepingComputer → Details

GBHackers general Microsoft Sep 3

Spring Ring Campaign Uses Teams Vishing, PowerShell RAT and NTLM Relay Attacks

A coordinated social-engineering operation tracked as Spring Ring abused Microsoft Teams external accounts to impersonate corporate IT help desks, targeting ...

GBHackers → Details

GBHackers general Microsoft Apple Sep 3

Claude AI Can Now Control macOS and Windows Computers to Click, Type and Open Apps

Anthropic has enhanced Claude’s desktop automation capabilities, enabling the AI assistant to operate directly on macOS and Windows computers through Claude ...

GBHackers → Details

Help Net Security general Microsoft Linux Sep 3

Windows memory integrity switches on automatically for eligible devices in October 2026

Beginning in October 2026, Windows quality updates start enabling memory integrity protection on eligible devices with little or no additional configuration....

Help Net Security → Details

Microsoft Security Blog vendor Microsoft Intel Sep 2

Impersonating IT support: how threat actors turn a remote session into enterprise-wide access

Microsoft Threat Intelligence observed a human-operated intrusion campaign that abuses Microsoft Teams external collaboration to impersonate IT support, gain...

T1204 T1021

Microsoft Security Blog → Details

The Hacker News general Microsoft Sep 2

Fake Software Installers Disable Windows Update and Weaken Microsoft Defender

An active malware campaign is using bogus software-download websites to impersonate trusted vendors and distribute malicious installers.

The Hacker News → Details

Qualys Blog vendor Microsoft Sep 2

Anatomy of a Silent Domain Takeover

Key Takeaways Modern AD attacks use legitimate protocols end-to-end, no malware, no exploit, nothing for signature tools to fingerprint. The evidence is alre...

Qualys Blog → Details

Help Net Security general Microsoft Sep 2

Nearly 22,000 Microsoft Exchange servers remain exposed to critical security flaw (CVE-2026-62911)

Nearly 22,000 Microsoft Exchange servers remain unpatched against CVE-2026-62911, a critical authentication bypass vulnerability, according to daily scans fr...

T1556 1 IOC

Help Net Security → Details

«Previous page 1 ... 13 14 15 16 17 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA