Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

GBHackers general Microsoft Sep 2

255 Fake Accounts Used to Send Malicious Excel Files to 80,000 Freelancers

A Russian national has been extradited to the United States to face charges over an alleged phishing operation that used 255 fake accounts on a freelance emp...

T1566

GBHackers → Details

SC Media general Microsoft Sep 2

Microsoft identifies ‘TerminalFix’ campaign spreading Python reverse tunnel

The campaign uses DLL sideloading and PNG steganography to evade detection.

SC Media → Details

BleepingComputer general Microsoft Google Sep 2

Microsoft Defender flags legitimate Google search links as malicious

Microsoft is investigating an issue causing the Defender for Office 365 security software to mistakenly block access to legitimate Google search links. [.

BleepingComputer → Details

GBHackers general Microsoft Google Apple Amazon Linux Sep 2

Google Patches 26 Chrome Vulnerabilities, Including Critical WebGL and Shared Tab Groups Flaws

Google has released a new update for the Chrome Stable Channel on desktop platforms, addressing 26 security vulnerabilities. This includes two critical use-a...

GBHackers → Details

GBHackers general Microsoft Sep 2

Fake Microsoft Edge, Kaspersky and Razer Installers Used to Compromise Windows Systems

An active malware campaign that abuses counterfeit download pages for trusted software brands including Microsoft Edge, Kaspersky and Razer to compromise Win...

GBHackers → Details

Help Net Security general Microsoft Atlassian Sep 2

Open-source secrets scanning tool Sift hunts credentials in Microsoft 365, Slack, and Jira

Sift is a free, open-source command line tool that searches for passwords, API keys, and other sensitive data across the places a company keeps its work: loc...

Help Net Security → Details

Microsoft Security Blog vendor Microsoft Sep 1

Counterfeit installers to system compromise: Tracking a deceptive software download campaign

An active campaign is impersonating legitimate software vendors to deliver malware through look-alike download pages and regenerated installer archives. Micr...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Sep 1

Cybersecurity IR Workshop: The workshop you shouldn’t miss

Cyber resilience starts before a crisis. Gain practical insights from DART to strengthen readiness and response.

Microsoft Security Blog → Details

Help Net Security general Microsoft Palo Alto Networks Intel Sep 1

Vishing campaign abuses Microsoft Teams to give attackers a foothold in company networks

A coordinated voice-phishing (vishing) campaign, named Spring Ring, used fake IT support accounts on Microsoft Teams to trick employees into installing malwa...

T1566

Help Net Security → Details

GBHackers general Microsoft Apple Linux Sep 1

Mirage Kitten Hackers Use Fake Coding Challenges to Deploy NodeRabbit and PollCat RATs

Iran-linked threat actor Mirage Kitten is targeting software developers with fake recruitment assessments that hide two newly identified cross-platform remot...

GBHackers → Details

SC Media general Microsoft Palo Alto Networks Intel Sep 1

New water sector cybersecurity program launches in Texas

Project Watershed 250, a six-month pilot program, will test cybersecurity and artificial intelligence tools provided by private companies like Microsoft, Ref...

SC Media → Details

SC Media general Microsoft Apple Sep 1

Infostealer malware compromises Claude accounts, bypassing 2FA

Infostealer malware, including families such as Vidar, LummaC2, StealC, RedLine, and Acreed on Windows, and Atomic Stealer on macOS, is stealing active Claud...

SC Media → Details

GBHackers general Microsoft Sep 1

Hackers Pose as IT Support on Microsoft Teams to Target More Than 150 Employees

A coordinated social-engineering campaign dubbed Spring Ring used external Microsoft Teams accounts to impersonate corporate IT help desk staff and target mo...

T1566

GBHackers → Details

BleepingComputer general Microsoft Sep 1

Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks

Nearly 22,000 Microsoft Exchange servers exposed online remain unpatched against a high-severity authentication bypass vulnerability that allows attackers to...

T1556

BleepingComputer → Details

Help Net Security general Microsoft GitHub Sep 1

Fake Claude Opus 5 app delivers malware and wipes its own tracks

A malicious GitHub repository impersonating Anthropic and claiming to offer free access to “Claude Opus 5” is delivering RevStealer, Windows information-stea...

T1204

Help Net Security → Details

The Hacker News general Microsoft Sep 1

Threat Actors Don’t Want Better Attacks. They Want Repeatable Ones

The most common way into a company last year was to ask. A web page tells the visitor to prove they are not a robot.

The Hacker News → Details

CSO Online enterprise Microsoft Cloudflare Intel Sep 1

Fake Cloudflare CAPTCHA tricks victims into opening a tunnel for attackers

Attackers are using fake CAPTCHA prompts to trick victims into running malicious PowerShell commands as part of a multi-stage intrusion campaign that can est...

T1059.001 T1046 T1592

CSO Online → Details

SC Media general Microsoft Sep 1

RevStealer malware spread through fake Claude Opus 5 download

The Windows infostealer uses several evasion measures to remain mostly invisible to security systems.

SC Media → Details

GBHackers general Microsoft Sep 1

AI-Enhanced BraZetsu Malware Powers Underground Market Selling Access to Corporate Networks

BraZetsu, a Python-based Windows malware framework allegedly operated by the Brazilian threat actor Exilware to identify, profile, and monetize compromised c...

GBHackers → Details

GBHackers general Microsoft VMware Sep 1

SLEEPWALKER Malware Uses Raw Packets, DNS and VMware VMCI for Covert Communications

A newly analyzed Windows backdoor named SLEEPWALKER uses a passive command-and-control model designed to evade conventional beaconing-based detections. Raw-p...

GBHackers → Details

«Previous page 1 ... 14 15 16 17 18 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA