Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

BleepingComputer General Microsoft May 15

Microsoft to automatically roll back faulty Windows drivers

Microsoft is introducing a new Windows Update capability that will allow it to remotely roll back problematic Windows drivers delivered through Windows Updat...

BleepingComputer →

GBHackers Vulnerability Disclosure Microsoft May 15

Hackers Exploit OAuth Device Flow to Steal Microsoft 365 Tokens

Hackers are rapidly weaponizing a little-known Microsoft authentication feature to hijack enterprise accounts, as device code phishing surges across the thre...

T1566

GBHackers →

SecurityWeek Zero-Day Microsoft May 15

Microsoft Warns of Exchange Server Zero-Day Exploited in the Wild

Microsoft has shared mitigations for CVE-2026-42897 until a permanent patch can be released for affected Exchange Server versions. The post Microsoft Warns o...

1 IOC

SecurityWeek →

CISA Advisories CVE Microsoft May 15

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-42897 Microsoft...

1 IOC

CISA Advisories →

HackRead Data Breach Microsoft May 15

CalPhishing Scam Uses EvilTokens Kit, Outlook Invites to Steal M365 Sessions

Hackers are exploiting Outlook calendar invites and device code phishing to steal M365 session tokens, bypass MFA and breach enterprise accounts.

T1566

HackRead →

GBHackers Vulnerability Disclosure Microsoft May 15

Microsoft Warns HPE Operations Agent Abused in Malware-Free Attacks

Microsoft has revealed a stealthy intrusion campaign where attackers bypassed traditional malware and exploits, instead abusing trusted enterprise tools to s...

GBHackers →

Help Net Security CVE Microsoft May 15

Unpatched Microsoft Exchange Server vulnerability exploited (CVE-2026-42897)

A critical cross-site scripting (XSS) vulnerability (CVE-2026-42897) in Microsoft Exchange Server is being exploited by attackers, Microsoft warned on Thursd...

1 IOC

Help Net Security →

BleepingComputer Zero-Day Microsoft May 15

Microsoft warns of Exchange zero-day flaw exploited in attacks

On Thursday, Microsoft shared mitigations for a high-severity Exchange Server vulnerability exploited in attacks that allow threat actors to execute arbitrar...

BleepingComputer →

GBHackers Zero-Day Microsoft NVIDIA May 15

Microsoft Edge, Windows 11, and LiteLLM Fall to Exploits at Pwn2Own Berlin 2026

The world’s top ethical hackers wasted no time breaking into modern software and AI systems on the opening day of Pwn2Own Berlin 2026, exposing critical zero...

GBHackers →

GBHackers Campaigns Microsoft May 15

Tycoon 2FA Operators Use OAuth Device Code Phishing to Bypass MFA

A new phishing campaign uncovered in late April 2026 shows how threat actors behind the Tycoon 2FA Phishing-as-a-Service (PhaaS) kit are evolving beyond trad...

T1566 T1078

GBHackers →

GBHackers Advisory Microsoft Google Amazon Linux May 15

Google Patches 79 Chrome Security Vulnerabilities, 14 Rated Critical

Google has rolled out a major Chrome security update, fixing 79 vulnerabilities in the Stable channel, including 14 critical flaws that could allow attackers...

GBHackers →

Security Affairs Zero-Day Microsoft Amazon May 15

Researchers uncover YellowKey and GreenPlasma Windows Zero-Days

Researchers disclosed two new Windows zero-days named YellowKey and GreenPlasma affecting BitLocker and the CTFMON framework. A security researcher known as ...

Security Affairs →

The Hacker News CVE Microsoft May 15

On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted Email

Microsoft has disclosed a new security vulnerability impacting on-premise versions of Exchange Server that it said has come under active exploitation in the ...

1 IOC

The Hacker News →

GBHackers Campaigns Microsoft May 15

Microsoft Exposes Kazuar Malware’s Modular P2P Botnet Architecture

Microsoft has revealed new technical insights into Kazuar, a long-running malware linked to the Russian state-backed group Secret Blizzard, highlighting its ...

GBHackers →

GBHackers General Microsoft May 15

Dell SupportAssist Update Forces Windows Systems Into BSOD Loop

A faulty update to Dell’s SupportAssist Remediation service is triggering widespread system crashes, forcing thousands of Dell and Alienware devices into con...

GBHackers →

Exploit Database General Microsoft May 15

[local] Remote Sunrise Helper for Windows 2026.14 - Unauthenticated File/Directory Listing

Remote Sunrise Helper for Windows 2026.

Exploit Database →

Exploit Database Vulnerability Disclosure Microsoft May 15

[local] Remote Sunrise Helper for Windows 2026.14 - Remote Code Execution

Remote Sunrise Helper for Windows 2026.

T1190

Exploit Database →

Exploit Database General Microsoft May 15

[local] Windows Snipping Tool - NTLMv2 Hash Hijack

Windows Snipping Tool - NTLMv2 Hash Hijack

Exploit Database →

BleepingComputer General Microsoft May 14

Windows 11 and Microsoft Edge hacked at Pwn2Own Berlin 2026

On the first day of Pwn2Own Berlin 2026, security researchers collected $523,000 in cash awards after exploiting 24 unique zero-days. [.

BleepingComputer →

HackRead Malware Microsoft Apple May 14

Fake Job Interview Apps Drop JobStealer Malware on Windows and macOS

Hackers are using Fake interview apps to spread JobStealer malware on macOS and Windows to steal crypto wallets, browser data, and passwords.

HackRead →

«Previous page 1 ... 15 16 17 18 19 ... 27 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA