Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

GBHackers general Microsoft 17h ago

Windows 11 26H1 Security Update Expands Secure Boot Certificate Protection

Microsoft has released the cumulative security update for September 2026 for Windows 11 version 26H1. This update expands the range of systems that can autom...

GBHackers → Details

GBHackers general Microsoft 17h ago

Microsoft to Disable SMS as Primary Entra ID Sign-In Method in 2027

Microsoft will turn off SMS as a primary sign-in method for Microsoft Entra ID workforce tenants on February 1, 2027, accelerating its transition to phishing...

T1566

GBHackers → Details

GBHackers general Microsoft 18h ago

One Stolen Active Directory File Can Expose Credentials for an Entire Windows Domain

A single stolen Active Directory database can turn a limited Windows intrusion into a domain-wide credential compromise. Threat actors that obtain the NTDS.

T1003

GBHackers → Details

Help Net Security general Microsoft Oracle 20h ago

DavMail 7.0.0 puts most of its work into Microsoft Graph

Anyone who wants to leave Outlook but still has a mailbox on Exchange needs a translator. DavMail is one: a Java gateway that converts the open protocols mos...

Help Net Security → Details

BleepingComputer general Microsoft 1d ago

Microsoft to retire Microsoft 365 Companion apps in December

Microsoft will retire the Calendar, People, and Files Microsoft 365 companion apps on December 16 and has asked admins to remove them from managed devices. [.

BleepingComputer → Details

SC Media general Microsoft 1d ago

Microsoft Teams to allow admins to customize weaponizable file protection

The upcoming update to Weaponizable File Protection in Microsoft Teams will grant administrators the ability to manually adjust which file types are blocked ...

SC Media → Details

The Hacker News general Microsoft GitHub Linux 1d ago

Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR

A fake LastPass Authenticator installer offered on GitHub installs a Windows kernel driver that shuts off antivirus and other security software before a pass...

The Hacker News → Details

SC Media general Microsoft 1d ago

Microsoft resolves incorrect Defender Antivirus alerts

The problem, which surfaced in the Windows Insider program as early as June and was acknowledged by Microsoft in late August, led to erroneous notifications ...

SC Media → Details

SC Media general Microsoft 1d ago

Iran-linked Handala Hack group utilizes HEAVYGRAM and CRUDEEXCLUDE malware

HEAVYGRAM is a versatile tool capable of remote command execution, system and network information discovery, data exfiltration, screenshot capture, and estab...

T1041

SC Media → Details

BleepingComputer general Microsoft 1d ago

Microsoft fixes broken Excel copy and paste for all Office users

Microsoft has fixed a known issue that causes copy-and-paste failures for Excel users after installing the September 2026 security updates. [.

BleepingComputer → Details

Help Net Security general Microsoft 1d ago

The TASK#STOMP Windows backdoor takes Wi-Fi passwords, screenshots, and business files

Researchers have taken apart TASK#STOMP, a Windows backdoor that searches a victim’s drives for business documents, uploads them to attacker servers, and the...

Help Net Security → Details

BleepingComputer general Microsoft 1d ago

Microsoft reminds admins to migrate Entra ID users to passkeys

Microsoft has reminded admins to migrate Entra ID users to phishing-resistant authentication methods to avoid sign-in disruptions after it retires SMS first-...

T1566

BleepingComputer → Details

GBHackers general Microsoft Fortinet 1d ago

PAYLOAD Ransomware Abuses Active Directory Group Policy to Disrupt Entire Windows Domain

A ransomware incident in which attackers used Active Directory Group Policy to disrupt operations without deploying a Windows encryptor or leaving malware ru...

GBHackers → Details

BleepingComputer general Microsoft 1d ago

Microsoft: September updates break File History backup feature

Microsoft warned that the built-in File History backup feature in Windows may stop working on some systems after installing the September 2026 security updat...

BleepingComputer → Details

GBHackers general Microsoft Linux Intel 1d ago

New Rapuncel Infostealer Abuses Microsoft-Signed Driver to Disable 145 Security Tools

A newly identified information-stealing campaign, tracked as Rapuncel, is exploiting a Microsoft-attested kernel driver to terminate up to 145 antivirus (AV)...

GBHackers → Details

GBHackers general Microsoft GitHub Intel 1d ago

BigDiskBuster Windows Defender DoS Vulnerability Blocks Platform and Signature Updates

A recently published proof-of-concept project named BigDiskBuster claims to prevent Microsoft Defender from completing its platform and security intelligence...

T1498

GBHackers → Details

SANS ISC advisories Microsoft 1d ago

TerminalFix: PNG Steganography, (Mon, Sep 21st)

Microsoft Security Research published an interesting blog post "TerminalFix campaign deploys a reverse tunnel through multistage intrusion" about a malware c...

SANS ISC → Details

GBHackers general Microsoft 1d ago

Hackers Abuse Microsoft Teams to Pose as IT Support and Steal Employee Passwords

Threat actors are increasingly abusing Microsoft Teams’ external chat capabilities to impersonate corporate IT help desks. They trick employees into installi...

GBHackers → Details

The Hacker News general Microsoft Zoom 1d ago

ClickFix Lures Deploy ChainScript RAT Using Polygon to Rotate C2 Infrastructure

Threat actors are leveraging ClickFix-like lures to deliver a previously undocumented remote access trojan (RAT) called ChainScript.

T1583

The Hacker News → Details

Security Affairs general Microsoft 1d ago

UK Police Data Faces Long-Standing Microsoft Cloud Security Concerns

A 2017 UK assessment warned that police data on Microsoft Azure could face foreign access risks. The risks may still exist.

Security Affairs → Details

«Previous page 1 2 3 4 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA