Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

GBHackers general Microsoft 1d ago

New Remus Infostealer Steals OpenAI and Anthropic API Tokens, Passwords and Crypto Wallets

A newly tracked Windows infostealer dubbed Remus is expanding its credential-theft playbook by targeting API tokens and local usage data tied to AI platforms...

GBHackers → Details

Google Project Zero research Microsoft 1d ago

Windows Exploitation Techniques: Dangling COM Object Registrations

This short blog post is about abusing a privilege escalation bug that Microsoft recently fixed in Windows, CVE-2026-66804, that I and 14 others reported. Thi...

T1548 2 IOCs

Google Project Zero → Details

GBHackers general Microsoft Google 1d ago

BragJack Attack Hijacks AI Assistants in 5 Popular Browsers With Zero Clicks

Security researchers have revealed a zero-click attack technique known as BragJack, which could enable a malicious browser extension to hijack built-in AI as...

GBHackers → Details

Help Net Security general Microsoft Google Apple SAP 1d ago

Product showcase: Helmit alerts parents when online conversations show signs of trouble

Helmit is a parental control app that combines AI-powered social media monitoring with screen time management, web filtering, location tracking, and safety a...

Help Net Security → Details

Help Net Security general Microsoft Cisco Linux 2d ago

Week in review: Cisco patches exploited email gateway 0-day, Revolut breach

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: What we know about the Revolut data breach so far Someone i...

Help Net Security → Details

GBHackers general Microsoft 3d ago

PowerShell Malware Abuses Registry and DNS TXT Records to Deploy XMRig Crypto Miner

A sophisticated cryptomining campaign is employing multiple layers of obfuscation to conceal malicious PowerShell payloads and ultimately deploy an XMRig-bas...

T1059.001 T1027

GBHackers → Details

CSO Online enterprise Microsoft Google GitHub 4d ago

A zero-click RCE flaw in AI coding agents could have exposed enterprise systems

Popular AI coding agents such as OpenAI’s Codex, Anthropic’s Claude Code, Google’s Gemini CLI, and Microsoft-owned GitHub Copilot were vulnerable to a zero-c...

CSO Online → Details

CSO Online enterprise Microsoft 4d ago

GhostCode attackers abuse device codes to take over Microsoft 365 accounts

Microsoft 365 users are being tricked into handing over access to their accounts by a new phishing kit, GhostCode, that exploits a weakness in a legitimate d...

T1566

CSO Online → Details

BleepingComputer general Microsoft 4d ago

Secure enterprise sharing with access reviews for Microsoft 365

Microsoft 365 makes sharing files easy, but access can remain long after its original purpose has ended, leaving organizations with little visibility into wh...

BleepingComputer → Details

BleepingComputer general Microsoft 4d ago

Microsoft Teams will let admins block custom file extensions

Microsoft Teams will soon let administrators tweak the list of file extensions commonly associated with security threats to meet their company's security req...

BleepingComputer → Details

GBHackers general Microsoft 4d ago

New SETTRA Ransomware Uses MeshAgent RMM and BYOVD to Encrypt Windows Systems

A newly observed ransomware operation dubbed SETTRA is abusing the legitimate MeshAgent remote monitoring and management platform for persistence while using...

GBHackers → Details

The Hacker News general Microsoft 4d ago

Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation

Microsoft has released fixes for a maximum-severity security flaw in Azure AI Foundry that could be exploited to achieve privilege escalation. No customer ac...

T1548 1 IOC

The Hacker News → Details

BleepingComputer general Microsoft 4d ago

Microsoft fixes bug behind ‘Defender Antivirus is turned off’ alerts

Microsoft has resolved a known issue that causes incorrect alerts warning that Defender Antivirus was turned off after installing recent updates. [.

BleepingComputer → Details

SecurityWeek general Microsoft Amazon 4d ago

Microsoft Patches 18 Vulnerabilities in AI, Cloud Products

Microsoft fixed vulnerabilities across Azure and AI-branded products, with privilege escalation flaws accounting for the majority. The post Microsoft Patches...

T1548

SecurityWeek → Details

GBHackers general Microsoft Google Apple Amazon Linux 4d ago

Google Chrome 153 Update Fixes 16 Security Flaws, Including Two Critical Vulnerabilities

Google has released Chrome version 153 to the Stable desktop channel, addressing 16 security vulnerabilities, including two critical-severity flaws affecting...

GBHackers → Details

GBHackers general Microsoft Google Amazon Palo Alto Networks Fortinet Check Point 4d ago

12 Best Multi-Cloud Security Platforms Compared (2026): Features & Pricing

Quick Answer: Multi-cloud doesn’t just triple your attack surface it triples your billing surface, and vendors price the same workload differently per provid...

GBHackers → Details

BleepingComputer general Microsoft 4d ago

Microsoft fixes broken copy and paste for Excel 2016 users

Microsoft has fixed a known issue that causes copy-and-paste failures for some Excel users after installing the September 2026 KB5002914 security update. [.

BleepingComputer → Details

GBHackers general Microsoft 4d ago

MovieReaper Malware Spreads Through Pirated Movie Torrents and Uses Solana for C2

A newly identified Windows malware framework dubbed MovieReaper is being distributed through pirated movie torrents after threat actors compromised a public ...

T1548

GBHackers → Details

GBHackers general Microsoft GitHub 4d ago

Steam Windows Vulnerability Lets Users Escalate Privileges to NT AUTHORITY\SYSTEM

A newly published proof of concept called “BrokenPipe” has revealed a local privilege escalation vulnerability in the Steam Client Service on Windows systems...

T1548 T1068

GBHackers → Details

Microsoft Security Blog vendor Microsoft 5d ago

From guidance to action: Security fundamentals that materially reduce risk 

AI has made fundamental changes to the operating environment for cybersecurity. Explore exposure management guidance on recommended controls and take action ...

Microsoft Security Blog → Details

«Previous page 1 2 3 4 5 ... 45 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA