Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-544: Microsoft Windows Deployment Services Use-After-Free Remote Code Execution Vulnerability

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Microsoft Windows Server. Authentication is not r...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-543: Microsoft Windows ICC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Windows. Interaction with the Mscms.

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Aug 11

ZDI-26-542: Microsoft Windows UMPDDrvBitBlt Improper Object Management Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

SC Media general Microsoft Intel Aug 10

Storm-1175 actor deploys new StormEncryptor ransomware after N-central vulnerability exploitation

Microsoft Threat Intelligence indicates that Storm-1175, believed to be China-based, likely exploited an authentication-bypass vulnerability (CVE-2026-18577)...

1 IOC

SC Media → Details

The Hacker News general Microsoft Intel Aug 10

China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw

Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain calle...

The Hacker News → Details

Microsoft Security Blog vendor Microsoft Intel Aug 10

Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise 

Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and h...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Intel Aug 10

DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure

Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastruct...

Microsoft Security Blog → Details

SC Media general Microsoft Aug 10

Defense supplier IEH Corporation discloses Microsoft 365 mailbox breach via phishing

The breach occurred when an employee fell victim to a phishing scam, impersonating a business contact and presenting a fake Microsoft sharing link.

T1566

SC Media → Details

SC Media general Microsoft Aug 10

Windows Hello for Business keys can be silently abused by malware

Researcher Dirk-jan Mollema demonstrated that malware can exploit Windows Hello for Business keys on TPM-backed systems without extracting private keys, reco...

SC Media → Details

Help Net Security general Microsoft Apple Aug 10

Microsoft Entra ID is removing an extra MFA hurdle for Windows Hello and macOS PSSO users

Microsoft is changing how Entra ID handles MFA for people who sign in with Windows Hello for Business (WHfB) or macOS Platform Single Sign-On (PSSO). The rol...

T1566

Help Net Security → Details

The Record general Microsoft Aug 10

China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns

A China-linked threat actor is believed to be exploiting a critical vulnerability affecting cybersecurity software from the company N-able.

The Record → Details

The Hacker News general Microsoft Aug 10

New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA

Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are design...

T1566

The Hacker News → Details

CSO Online enterprise Microsoft Google Atlassian Aug 10

One-click flaw in Atlassian Rovo exposed enterprise data via prompt injection attack

Atlassian’s enterprise AI assistant Rovo, which is usually connected across sensitive work environments like Slack, Microsoft 365, and Google Workspace, was ...

CSO Online → Details

GBHackers general Microsoft Aug 10

Play Ransomware Masquerades as PsExec to Blend Into Legitimate Windows Administration

Play ransomware is using a familiar Windows-administration disguise to reduce suspicion during intrusions: a custom service binary named PSexesvc.exe.

T1021

GBHackers → Details

Kaspersky Securelist research Microsoft Apple Aug 10

IT threat evolution in Q2 2026. Non-mobile statistics

The report presents key trends and statistics on malware that targeted personal computers running Windows and macOS, as well as internet of things (IoT) devi...

Kaspersky Securelist → Details

The Hacker News general Microsoft GitHub Aug 10

Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials

Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code (VS Code) extension named Solidity Pro ("solidity-pro") that has been observe...

The Hacker News → Details

GBHackers general Microsoft Intel Aug 10

North Korean Hackers Explore AI Transcription for Stolen Calls and Meetings

North Korea-linked Kimsuky operators are expanding their artificial intelligence capabilities, with newly observed evidence showing experimentation with loca...

T1566

GBHackers → Details

GBHackers general Microsoft Aug 10

Payroll Pirates Abuse Microsoft Graph to Find HR and Finance Staff After Account Compromise

A widespread phishing operation that compromises Microsoft 365 accounts through adversary-in-the-middle (AiTM) infrastructure, then uses Microsoft Graph to i...

T1566 T1557

GBHackers → Details

Help Net Security general Microsoft Google Apple Linux Aug 10

Product showcase: Enpass Password Manager breaks away from the proprietary cloud model

Enpass is a password manager that stores passwords, passkeys, payment cards, identities, secure notes, software licenses, and other sensitive information in ...

Help Net Security → Details

Exploit Database advisories Microsoft Aug 10

[local] Microsoft Edge 150.0.4078.48 - RCE

Microsoft Edge 150.0.

Exploit Database → Details

«Previous page 1 ... 28 29 30 31 32 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA