Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

AWS Security Blog vendor Microsoft Amazon Aug 5

AWS partners with Anthropic and OpenAI to bring AWS Continuum into developer workflows

Customers have access to models that are continuously getting better with each new generation bringing larger context windows, stronger reasoning, and lower ...

AWS Security Blog → Details

HackRead general Microsoft Aug 5

OctLurk and SilkLurk Windows Backdoors Target Governments in 6 Countries

Kaspersky links OctLurk and SilkLurk to cyberespionage attacks stealing passwords, emails and files from government systems in six countries since January 2025.

HackRead → Details

The Hacker News general Microsoft Apple Intel Aug 5

Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures

A macOS ClickFix operation spanning more than 250 front-end domains now fingerprints visitors before deciding whether to show them a malware lure, a change M...

T1592

The Hacker News → Details

Microsoft Security Blog vendor Microsoft Aug 5

​​Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)

Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post ​​Microsoft named ...

Microsoft Security Blog → Details

Microsoft Security Blog vendor Microsoft Apple Aug 5

From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide

A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicio...

T1592

Microsoft Security Blog → Details

GBHackers general Microsoft Oracle Aug 5

Four Million Malware Reports Reveal a Widespread No-DNS C2 Blind Spot

A long‑running supply chain compromise of the QuickFox VPN accelerator that quietly delivered an FDMTP backdoor to carefully profiled Windows systems, exposi...

T1195

GBHackers → Details

GBHackers general Microsoft Cisco Aug 5

Stolen Greatness Tokens Provide Microsoft 365 Access More Than Two Weeks After Phishing

Stolen Greatness authentication tokens are providing sustained, MFA‑approved access to victim Microsoft 365 tenants for more than two weeks after the initial...

T1566 T1557

GBHackers → Details

GBHackers general Microsoft Aug 5

Microsoft Paid Record $20 Million in Bug Bounties to 562 Security Researchers Worldwide

Microsoft’s Bug Bounty Program awarded over $20 million to 562 security researchers this year, marking the highest total payout and the largest number of rec...

GBHackers → Details

Help Net Security general Microsoft Google Tenable Aug 5

Tenable broadens AI visibility across major LLMs and AI tools

Tenable has announced enhanced AI security capabilities within the Tenable One Exposure Management Platform. Tenable One AI Exposure now delivers expanded pl...

Help Net Security → Details

The Hacker News general Microsoft Aug 5

Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk

Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with attacker-controlled device c...

T1566

The Hacker News → Details

GBHackers general Microsoft Salesforce AMD Aug 5

Fake Open VSX Extensions Hijack AMD, Azure, Salesforce and Government Namespaces

Fake Open VSX extensions have hijacked high‑trust namespaces like AMD, Azure, Salesforce, Hyperledger, and a U.S.

GBHackers → Details

GBHackers general Microsoft Apple Aug 5

ScreenConnect Attackers Hide Windows, Delete Installers and Masquerade as Software Updates

ScreenConnect is being systematically weaponized in the SMOKE#SCREEN campaign, where attackers hide execution windows, delete installers, and disguise malici...

GBHackers → Details

Help Net Security general Microsoft Aug 5

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove

A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and t...

T1566

Help Net Security → Details

HackRead general Microsoft Aug 5

Kali365 Exploits Microsoft Device Login to Access US Corporate Data

Learn how Kali365 has been abusing Microsoft device login to gain OAuth tokens, targeting US firms, and how SOC teams can detect, hunt, and stop these phishi...

T1566

HackRead → Details

GBHackers general Microsoft Aug 5

7-Zip Default Setting Lets Extracted Files Bypass Windows SmartScreen

7-Zip’s default configuration allows files extracted from internet-delivered archives to shed the Mark of the Web (MotW), meaning Windows SmartScreen never r...

GBHackers → Details

The Hacker News general Microsoft Fortinet Aug 5

QuickFox Supply Chain Attack Delivers FDMTP Backdoor via Trojanized Windows Installer

Cybersecurity researchers have disclosed what has been described as a "long-standing supply chain attack" on QuickFox, a virtual private network (VPN) and ne...

T1195

The Hacker News → Details

GBHackers general Microsoft Aug 5

Ransomware Attack Abuses Legitimate Windows Tool to Evade Traditional Containment

Microsoft Defender’s new automatic device isolation capability has emerged as a decisive control against modern ransomware intrusions that abuse legitimate W...

GBHackers → Details

GBHackers general Microsoft Google Aug 5

1-Click RCE Vulnerability in Cursor, VS Code, and Google Antigravity Lets Attackers Execute Arbitrary Code

A serious one-click remote code execution (RCE) vulnerability that affects Cursor, Microsoft Visual Studio Code, and Google Antigravity, an AI-assisted codin...

T1190

GBHackers → Details

GBHackers general Microsoft Barracuda Aug 5

Compromised Microsoft Copilot Accounts Let Hackers Impersonate CEOs and Steal $247,500

A controlled proof-of-concept by Barracuda’s Red Team has demonstrated how a compromised Microsoft 365 account with Copilot access can serve as a powerful la...

T1598

GBHackers → Details

Microsoft Security Blog vendor Microsoft Aug 4

ChainDrop supply chain compromise: Anatomy of a self-propagating worm

A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates...

T1195

Microsoft Security Blog → Details

«Previous page 1 ... 30 31 32 33 34 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA