Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

BleepingComputer general Microsoft Jul 30

Microsoft Teams vishing attacks lead to Chaos ransomware attacks

Threat actors are impersonating IT support staff in Microsoft Teams calls to gain remote access to corporate devices and deploy Chaos ransomware in attacks t...

BleepingComputer → Details

HackRead general Microsoft Jul 30

Microsoft Fixes CosmosEscape Flaw That Could Allow Any Cosmos DB Takeover

Cybersecurity researchers at Wiz found CosmosEscape in Azure's Gremlin API, exposing a master key that could access any Cosmos DB account. Microsoft fixed it...

HackRead → Details

Help Net Security general Microsoft Proofpoint Jul 30

Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)

Russia-affiliated cyber espionage group Laundry Bear (aka Void Blizzard, aka TA488) is exploiting CVE-2026-42897, a cross-site scripting vulnerability in Mic...

1 IOC

Help Net Security → Details

The Hacker News general Microsoft Jul 30

Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database

A now-patched vulnerability in Azure Cosmos DB could have let an attacker escape the service's Gremlin query sandbox and obtain full read and write access to...

The Hacker News → Details

GBHackers general Microsoft Jul 30

AtlasRAT Uses Four-Stage In-Memory Loader to Keylog and Inject Malware Into WeChat

AtlasRAT is a modular Windows remote access trojan that uses a four-stage, fully in-memory loader chain to quietly establish TLS‑ and ChaCha20‑protected comm...

GBHackers → Details

Infosecurity Magazine general Microsoft Check Point Jul 30

Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages

Check Point researchers detail phishing attack as an example of attackers dropping fake Microsoft login pages in favor of abusing Microsoft’s legitimate auth...

T1566

Infosecurity Magazine → Details

CISA Advisories advisories Microsoft Linux Jul 30

o6 Automation open62541

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to disclose sensitive information, cause a denial of service, or p...

T1498

CISA Advisories → Details

The Hacker News general Microsoft Jul 30

Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents

Hidden instructions in a Word document can make Microsoft 365 Copilot rewrite figures in a report, then copy the same instructions into the finished file. Hå...

The Hacker News → Details

Help Net Security general Microsoft Check Point Jul 30

Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks

Attackers are moving away from fake Microsoft login pages in favor of abusing Microsoft’s own authentication system, letting phishing campaigns slip past the...

T1566

Help Net Security → Details

CSO Online enterprise Microsoft Proofpoint Jul 30

Russian hackers turn Exchange flaw into ‘half-click’ mailbox takeover

A Russia-aligned threat group used a “half-click” exploit against Microsoft Exchange’s Outlook Web Access to install a browser-based backdoor when recipients...

CSO Online → Details

GBHackers general Microsoft VMware Linux Jul 30

New GenieLocker Ransomware Encrypts Windows, Linux and VMware ESXi Systems

GenieLocker is a custom ransomware family linked to the Toy Ghouls group (also known as Bearlyfy or Labubu). It can encrypt systems running Windows, Linux, a...

GBHackers → Details

GBHackers general Microsoft Jul 30

Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware

Hackers are abusing Microsoft Teams voice calls and fake IT helpdesk personas to gain remote access to corporate endpoints, drop a custom post‑exploitation t...

GBHackers → Details

CSO Online enterprise Microsoft Jul 30

A Scattered Spider member was indicted. Microsoft’s GDID went to trial.

A recently released criminal complaint against Peter Stokes, an alleged member of the Scattered Spider cybercrime group, reveals previously unpublicized deta...

CSO Online → Details

Kaspersky Securelist research Microsoft VMware Linux Jul 30

Toy Ghouls’ new toy: the GenieLocker ransomware

Kaspersky experts dissect GenieLocker: new custom ransomware variants for Windows, Linux, and ESXi systems. We found this family in attacks by Toy Ghouls, a ...

Kaspersky Securelist → Details

The Hacker News general Microsoft Jul 30

Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation

The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another vulnerability, t...

The Hacker News → Details

GBHackers general Microsoft Google Apple Amazon Linux Jul 30

Google Chrome 151 Fixes 370 Security Flaws, Including 7 Critical Bugs

Google has released stable Chrome version 151 updates for Windows, macOS, and Linux, addressing 370 security vulnerabilities. This update includes fixes for ...

GBHackers → Details

GBHackers general Microsoft Oracle Jul 30

TA488 Exploits Outlook Half-Click Flaw to Deploy Persistent OWAReaper Backdoor

TA488 has resurfaced with a high‑end half‑click campaign against on‑premises Outlook Web Access (OWA), exploiting CVE‑2026‑42897 to deploy a persistent JavaS...

GBHackers → Details

GBHackers general Microsoft Jul 30

Microsoft Word Copilot Flaw Lets Hidden Prompts Spread Self-Propagating AI Worms Across Documents

Security researcher Håkon Måløy has disclosed a cross-domain prompt injection vulnerability affecting Microsoft Copilot for Word. This vulnerability could al...

GBHackers → Details

Help Net Security general Microsoft Google Apple Linux Jul 30

Product showcase: Dashlane Password Manager is more security toolkit than password vault

Dashlane is a password manager for individuals and families that stores passwords, passkeys, payment cards, personal information and secure notes in an encry...

T1566 T1555

Help Net Security → Details

BleepingComputer general Microsoft Jul 29

Russian hackers exploit Exchange OWA zero-day for long-term mailbox access

The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email camp...

BleepingComputer → Details

«Previous page 1 ... 33 34 35 36 37 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA