Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

SecurityWeek general Microsoft Jul 27

Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials

A threat actor has been using the compromised appliances to target the Microsoft 365 accounts of traveling corporate employees. The post Hacked Public Wi-Fi ...

SecurityWeek → Details

GBHackers general Microsoft Jul 27

Windows WalletService Flaw Lets Standard Users Gain SYSTEM Privileges

Microsoft Windows WalletService is affected by a local privilege escalation vulnerability tracked as CVE-2026-49176. This flaw could allow a standard authent...

T1548 T1068 1 IOC

GBHackers → Details

The Hacker News general Microsoft GitHub Jul 27

GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption

GitHub has announced a new cooldown mechanism in Dependabot, allowing the tool to wait at least three days after a release is published before opening a pull...

The Hacker News → Details

GBHackers general Microsoft Jul 27

Microsoft Introduces KMS Hardware-Secured for Windows Server Activation

Microsoft has introduced KMS Hardware-Secured, an upcoming enhancement to Windows Server activation that utilizes Trusted Platform Module (TPM)-based attesta...

GBHackers → Details

GBHackers general Microsoft Oracle Jul 27

BlueNoroff Fake Meeting Kit Captures Webcams, Disables Defender and Steals Cryptocurrency Credentials

BlueNoroff, a financially motivated threat cluster linked to the Lazarus Group, has been observed deploying a highly sophisticated “fake meeting” phishing ki...

T1566 T1078

GBHackers → Details

Security Affairs general Microsoft Jul 26

Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Credentials

Hackers compromised hotel Wi-Fi gateways to redirect users to fake Microsoft 365 login pages and steal credentials. ReliaQuest’s threat research team just do...

T1566 T1566.001

Security Affairs → Details

The Hacker News general Microsoft Jul 25

Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable

A malvertising operation dubbed SourTrade is making victims' browsers build the final Windows executable themselves, using a legitimate Bun runtime as its ba...

T1189

The Hacker News → Details

BleepingComputer general Microsoft Jul 24

Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts

Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages. [.

BleepingComputer → Details

BleepingComputer general Microsoft Jul 24

Microsoft blames massive Microsoft 365 outage on maintenance bug

Microsoft says a bug in its automated network maintenance request system caused Thursday's massive outage by mistakenly removing IP routes from more devices ...

BleepingComputer → Details

Cyberscoop general Microsoft IBM Linux NVIDIA Jul 24

Microsoft, tech companies throw weight behind spread of open-source AI

Other signatories of the letter include Meta, Palantir, Perplexity, Mistral, NVIDIA, Mozilla, The Linux Foundation, Hugging Face, Dell Technologies and IBM. ...

Cyberscoop → Details

The Hacker News general Microsoft Zoom Jul 24

BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery

The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found to operate an ac...

T1566 T1204

The Hacker News → Details

The Hacker News general Microsoft Amazon Linux Jul 24

Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers

A crafted SVG submitted to Bing's image search ran commands as NT AUTHORITY\SYSTEM on Microsoft's production image-processing workers, and as root on the Lin...

1 IOC

The Hacker News → Details

CSO Online enterprise Microsoft Jul 24

Tycoon2FA takedown reshapes the phishing landscape

Traditional phishing techniques are in decline as a result of the disruption of the Tycoon2FA phishing-as-a-service (PHaaS) platform, Microsoft said in a new...

T1566

CSO Online → Details

HackRead general Microsoft Jul 24

New Dolphin X Malware Uses AI Profiler to Rank High-Value Victims

Dolphin X malware targets more than 300 apps and includes an AI Profiler that scores infected Windows PCs to help criminals identify high-value victims quickly.

HackRead → Details

Help Net Security general Microsoft Jul 24

Microsoft tightens Windows enterprise activation security

Microsoft is making Trusted Platform Module (TPM)-backed attestation a requirement for Windows Key Management Service (KMS), the on-premises service used for...

T1598

Help Net Security → Details

GBHackers general Microsoft Jul 24

Hotel Wi-Fi DNS Poisoning Attacks Hijack Microsoft 365 Accounts Without Phishing

Adversaries are silently hijacking Microsoft 365 accounts by compromising hotel and conference-center Wi-Fi gateways and poisoning DNS no phishing emails, ma...

T1566 T1566.001

GBHackers → Details

The Hacker News general Microsoft Amazon Jul 24

Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks

The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of a new campaign that involves the use of a malicious program that's dressed up as a No...

The Hacker News → Details

GBHackers general Microsoft Jul 24

Attackers Abuse Microsoft Teams to Impersonate IT Support and Steal Corporate Access

Attackers are increasingly abusing Microsoft Teams to impersonate internal IT support and trick employees into handing over remote access and corporate crede...

T1566

GBHackers → Details

GBHackers general Microsoft Jul 24

Hackers Weaponize Notepad++ Plugins to Silently Infect Windows Systems

CERT-UA has issued a warning regarding the UAC-0099 threat cluster, which has revised its malware delivery method by exploiting the legitimate Notepad++ appl...

GBHackers → Details

Help Net Security general Microsoft Jul 24

New infosec products of the week: July 24, 2026

Here’s a look at the most interesting products from the past week, featuring releases from Astelia, Druva, Swimlane, and ThreatDown. Druva brings backup, rec...

Help Net Security → Details

«Previous page 1 ... 36 37 38 39 40 ... 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA