Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

Infosecurity Magazine general Microsoft SAP Jun 22

Microsoft Attributes Mastra AI Supply Chain Attack to North Korea

North Korean threat actor Sapphire Sleet has been linked to a supply chain attack targeting Mastra, according to Microsoft security researchers

T1195

Infosecurity Magazine → Details

Elastic Security Labs research Microsoft Jun 19

Azure AD Graph Activity Logs: Ingestion and threat detection to close the visibility gap

Azure AD Graph Activity Logs land in Elastic with full ECS parsing. Detect ROADrecon and AADInternals enumeration with ready-to-use detection rules.

T1592

Elastic Security Labs → Details

Elastic Security Labs research Microsoft Jun 19

Azure AD Graph Activity Logs: Ingestion and threat detection to close the visibility gap

Azure AD Graph Activity Logs land in Elastic with full ECS parsing. Detect ROADrecon and AADInternals enumeration with ready-to-use detection rules.

T1592

Elastic Security Labs → Details

Graham Cluley general Microsoft Jun 17

Smashing Security podcast #472: AI gets hacked, and BitLocker gets bypassed

What if your AI coding assistant could be tricked into stealing your own company's secrets - by reading a single booby-trapped bug report? No phishing email.

T1566

Graham Cluley → Details

Infosecurity Magazine general Microsoft Linux Jun 16

SprySOCKS Backdoor Expands From Linux to Windows

China-linked SprySOCKS backdoor gains stealthy Windows variants and 30-plus C2 commands

Infosecurity Magazine → Details

Infosecurity Magazine general Microsoft Jun 16

DragonForce Ransomware Exploited Microsoft Teams to Hide in Attack Against Major Company

Command and control traffic exploited a Teams visitor token to make malicious activity look legitimate to defenders

T1071

Infosecurity Magazine → Details

WeLiveSecurity research Microsoft Linux Jun 16

FishMonger’s arsenal upgraded: SprySOCKS for Windows

ESET researchers have discovered SprySOCKS for Windows, FishMonger’s backdoor weaponizing a kernel driver for advanced stealthiness

WeLiveSecurity → Details

WeLiveSecurity research Microsoft Jun 15

EvilTokens: A phishing attack that doesn’t steal your password

A phishing kit subverting Microsoft’s legitimate authentication flow lets attackers break into accounts without stealing passwords or creating fake login pages

T1566

WeLiveSecurity → Details

Infosecurity Magazine general Microsoft Jun 10

Microsoft Fixes 200 CVEs in June Patch Tuesday

Microsoft has patched 200 vulnerabilities including three zero-days

Infosecurity Magazine → Details

Krebs on Security general Microsoft Jun 9

A Record-Breaking Patch Tuesday for June 2026

Microsoft today released software updates to plug nearly 200 security holes across its Windows operating systems and supported software, a record number of f...

Krebs on Security → Details

Zero Day Initiative advisories Microsoft Jun 9

ZDI-26-339: Microsoft Windows Narrator Braille Support brlapi Exposed Dangerous Function Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to...

T1548 T1068 1 IOC

Zero Day Initiative → Details

Infosecurity Magazine general Microsoft Jun 4

Infosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft Warns

Microsoft Detection and Response Team (DART) details how it has uncovered malicious AI applications as cyber criminals manipulate organizations adopting AI t...

Infosecurity Magazine → Details

Zero Day Initiative advisories Microsoft Jun 4

ZDI-26-331: (Pwn2Own) Microsoft Edge Feedback Log File Handling Directory Traversal Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Edge. User interaction is required to exploit thi...

T1190 1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Jun 4

ZDI-26-330: (Pwn2Own) Microsoft Edge Navigation Handling Universal Cross-Site Scripting Vulnerability

This vulnerability allows remote attackers to execute arbitrary cross-origin script on affected installations of Microsoft Edge. User interaction is required...

1 IOC

Zero Day Initiative → Details

Zero Day Initiative advisories Microsoft Jun 4

ZDI-26-329: (Pwn2Own) Microsoft Edge Origin Validation Error Security Bypass Vulnerability

This vulnerability allows remote attackers to access restricted functionality on affected installations of Microsoft Edge. User interaction is required to ex...

1 IOC

Zero Day Initiative → Details

Infosecurity Magazine general Microsoft Jun 1

FSB Group Gamaredon Hides Worm in Windows Data Streams

FSB-linked Gamaredon concealed a fileless worm in NTFS data streams to spy on Ukraine targets

Infosecurity Magazine → Details

Exploit Database advisories Microsoft May 29

[remote] Microsoft - NTLMv2 Hash Capture

Microsoft - NTLMv2 Hash Capture

Exploit Database → Details

Infosecurity Magazine general Microsoft May 28

Microsoft Condemns "Uncoordinated" Zero Day Disclosures

Microsoft warned the disclosure of several unpatched vulnerabilities without notice has put “customers at unnecessary risk”

Infosecurity Magazine → Details

Infosecurity Magazine general Microsoft May 25

FBI Warns 'Kali365' Phishing Kit Hijacks Microsoft 365 OAuth Tokens

The Kali365 phishing-as-a-service platform lowers the barrier of entry for cybercriminals, said the FBI

T1566

Infosecurity Magazine → Details

Infosecurity Magazine general Microsoft May 19

Microsoft Takes Down Fox Tempest for Providing Ransomware-Enabling Signing Tool

Microsoft’s Digital Crimes Unit has taken down the infrastructure of Fox Tempest, a prolific cybercrime-enabling threat group

Infosecurity Magazine → Details

«Previous page 1 ... 41 42 43 44 45 46 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA