Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Microsoft

20 articles

SC Media General Microsoft 6d ago

Microsoft Edge retires master password feature, adopts passkeys and biometrics

As of June 4, Microsoft will disable the master password feature in Edge, replacing it with device-based authentication such as Windows Hello, which includes...

SC Media →

SC Media CVE Microsoft 6d ago

Unpatched Windows search URI handler issue leaks NTLMv2 hashes

The newly identified issue, similar to a previously patched vulnerability in the Windows Snipping Tool (CVE-2026-33829), resides in the search URI handler.

1 IOC

SC Media →

The Hacker News General Microsoft Google Zoom SAP 6d ago

WhatsApp, Slack Notifications Could Hijack Google Gemini on Android

A single poisoned notification from WhatsApp, Slack, SMS, Signal, Instagram, or Messenger could have hijacked Google Gemini's voice assistant on Android and ...

The Hacker News →

Security Affairs Campaigns Microsoft Broadcom 6d ago

Cyber espionage campaign targeted stock exchange executive’s Outlook account

Attackers spent five months silently stealing emails from a stock exchange executive’s Outlook account in a suspected espionage operation. A threat actor qui...

Security Affairs →

SC Media Ransomware Microsoft Cloudflare Sophos 6d ago

AI accelerates development of ransomware toolkit with EDR evasion capabilities

The toolkit, discovered by Sophos, includes features such as Cobalt Strike profiles to disguise beacon traffic, a Telegram bot API for command and control, P...

T1562 T1071

SC Media →

Qualys Blog General Microsoft Qualys 6d ago

Stop Patching at Human Speed: Peer-to-Peer (P2P) Distribution Closes the Remediation Gap Before Attackers Strike 

Executive Summary Knowing what’s exploitable is only half the battle. P2P patch distribution turns your endpoints into a delivery network, cutting patch prop...

Qualys Blog →

The Hacker News General Microsoft Google 6d ago

Microsoft 365 Android Apps Let Any App Steal Account Tokens via Leftover Debug Flag

A development flag left switched on in production builds of several Microsoft 365 Android apps disabled the check that limits account-token sharing to truste...

The Hacker News →

Help Net Security Vulnerability Disclosure Microsoft 6d ago

Microsoft responds to security challenges emerging in AI development

Microsoft has introduced a series of security tools and capabilities focused on AI-driven vulnerability discovery, AI agents, and AI models. The updates incl...

Help Net Security →

The Hacker News General Microsoft GitHub 6d ago

One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens

Cybersecurity researchers have disclosed a one-click attack via Microsoft Visual Studio Code (VS Code) that makes it possible to steal a user's GitHub token....

The Hacker News →

GBHackers General Microsoft Linux 6d ago

Expiring Microsoft Secure Boot Keys May Block DBX Updates on Legacy Devices

Expiring Microsoft Secure Boot keys will not brick unmigrated systems on June 27, 2026. However, they will silently freeze DB/DBX updates and lock affected W...

GBHackers →

CSO Online Vulnerability Disclosure Microsoft Docker 6d ago

Microsoft wants to put AI agents on a short leash

As enterprises race to adopt AI agents across software development workflows, Microsoft is rolling out new controls aimed at keeping the transformation from ...

T1598

CSO Online →

Security Affairs General Microsoft Google Amazon Linux 6d ago

U.S. CISA adds Android and Linux Kernel flaws to its Known Exploited Vulnerabilities catalog

U.S.

Security Affairs →

The Hacker News CVE Microsoft 6d ago

Unpatched Windows Search URI Vulnerability Lets Attackers Steal NTLMv2 Hashes

Cybersecurity researchers have disclosed details of an unpatched issue that could be exploited to disclose a user's NTLMv2 hash to the attacker. Like in the ...

1 IOC

The Hacker News →

SecurityWeek Zero-Day Microsoft 6d ago

Microsoft Tries to Calm Legal Threat Fears After Zero-Day Disclosure Backlash

Microsoft has responded to backlash over its initial threats of legal action against researchers who publicly disclose zero-day vulnerabilities without coord...

SecurityWeek →

GBHackers CVE Microsoft 6d ago

Windows Search URI Handler Vulnerability Exposes NTLMv2 Hashes to Remote Attackers

Windows systems are once again exposed to NTLM credential leakage through a newly observed abuse of the search, URI handler, a vulnerability class closely mi...

1 IOC

GBHackers →

GBHackers Vulnerability Disclosure Microsoft Cloudflare F5 Apache 6d ago

HTTP/2 Bomb Remote DoS Exploit Impacts nginx, Apache, IIS, Envoy, and Cloudflare Pingora

A newly disclosed “HTTP/2 Bomb” attack is raising serious concerns across the web infrastructure ecosystem, enabling remote denial-of-service (DoS) condition...

GBHackers →

The Hacker News Vulnerability Disclosure Microsoft Cloudflare F5 Apache 6d ago

New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare

Cybersecurity researchers have discovered a remote denial-of-service exploit that affects major web servers, including NGINX, Apache HTTPD, Microsoft IIS, En...

The Hacker News →

Help Net Security General Microsoft 6d ago

Microsoft Scout agent opens a new category of always-on Autopilots

Workplace AI assistants have mostly waited for a prompt before doing anything. A user asks, the tool answers, and the exchange ends there.

Help Net Security →

GBHackers Vulnerability Disclosure Microsoft Oracle 6d ago

Microsoft MSRC Allegedly Declines Action on Dependency Confusion Vulnerability

Microsoft is facing scrutiny after reportedly declining to treat a critical dependency confusion vulnerability affecting Azure Portal assets as a security is...

T1190 T1195 1 IOC

GBHackers →

BleepingComputer General Microsoft Linux Jun 2

Microsoft's Coreutils project brings Linux commands to Windows

Microsoft announced today at its Build 2026 developer conference the release of Coreutils for Windows, bringing many commonly used Linux command-line utiliti...

BleepingComputer →

«Previous page 1 ... 3 4 5 6 7 ... 27 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA