The security stories that matter, explained by our team — with the concrete steps to take.
Collected every two hours from specialised publications — each link leads to the original article.
A high-severity flaw impacting Microsoft SharePoint has been added to the Known Exploited Vulnerabilities (KEV) catalog by the U.S. Cybersecurity and Infrastru…
Microsoft has disclosed details about a now-patched security flaw in Apple's Transparency, Consent, and Control (TCC) framework in macOS that has likely come u…
Microsoft has released security updates to fix a total of 118 vulnerabilities across its software portfolio, two of which have come under active exploitation i…
Microsoft's recent patch, intended to strengthen Secure Boot defenses, has resulted in an unexpected setback for Linux-Windows dual-boot setups worldwide. User…
Cybersecurity researchers have disclosed a critical security flaw impacting Microsoft's Copilot Studio that could be exploited to access sensitive information.…
Threat actors are exploiting a novel attack technique in the wild that leverages specially crafted management saved console (MSC) files to gain full code execu…
Microsoft has released security updates to address 51 flaws as part of its Patch Tuesday updates for June 2024.Of the 51 vulnerabilities, one is rated Critical…
The Microsoft Threat Intelligence team said it has observed a threat actor it tracks under the name Storm-1811 abusing the client management tool Quick Assist …
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a security flaw impacting Microsoft Sharepoint Server to its Known Exploited Vulnera…
A now-patched security flaw in the Microsoft Edge web browser could have been abused to install arbitrary extensions on users' systems and carry out malicious …
In January 2024, Microsoft discovered they’d been the victim of a hack orchestrated by Russian-state hackers Midnight Blizzard (sometimes known as Nobelium). T…
The Patch Tuesday update bundle for March 2024 carries some important security fixes for various…Microsoft Addressed ~60 Vulnerabilities With March Patch Tuesd…
Microsoft on Tuesday released its monthly security update, addressing 61 different security flaws spanning its software, including two critical issues impactin…
A newly disclosed security flaw in the Microsoft Defender SmartScreen has been exploited as a zero-day by an advanced persistent threat actor called Water Hydr…
Multiple vulnerabilities have been discovered in Microsoft Edge, the worst of which could lead to remote code execution.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical security vulnerability impacting Microsoft SharePoint Server to its Known…
Microsoft has addressed a total of 48 security flaws spanning its software as part of its Patch Tuesday updates for January 2024.Of the 48 bugs, two are rated …
Microsoft on Monday said it detected Kremlin-backed nation-state activity exploiting a now-patched critical security flaw in its Outlook email service to gain …
Microsoft has released fixes to address63 security bugsin its software for the month of November 2023, including three vulnerabilities that have come under act…
Microsoft has linked the exploitation of a recently disclosed critical flaw in Atlassian Confluence Data Center and Server to a nation-state actor it tracks as…
Microsoft has detailed a new campaign in which attackers unsuccessfully attempted to move laterally to a cloud environmentthrough an SQL Server instance."The a…
Threat actors are exploiting poorly secured Microsoft SQL (MS SQL) servers to deliver Cobalt Strike and a ransomware strain called FreeWorld.Cybersecurity firm…
Researchers discovered a reply URL flaw in Azure AD that could allow unauthorized access to…Microsoft Power Platform API Threatened Due To Reply URL Flaw on La…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) hasaddeda recently patched security flaw in Microsoft's .NET and Visual Studio products to its…