Tag: microsoft
-
Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users’ Mailboxes
Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions.The vulnerability, tracked as CVE-2026-96940, is rated 8.8 on the CVSS scoring system.”Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a First seen on…
-
tenfold CE: Our free Identity Governance tool just got 2 new features
tenfold has added shared content governance and real-time event auditing to its free Community Edition for organizations with under 150 users. The new features help teams manage Microsoft 365 sharing and investigate suspicious identity activity. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/tenfold-ce-our-free-identity-governance-tool-just-got-2-new-features/
-
tenfold CE: Our free Identity Governance tool just got 2 new features
tenfold has added shared content governance and real-time event auditing to its free Community Edition for organizations with under 150 users. The new features help teams manage Microsoft 365 sharing and investigate suspicious identity activity. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/tenfold-ce-our-free-identity-governance-tool-just-got-2-new-features/
-
tenfold CE: Our free Identity Governance tool just got 2 new features
tenfold has added shared content governance and real-time event auditing to its free Community Edition for organizations with under 150 users. The new features help teams manage Microsoft 365 sharing and investigate suspicious identity activity. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/tenfold-ce-our-free-identity-governance-tool-just-got-2-new-features/
-
Outband Exchange Server update fixes high-severity mailbox access bug (CVE-2026-96940)
Microsoft has pushed out an out-of-band security update for Exchange Server that fixes a high-severity vulnerability (CVE-2026-96940) that may allow authenticated attackers to … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/10/05/exchange-server-vulnerability-cve-2026-96940/
-
Windows KB5124010 update crashes some games and apps
Microsoft confirmed over the weekend that some games and applications using AC-3 (Dolby Digital) audio decoding will crash after installing the September 2026 KB5124010 Windows 11 preview update. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-windows-kb5124010-update-crashes-some-games-and-apps/
-
Windows KB5124010 update crashes some games and apps
Microsoft confirmed over the weekend that some games and applications using AC-3 (Dolby Digital) audio decoding will crash after installing the September 2026 KB5124010 Windows 11 preview update. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-windows-kb5124010-update-crashes-some-games-and-apps/
-
Windows KB5124010 update crashes some games and apps
Microsoft confirmed over the weekend that some games and applications using AC-3 (Dolby Digital) audio decoding will crash after installing the September 2026 KB5124010 Windows 11 preview update. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-windows-kb5124010-update-crashes-some-games-and-apps/
-
Defending against AI-fueled cyberattacks requires focus on identity, data governance, Microsoft says
The company’s latest report previews how AI is changing threat activity, including by automating ransomware attacks. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ai-cyberattacks-automation-identity-data-microsoft-report/832020/
-
Nikkei Cyberattack Hijacks Employee Accounts, Sends 9,000 Spoofed Emails
Nihon Keizai Shimbun disclosed on October 4 that a Nikkei cyberattack had compromised employees’ Microsoft 365 business software accounts. Attackers then used those accounts to send roughly 9,000 spoofed emails to people inside and outside the company. First seen on thecyberexpress.com Jump to article: thecyberexpress.com/nikkei-cyberattack/
-
12 Best ITDR Tools Compared (2026): Features Pricing
Microsoft Defender for Identity is the best ITDR solutions starting point for most estates often already licensed while CrowdStrike leads platform-consolidated enforcement and Silverfort the inline-prevention lane. This comparison maps 12 tools across four coverage lanes (AD core, EDR-platform, SaaS/IdP, recovery) because no single product does all four jobs, whatever the datasheet implies. Quick Verdict:…
-
11 Best CIAM Solutions Compared (2026): Features Pricing
Okta’s Auth0 line is the best CIAM for most product teams the benchmark ecosystem with the procurement fast-pass while Amazon Cognito and Microsoft Entra External ID win the price-floor fight for AWS- and Azure-committed builders. Evaluating the broader market across the top Identity and Access Management (IAM) companies reveals how customer identity has evolved from…
-
12 Best Passwordless Authentication Solutions Compared (2026): Features Pricing
Microsoft is the best passwordless starting point for most workforces passkeys and Windows Hello ride licensing you already own while HYPR leads the dedicated-platform lane and Stytch the product-login lane. This comparison prices 12 vendors across workforce, product, hardware, and OEM lanes, because “passwordless” spans four different purchases with four different bills. Quick Verdict: Best…
-
Microsoft Releases Emergency Exchange Server Update to Fix CVE-2026-96940
Microsoft has released a revised security update package for on-premises Exchange Server, dated September 2026, which includes a fix for CVE-2026-96940. This V2 release applies to Exchange Server Subscription Edition, Exchange Server 2019, and Exchange Server 2016. Customers using Exchange Online are already protected and do not need this update. The revised update was published…
-
Microsoft Releases Emergency Exchange Server Update to Fix CVE-2026-96940
Microsoft has released a revised security update package for on-premises Exchange Server, dated September 2026, which includes a fix for CVE-2026-96940. This V2 release applies to Exchange Server Subscription Edition, Exchange Server 2019, and Exchange Server 2016. Customers using Exchange Online are already protected and do not need this update. The revised update was published…
-
Week in review: Researcher breaks into Microsoft analytics service, NetScaler RCE 0-day exploited
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 16-year-old researcher breaks into Microsoft analytics service with access to … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/10/04/week-in-review-researcher-breaks-into-microsoft-analytics-service-netscaler-rce-0-day-exploited/
-
China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing
A new China-nexus cyber espionage group known as TA419 has been attributed to multiple credential phishing campaigns targeting artificial intelligence (AI) experts working for U.S. think tanks, universities, and legal sector organizations.The campaigns have impersonated prominent economists and AI policymakers, as well as a prominent Anthropic employee, to single out an AI policy expert at…
-
Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware
Tags: attack, china, exploit, flaw, government, infrastructure, microsoft, ransomware, threat, tool, vulnerabilityThe suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries.The activity, observed by the Symantec and Carbon Black Threat Hunter Team, has hit critical infrastructure, government, and education organizations.”In the First seen on thehackernews.com Jump…
-
Antino Backdoor Lets China-Linked UAT-11587 Turn Microsoft 365 Into a C2 Channel
Cisco Talos details UAT-11587, a China-linked group using the Antino backdoor and Microsoft 365 as cover to spy on Asian governments. Cisco Talos has been tracking a cluster of espionage activity since September 2025 that it calls UAT-11587, and by July 2026 the group had hit at least 16 government and policy organizations across eight…
-
Microsoft Warns ClickFix Attacks Use Fake CAPTCHA Lures to Execute Malicious Commands
Microsoft Threat Intelligence has identified a ClickFix campaign in which compromised websites use fake CAPTCHA-style verification prompts to trick Windows users into executing malicious commands. The operation stages its payload inside the browser cache before the victim runs the command, helping attackers evade conventional download-based detection and work around Windows Run dialog character limits. The…
-
Cybersecurity 2026 Von der Abwehr zur Resilienz: Die zehn Sicherheitsprioritäten für Unternehmen
Cybersecurity 2026 ist kein Wettrüsten um immer mehr Einzelwerkzeuge. Der Microsoft Digital Defense Report beschreibt eine Risikolage, in der kompromittierte Identitäten, KI-Agenten, Cloud-Plattformen und Zulieferer miteinander verknüpft sind. Für Vorstände und CIOs folgt daraus ein klarer Auftrag: Sicherheitsverantwortung in der Unternehmensführung verankern, Abhängigkeiten sichtbar machen und Wiederherstellungsfähigkeit konsequent testen. Management Summary Cyberrisiken sind Geschäftsrisiken: Identitäten,……
-
Die nächste Stufe der Cyberbedrohung: KI-Agenten greifen zunehmend autonom an
KI-Agenten beschleunigen Angriff und Verteidigung entscheidend sind kontrollierte Identitäten, begrenzte Rechte und nachvollziehbare Entscheidungen. KI verändert die Kräfteverhältnisse in der Cybersicherheit: Angriffe werden schneller, skalierbarer und zunehmend autonom. Der Microsoft Digital Defense Report 2026 beschreibt eine Lage, in der Identitäten, KI-Systeme und Lieferketten zugleich zur Angriffsfläche werden. Für Unternehmen folgt daraus eine Managementaufgabe:… First seen…
-
‘Warlock’ ransomware used in attacks on critical infrastructure in Portuguese, Spanish-speaking countries
The group is exploiting a variety of vulnerabilities impacting Microsoft SharePoint, according to a new report from Symantec Threat Hunter Team. First seen on therecord.media Jump to article: therecord.media/warlock-ransomware-used-in-critical-infrastructure-attacks
-
AI Cuts Post-Compromise Attack Time to Minutes
Microsoft has warned that threat actors have gained the advantage over defenders by using AI to enhance the speed and scale of attacks First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/microsoft-ai-attack-time-minutes/
-
AI is giving attackers a head start, Microsoft warns
Threat actors are using AI to find bugs, build malware and run intrusions faster than defenders can keep up. Microsoft’s 2026 Digital Defense Report, covering July 2025 … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/10/02/ai-cybersecurity-threats-microsoft-report/
-
Souveräne Cloud Datenhoheit, Betrieb, Schlüssel und Rechtsraum prüfbar machen
Eine souveräne Cloud ist eine Cloud-Umgebung, in der eine Organisation selbst bestimmt, wo ihre Daten liegen, wer die Systeme betreibt, wer die Schlüssel hält und welches Recht im Konfliktfall gilt. AWS, Microsoft, Google, SAP und europäische Anbieter vermarkten inzwischen eigene Dienste als ‘Sovereign Cloud>>. Für IT-Leiter und CISOs sagt das Etikett wenig. Entscheidend ist, welche…
-
Exposed Hacker Server Reveals Toolkit Used in Viva Aerobus-Linked Intrusion
A publicly exposed attacker staging server has provided a rare, detailed view of a Microsoft SQL Server-focused intrusion linked to a Viva Aerobus-side environment. The server, hosted at 151.243.232.123, functioned as both a tool-delivery point and a repository for stolen material. It was left accessible without authentication, allowing unrelated internet hosts to enumerate its directories…
-
Authentication Bypass Successfully Impersonated 95 Users Without Passwords or MFA
A critical authentication bypass that enabled the impersonation of 95 employee accounts, including privileged users, without passwords, multi-factor authentication (MFA), or valid Microsoft Entra ID tokens. The issue stemmed from two flaws in the application’s custom session-cookie implementation: a predictable hard-coded signing secret and the use of public database identifiers as authenticated session payloads. Although…
-
Microsoft’s X account hacked in crypto pumpdump scheme
On Thursday, unknown attackers hijacked the official Microsoft account on X, which has over 13 million followers, in what appeared to be a pump-and-dump scheme promoting a crypto token. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/microsofts-x-account-hacked-in-crypto-token-pump-and-dump-scheme/
-
12 Best SSO Solutions Compared (2026): Features Pricing
Microsoft Entra ID is the best SSO for M365-licensed organizations bundled economics end most debates while Okta is the best neutral anchor for mixed-SaaS estates, with Auth0 (an Okta product line, not a separate vendor) leading developer login. Evaluating these platforms alongside the top enterprise Single Sign-On (SSO) solutions reveals how modern access control has…

