ARTIKEL SUCHE
Threat Feed QueryDurchsuche alle aggregierten Security-Artikel nach Schlagworten, CVE-IDs und Quellen.
Featured Chrome Browser Extension Caught Intercepting Millions of Users' AI Chats
…like OpenAI ChatGPT, Anthropic Claude, Microsoft Copilot, DeepSeek, Google Gemini, xAI Grok…
The Case for Dynamic AI-SaaS Security as Copilots Scale
…Tools like Zoom, Slack, Microsoft 365, Salesforce, and ServiceNow now come with…
Fake Moltbot AI Coding Assistant on VS Code Marketplace Drops Malware
Cybersecurity researchers have flagged a new malicious Microsoft Visual Studio Code (VS…
BlueHammer PoC for Windows Defender Exploited by Researchers to Escalate Privileges
…privilege escalation (LPE) vulnerability in Microsoft Windows Defender’s signature update mechanism…
Windows Active Directory Vulnerability Allow Attackers to Execute Malicious Code
Microsoft has released urgent security updates to address a critical vulnerability in…
The Gentlemen ransomware: Dissecting a self-propagating Go encryptor
Microsoft Threat Intelligence presents a comprehensive analysis of The Gentlemen, a Go…
Securing CI/CD in an agentic world: Claude Code Github action case
Microsoft Threat Intelligence identified a prompt injection pathway in Claude Code GitHub…
New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers
…undisclosed race condition vulnerability in Microsoft Windows Defender. When successfully executed, the...
SSH-Server auf Sicherheitslücken prüfen und härten
…Seit Microsoft OpenSSH als natives Feature...
TanStack-Angriff nutzte vertrauenswürdige Pipelines als Waffe
…Seit dem TanStack-Angriff hat die Mini-Shai-Hulud-Welle Microsoft, Red…
Multiple Windows RDP Vulnerabilities Allow Attackers to Access Sensitive Data
Microsoft has released security updates to address a series of information disclosure…
Three PhaaS Kits Targeting US Organizations to Steal M65 Logins by Bypassing MFA
…targeting US organizations to steal Microsoft 365 (M365) credentials and session tokens…
Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
…a running Google Chrome or Microsoft Edge process on Windows, allowing an…
ASCII smuggling crosses over from AI prompt injection to phishing evasion
…AI prompt injection to phishing evasion appeared first on Microsoft Security Blog.
Passkey-themed social engineering leads to identity and cloud compromise
…Learn how threat actors establish MFA persistence, abuse Microsoft Graph for reconnaissance…
Top 10 Best Identity Governance & Administration (IGA) Tools in 2026
…leads cloud-native converged governance; Microsoft Entra ID Governance wins bundled economics…
Top 10 Best Privileged Access Management (PAM) Solutions in 2026
…owns machine/secrets privilege; and Microsoft Entra PIM covers Azure-role JIT…
Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Attacks
Microsoft has warned of phishing campaigns distributing an installer for the MSP360…
Warlock Ransomware Exploiting SharePoint Flaws to Attack Water and Telecom Operators
A China-nexus threat actor is continuing to exploit Microsoft SharePoint Server…
CISA Warns of ‘ToolShell’ Exploits Chain Attacks SharePoint Servers – Discloses IOCs and detection signatures
…exploit chain targeting on-premises Microsoft SharePoint servers. Dubbed “ToolShell,” the campaign…