Microsoft
-
China Accuses US of Cyberattacks Using Microsoft Zero-Day Vulnerability
China has alleged that U.S. intelligence agencies conducted cyberattacks on Chinese military enterprises, exploiting a Microsoft zero-day vulnerability. The accusations come amid heightened tensions and increasing allegations of cyber warfare between the two nations.
-
Russian Espionage Group Targets Diplomats Through Innovative Malware
Microsoft has uncovered that Russian espionage group Secret Blizzard has been spying on foreign diplomats in Moscow since at least 2024, utilizing sophisticated malware and surveillance tactics to maintain access to sensitive communications.
-
Microsoft Warns of Data Sovereignty Challenges Amid US Cloud Act
Microsoft has acknowledged it cannot guarantee data sovereignty for its customers in France and the EU due to the Cloud Act, raising significant privacy and security concerns amid increasing tensions between the US and European nations.
-
National Nuclear Security Administration Targeted in SharePoint Vulnerability Attacks
The National Nuclear Security Administration has been hacked as part of a widespread campaign exploiting a Microsoft SharePoint vulnerability, with the potential breach of numerous government and private sector organizations. No sensitive information appears compromised, according to officials.
-
Active Exploitation Campaign Targets Microsoft SharePoint Zero-Day Flaw
A critical vulnerability in Microsoft SharePoint Server, tracked as CVE-2025-53770, is currently being exploited in a large-scale attack campaign, allowing unauthorized remote code execution. Organizations are urged to implement immediate protective measures.
-
Microsoft Addresses Critical Zero-Day Vulnerability in June Security Update
Microsoft’s June security update addresses 66 vulnerabilities, including a critical zero-day exploit in WebDAV linked to the Stealth Falcon espionage group, posing risks to organizations worldwide.
-
Microsoft Unveils European Security Program to Combat State-Sponsored Cyber Threats
Microsoft has launched a new European Security Program to provide free AI-powered cybersecurity tools to governments facing threats from state-sponsored hackers. The initiative aims to strengthen cyber defenses across Europe amid rising cyber threats from Russia, China, Iran, and North Korea.
-
Microsoft and CrowdStrike Collaborate to Standardize Cyber Threat Actor Taxonomies
Microsoft and CrowdStrike have announced a strategic collaboration to unify their cyber threat actor taxonomies, enhancing the ability of security professionals to analyze and respond to cyber threats by reducing confusion among different aliases used for hacking groups.
-
Global Authorities Disrupt Lumma Stealer Malware Operation
A coordinated effort by global authorities and tech companies has disrupted the Lumma Stealer malware operation, impacting its infrastructure and threatening its reach in the cybercrime market.
-
Google Enhances Chrome Security by Blocking Admin-Level Launches
Google’s new feature for Chrome will block the browser from launching with administrative rights, enhancing security similar to measures already implemented in Microsoft Edge. This change aims to reduce the risk of malware executing with elevated permissions and compromising user systems.