CVE
SecScore ●●●●● 24.08. 11:42
Microsoft has shared a temporary fix for ongoing gaming issues caused by Windows 11 updates released during the August 2026 Patch Tuesday. [...]
BleepingComputer
Malware
SecScore ●●●○○ 24.08. 10:08
Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that's targeting Windows and Linux web servers globally across the education, media, technology, and gaming sector…
The Hacker News
Microsoft
SecScore ●●●○○ 24.08. 09:19
Claude Security, currently in public beta for Claude Enterprise customers, now runs codebase scans on Mythos 5.
The post Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund appeared first …
Security Week
Microsoft
SecScore ●●○○○ 24.08. 08:00
Die viertägige Online-Veranstaltung zeigt Developern, IT-Fachkräften und Führungskräften, wie der Übergang von KI-Konzepten zu produktiven Agenten gelingt.
MS Techwiese
Threat Intel
SecScore ●●○○○ 22.08. 01:00
Attackers are targeting CI/CD pipelines and developer tools instead of application code, requiring total SDLC visibility and strict security controls
The post Connecting the Dots: Securing the Overlooked Corners of the …
Unit 42
Malware
SecScore ●●●●● 21.08. 20:01
A previously unknown malware family dubbed SynkLoader is being distributed in Microsoft Teams phishing campaigns to steal credentials via a fake lock screen. [...]
BleepingComputer
Microsoft
SecScore ●●●●● 21.08. 17:52
Check Point Research has disclosed a technique that uses Microsoft Defender's own legitimately signed boot-time remediation driver to perform arbitrary kernel-level file and registry operations on Windows systems rangin…
The Hacker News
Microsoft
SecScore ●●●○○ 21.08. 16:54
Microsoft says ongoing issues causing games to crash or fail to launch after installing the August 2026 Windows updates may be caused by peripherals with RGB lighting. [...]
BleepingComputer
CVE
SecScore ●●●●○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 21.08. 16:00
Corrected **Exploited** to **No**. This vulnerability was not exploited in the wild. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Affected software updated with new package information.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 21.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
Microsoft
SecScore ●●●●● 21.08. 15:39
Microsoft has started rolling out a Classic Outlook theme for users of Outlook on the web and the New Outlook for Windows. [...]
BleepingComputer
Microsoft
SecScore ●●●●● 21.08. 13:04
Microsoft has patched multiple maximum-severity vulnerabilities in Entra ID, Azure Arc, and Exchange Online that allowed attackers to gain remote code execution and escalate privileges. [...]
BleepingComputer
APT
SecScore ●●●●○ 21.08. 13:00
Threat actors are abusing FTP banners to hide commands that deliver two previously undocumented remote access trojans named E4del and PINHOLE. [...]
BleepingComputer
CVE
SecScore ●●●○○ 21.08. 09:04
A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr.
The vulnerability in question is CVE-2026-19478 (CVSS score: 9.4), a case of code i…
The Hacker News
Advisory
SecScore ●●●●● 21.08. 08:06
Update: The story was updated after publication to note that the vulnerability has not been exploited.
Although the security bulletin originally marked the "Exploited" field under the Exploitability Assessment table as…
The Hacker News
Microsoft
SecScore ●●○○○ 21.08. 08:00
Die neuen Azure Container Apps Sandboxes bieten hardwareisolierte MicroVMs für die sichere Ausführung von autonomen KI-Agenten.
MS Techwiese
Malware
SecScore ●●●○○ 20.08. 19:23
A lot of this week’s trouble starts with something trusted doing exactly what it was allowed to do.
Signed drivers get turned against defenses. Legitimate apps help malware blend in. A weak header check opens a path to…
The Hacker News
CVE
SecScore ●●●●○ 20.08. 16:00
Improper verification of cryptographic signature in Azure Data Factory allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Observable response discrepancy in Azure Stack HCI allows an unauthorized attacker to disclose information over a network.
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Server-side request forgery (ssrf) in Azure Active Directory allows an authorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Deserialization of untrusted data in Microsoft Entra ID allows an unauthorized attacker to execute code over a network.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Updated links to security updates. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Uncontrolled search path element in Windows Remote Help allows an authorized attacker to deny service locally.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Uncontrolled search path element in Windows Remote Help Defense allows an authorized attacker to perform spoofing locally.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Corrected the Executive Summary to clarify that the vulnerability affects Windows Device Health Attestation (DHA), not Microsoft Azure Attestation. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Updated links to security updates. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 20.08. 16:00
Information published. This CVE was addressed by updates that were released in August 2026, but the CVE was inadvertently omitted from the August 2026 Security Updates. This is an informational change only. Customers wh…
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Improper neutralization of argument delimiters in a command ('argument injection') in Azure Managed Instance for Apache Cassandra allows an unauthorized attacker to execute code over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Relative path traversal in Microsoft Fabric allows an authorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Use of incorrectly-resolved name or reference in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Improper access control in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Server-side request forgery (ssrf) in Azure Data Factory allows an unauthorized attacker to disclose information over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●● 20.08. 16:00
Integer overflow or wraparound in Azure Data Manager for Energy allows an authorized attacker to execute code over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Incorrect authorization in Azure Arc allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 20.08. 16:00
Authorization bypass through user-controlled key in Microsoft Partner Center allows an unauthorized attacker to disclose information over a network.
MSRC Advisories
News
SecScore ●●●○○ 20.08. 15:24
A now-patched security flaw impacting Zimbra Collaboration (ZCS) has come under active exploitation in the wild, according to the Polish Computer Emergency Response Team (CERT Polska).
The vulnerability in question is …
The Hacker News
Phishing
SecScore ●●●○○ 20.08. 12:00
Unit 42 details how attackers exploit enterprise collaboration tools for identity phishing and credential theft. Discover key defense strategies.
The post Identity Abuse Through Trusted Communication Channels appeared f…
Unit 42
CVE
SecScore ●●●●○ 20.08. 08:04
Cybersecurity researchers have disclosed details of a critical flaw in the Elementor Pro WordPress plugin that, if successfully exploited, could lead to remote code execution.
The vulnerability, tracked as CVE-2026-324…
The Hacker News
Microsoft
SecScore ●●○○○ 20.08. 08:00
Die neue verwaltete, plattformnative Routing-Lösung ermöglicht leistungsstarke und skalierbare Netzwerkarchitekturen in Azure.
MS Techwiese
Microsoft
SecScore ●●●○○ 19.08. 19:30
Microsoft is named a visionary leader in the 2026 Frost Radar for Cloud Workload Protection Platforms, recognized for unified runtime security with Microsoft Defender for Cloud.
The post Microsoft named a Leader in the …
Microsoft Security
Microsoft
SecScore ●●●●○ 19.08. 13:01
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four critical vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, stating they are being exploited in the wild.
The sh…
The Hacker News
Malware
SecScore ●●●○○ 19.08. 08:01
Microsoft Defender Experts have linked more than 30 web domains to MacSync Stealer, a macOS-focused information stealer, after correlating recurring endpoint and network behaviors across changing infrastructure, tracing…
The Hacker News
Microsoft
SecScore ●○○○○ 19.08. 08:00
In einer 60-minütigen Online-Session erfährst du, wie du KI-Agenten in Unternehmen sichtbarer machst, Zugriffe steuerst und Bedrohungen in Echtzeit abwehrst.
MS Techwiese
Breach
SecScore ●●●●○ 18.08. 21:05
In August 2026, the actor TheHatman claimed to have stolen large volume of credentials from organizations' Microsoft Entra tenants. We provide guidance on mitigating large-scale credential attacks.
The post Threat Brie…
Unit 42
Breach
SecScore ●●●○○ 18.08. 19:47
Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available t…
The Hacker News
News
SecScore ●●●○○ 18.08. 19:44
Two critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and industrial automati…
The Hacker News
Malware
SecScore ●●●○○ 18.08. 19:08
MacSync Stealer rapidly rotates domains to evade detection, but its behavior remains consistent. Learn how Microsoft uncovered 30+ related domains using durable hunting pivots.
The post Hunting MacSync Stealer infrastru…
Microsoft Security
CVE
SecScore ●●●●● 18.08. 14:00
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.
CVE-2026-33824 Microsoft Internet Key Exchange (IKE) Service Extensions Dou…
CISA Advisories
Ransomware
SecScore ●○○○○ 18.08. 05:44
The current ransomware situation is a bit of a kludge (deep breath): a lot of ransomware (which often doesn't even involve "ware", it's just extortion) is carried out by kids who successfully make a …
Troy Hunt
Microsoft
SecScore ●●○○○ 17.08. 16:49
Drei Microsoft-Events, drei Perspektiven auf die nächste Generation der KI: Von der Frontier Transformation Week über die AI Tour in Köln bis zu Microsoft Ignite. Wir zeigen, welches Event zu deinen aktuellen Fragen, Pr…
MS Techwiese
Microsoft
SecScore ●●○○○ 17.08. 08:00
In der kostenlosen Online-Session erfährst du, wie eine sichere, skalierbare Basis für KI-gestützte Arbeitsumgebungen und Unternehmensprozesse aufgebaut wird.
MS Techwiese
Microsoft
SecScore ●●●○○ 14.08. 08:51
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Ransomware
SecScore ●●●○○ 13.08. 12:54
In July 2026, the cloud-based business communications platform RingCentral was the target of a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they claimed was obtained from the plat…
HaveIBeenPwned
Microsoft
SecScore ●●●○○ 12.08. 08:00
Azure Arc ermöglicht die Buchung und Bereitstellung von Extended Security Updates für Windows Server 2016 direkt über das Azure Portal.
MS Techwiese
CVE
SecScore ●●●○○ 12.08. 00:21
Microsoft has released its monthly security update for August 2026, which includes 421 vulnerabilities affecting a range of products, including 62 that Microsoft marked as "critical."
Talos Intelligence
Microsoft
SecScore ●●●●○ 11.08. 23:28
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already being actively exploited and two others th…
Krebs on Security
CVE
SecScore ●●●●○ 11.08. 07:00
CrowdStrike
Malware
SecScore ●●○○○ 11.08. 00:00
Analysis of the Aeternum botnet loader, a threat leveraging Polygon blockchain smart contracts for decentralized C2 infrastructure and payload execution.
The post The Permanent Threat: Analyzing Aeternum’s Blockchain-Ba…
Unit 42
Microsoft
SecScore ●●●●○ 10.08. 18:00
Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and human expertise.
The post Microsoft named a Leader in the 2026 …
Microsoft Security
Ransomware
SecScore ●●●●○ 10.08. 17:00
DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure
Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support victim communications, negotiations, and data l…
Microsoft Security
Microsoft
SecScore ●●○○○ 10.08. 08:54
Die kostenlose Konferenz in Köln bietet IT-Führungskräften und Developern strategische Keynotes, technische Deep Dives und praktische Labs zur Skalierung von KI.
MS Techwiese
Threat Intel
SecScore ●●●○○ 08.08. 01:00
Identity-based attacks drive 90% of incidents. Learn how modern attackers exploit identities and what SOC leaders can do to respond.
The post Inside the Modern SOC: The Identity Front Door appeared first on Unit 42.
Unit 42
Microsoft
SecScore ●●●○○ 07.08. 09:00
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Threat Intel
SecScore ●●○○○ 06.08. 12:00
Discover how attackers hijack AI tokens to fuel gray market transfer stations by stealing developer API keys.
The post Token Jacking: Cybercriminals Could Be Stealing Your AI Resources appeared first on Unit 42.
Unit 42
Microsoft
SecScore ●●●○○ 05.08. 18:30
Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report.
The post Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Nat…
Microsoft Security
Malware
SecScore ●●●○○ 05.08. 17:48
A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicious infrastructure harder to detect while giving defenders new …
Microsoft Security
Breach
SecScore ●●●○○ 05.08. 01:46
A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates. This analysis details the attack chain, affected environment…
Microsoft Security
Microsoft
SecScore ●●●○○ 04.08. 20:30
Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance.
The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevS…
Microsoft Security
Ransomware
SecScore ●●●●● 04.08. 19:54
Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread.
The post 128 Seconds to disruption: Microsoft Defender stop…
Microsoft Security
CVE
SecScore ●●●○○ 04.08. 15:00
Frontier AI is reshaping vulnerability discovery. Learn how our NOVA system found 14,000+ unknown vulnerabilities across the open-source software supply chain.
The post The Frontier AI Vulnerability Burst: Industrializi…
Unit 42
Malware
SecScore ●●○○○ 04.08. 14:50
Nearly half of C2 malware bypasses DNS by connecting directly to IP addresses. Zero trust IP enforcement secures networks against these threats.
The post Almost Half of Malware Samples Communicate Direct to IP appeared …
Unit 42
CVE
SecScore ●●●●● 04.08. 02:00
After compromising systems via CVE-2026-18577, threat actors use the additional RMM tools and network tunnels to establish persistent remote access
Sophos X-Ops
Threat Intel
SecScore ●○○○○ 03.08. 12:00
Explore how passkey implementation gaps undermine security when relying parties fail to validate the User Verified flag, reducing MFA to a single factor.
The post Pass the Passkey: A Novel Attack Surface in Passwordless…
Unit 42
APT
SecScore ●●●●○ 31.07. 23:01
Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations such as hotels since May 2026 in order to deliver malware …
Microsoft Security
Microsoft
SecScore ●○○○○ 31.07. 08:47
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Breach
SecScore ●●○○○ 30.07. 15:36
DoublePulsar
APT
SecScore ●●●○○ 30.07. 12:00
Unit 42 details a Chinese speaking threat actor combining autonomous AI scanning across seven vulnerabilities with manual exploitation. Read more.
The post Chinese-Speaking Threat Actor Harnesses AI Models for Autonomou…
Unit 42
Breach
SecScore ●●○○○ 26.07. 11:14
The Origin Energy breach down here in Aus is all over the news this week, and as with many breaches, it's multi-faceted. You've got them leading with "don't worry, your credit card is fine", the…
Troy Hunt
Microsoft
SecScore ●○○○○ 24.07. 08:50
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
APT
SecScore ●○○○○ 23.07. 16:10
Unit 42 details a Russian cyberespionage campaign targeting Zimbra webmail servers using JavaScript injection to steal credentials.
The post Russian Global Webmail Espionage appeared first on Unit 42.
Unit 42
APT
SecScore ●○○○○ 23.07. 14:00
GCHQ’s National Cyber Security Centre and international partners issue warning as ‘LAUNDRY BEAR’ cyber threat group exposed for targeted phishing campaign
NCSC UK
Microsoft
SecScore ●●○○○ 23.07. 08:00
Eine Co-Design-Lösung aus Hardware und Software auf Azure Cobalt-Prozessoren ermöglicht feingranulierte Leistungsbegrenzung pro virtueller Maschine zur Steigerung der Energieeffizienz.
MS Techwiese
Microsoft
SecScore ●●○○○ 20.07. 08:35
Nutze konkrete Demos und Anleitungen auf der viertägigen Konferenz, um deine KI-Strategie erfolgreich in den produktiven Betrieb zu bringen.
MS Techwiese
CVE
SecScore ●●●○○ 17.07. 12:00
A technical analysis of three chained zero-day vulnerabilities in Siemens ROX II OT switches that allow privilege escalation and persistent root access.
The post Three Steps to the Terminal: A Siemens ROX II Zero-Day Tr…
Unit 42
Microsoft
SecScore ●○○○○ 17.07. 08:24
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●●●○ 16.07. 08:00
Die Azure Landing Zone verlässt den rein communitygetriebenen Open-Source-Status und wird mit dedizierter Produkt-Roadmap direkt vom Azure-Migrate-Team übernommen.
MS Techwiese
Microsoft
SecScore ●●○○○ 15.07. 09:27
Vom 17. bis 20. November 2026 bündelt die Microsoft Ignite in San Francisco praxisnahe Sessions, Zertifizierungen und direkt anwendbares KI- und Cloud-Wissen.
MS Techwiese
Microsoft
SecScore ●●●○○ 14.07. 21:22
Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple the number of vulnerabilities the software giant fixed in its record…
Krebs on Security
CVE
SecScore ●●●●● 14.07. 20:10
BSI
Microsoft
SecScore ●●○○○ 14.07. 08:00
Das KI-gestützte Cloud-Health-System steuert operative Abläufe in Azure über einen digitalen Zwilling in Echtzeit.
MS Techwiese
Advisory
SecScore ●●○○○ 13.07. 14:00
New advisory highlights Russian state cyber actors’ global exploitation of poorly configured routers
NCSC UK
Microsoft
SecScore ●●●○○ 10.07. 08:34
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●○○○ 09.07. 09:41
Die neue Preview-Funktion ermöglicht die automatisierte Validierung der Systemzuverlässigkeit anhand realer Produktionsausfälle.
MS Techwiese
Breach
SecScore ●●○○○ 08.07. 15:54
How's this for a location?! I mean, last week was nice with Scott in Mallorca, but Marrakech is, well, wow 😮 Anyway, about those data breaches... This week I'm talking about the futility of attempting …
Troy Hunt
Microsoft
SecScore ●●○○○ 08.07. 11:55
Die offizielle Version 2.0 von Spring AI führt standardisierte Schnittstellen für Vektorsuche und persistenten Chat-Speicher auf Azure Cosmos DB ein.
MS Techwiese
Microsoft
SecScore ●●●●● 03.07. 08:53
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●●○○ 02.07. 08:00
Der KI-gestützte Agent vereint Telemetriedaten sowie Kontextanalysen und ermöglicht automatisierte Triage-Prozesse zur Reduzierung der Systemwiederherstellungszeit.
MS Techwiese
Microsoft
SecScore ●●●●○ 01.07. 08:00
Der generative KI-Assistent beschleunigt die Erkennung von Bedrohungen, automatisiert Untersuchungen und lässt sich über Plugins flexibel erweitern.
MS Techwiese
Microsoft
SecScore ●●○○○ 30.06. 08:00
Erweiterungen bei Azure Confidential Computing stärken den Hardware-basierten Datenschutz für regulierte Workflows und digitale Souveränität.
MS Techwiese
Microsoft
SecScore ●●●○○ 08.06. 17:37
Assistive AI agents aren't always helpful—it all depends on who they're working on behalf of.
Red Canary
Microsoft
SecScore ●●●○○ 02.06. 18:59
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform for scalable, agentic applications.
The post Microsoft Build 2026…
Azure Security Blog
Microsoft
SecScore ●●●●● 01.06. 15:04
Entra ID agent users can send malicious content to human users via Microsoft Teams. Here’s what to look out for.
Red Canary
CVE
SecScore ●●●○○ 28.05. 15:44
DoublePulsar
CVE
SecScore ●●●●● 11.05. 16:05
The EtherRAT malware family was first reported by Sysdig back in December 2025. At that time, the initial access vector was exploitation of CVE-2025-55182 (React2Shell) targeting Linux servers. In March 2026, a Windows …
The DFIR Report
Microsoft
SecScore ●●●○○ 04.05. 18:00
Security for cloud infrastructure is no longer defined by a single control, product, or boundary. Modern threats target identity, software supply chains, control planes, networks, and data simultaneously.
The post Azure…
Azure Security Blog
Microsoft
SecScore ●●●○○ 30.04. 20:00
As cloud workloads become more agentic and AI systems handle increasingly sensitive data, trust must be engineered directly into infrastructure. Azure Integrated HSM brings hardware‑enforced key protection into Azure, e…
Azure Security Blog
APT
SecScore ●●●○○ 23.04. 17:50
DoublePulsar
Advisory
SecScore ●○○○○ 23.04. 14:00
New advisory highlights how to defend against attacker tactics believed to be used by China-linked actors to hide malicious cyber activity.
NCSC UK
Microsoft
SecScore ●●●●○ 15.04. 12:40
BSI
APT
SecScore ●●●○○ 07.04. 14:00
Russian cyber actor APT28 exploit vulnerable routers to hijack DNS, enabling adversary‑in‑the‑middle attacks and theft of passwords and authentication tokens.
NCSC UK
APT
SecScore ●●●○○ 07.04. 14:00
New advisory warns cyber threat group APT28 have exploited vulnerable edge devices to support malicious operations.
NCSC UK
Microsoft
SecScore ●●●○○ 01.04. 18:00
Azure IaaS provides foundational capabilities across compute, storage, and networking to help organizations stay resilient.
The post Azure IaaS: Keep critical applications running with built-in resiliency at scale appea…
Azure Security Blog
Advisory
SecScore ●●○○○ 30.03. 14:00
The NCSC is encouraging UK organisations to mitigate an unauthenticated remote code execution vulnerability affecting F5 BIG-IP Access Policy Manager.
NCSC UK
Microsoft
SecScore ●●●●○ 25.03. 12:10
BSI
Microsoft
SecScore ●●●●○ 04.03. 18:00
As organizations accelerate digital transformation, infrastructure decisions increasingly shape how quickly teams can adopt AI, how reliably applications operate at global scale, and how effectively businesses respond t…
Azure Security Blog
Ransomware
SecScore ●●●○○ 23.02. 15:09
Key Takeaways An audio version of this report can be found on Spotify, Apple, YouTube, Audible, & Amazon.  This intrusion began in mid-February 2024 after a threat actor exploited a vul…
The DFIR Report
Microsoft
SecScore ●●●○○ 17.02. 17:00
Modern cloud systems are expected to deliver more than uptime. Customers expect consistent performance, the ability to withstand disruption, and confidence that recovery is predictable and intentional.
The post Azure re…
Azure Security Blog
CVE
SecScore ●●●○○ 13.02. 11:25
BSI
Ransomware
SecScore ●○○○○ 21.11. 00:55
DoublePulsar
APT
SecScore ●●●○○ 05.11. 08:00
We continue to adapt our sovereignty approach—innovating to meet customer needs and regulatory requirements within our Sovereign Public Cloud and Sovereign Private Cloud. We are announcing a new wave of capabilities, bu…
Azure Security Blog
APT
SecScore ●○○○○ 03.11. 19:44
DoublePulsar
Microsoft
SecScore ●●●○○ 03.11. 18:00
Microsoft is announcing the preview of Signing Transparency to address software supply chain threats that traditional code signing alone cannot fully prevent, building on the Zero Trust principle of “never trust, always…
Azure Security Blog
Microsoft
SecScore ●●●○○ 28.10. 11:20
BSI
Microsoft
SecScore ●●●○○ 27.10. 12:10
BSI
Microsoft
SecScore ●●●○○ 14.10. 20:00
Oracle Database@Azure adds new AI-ready features, expands to 33 regions, and launches new partner and migration programs
The post Oracle Database@Azure offers new features, regions, and programs to unlock data and AI in…
Azure Security Blog
Ransomware
SecScore ●●●●○ 05.08. 23:30
Overview Bumblebee malware has been an initial access tool used by threat actors since late 2021. In 2023 the malware was first reported as using SEO poisoning as a delivery mechanism. Recently in May of 2025 Cyjax repo…
The DFIR Report
CVE
SecScore ●●●●● 04.08. 10:15
BSI
Microsoft
SecScore ●●●●○ 01.07. 17:00
Forrester Research shows how Azure helps enterprises scale generative AI securely, overcoming infrastructure and compliance challenges to unlock real business value.
The post Building secure, scalable AI in the cloud wi…
Azure Security Blog
Microsoft
SecScore ●●●●○ 14.01. 19:45
BSI