CVE
SecScore ●●●○○ 09.10. 12:23
The flaws, CVE-2026-105133 and CVE-2026-105134, allow attackers to bypass authentication and inject OS commands.
The post Unpatched AhsayCBS Vulnerabilities Exploited in the Wild appeared first on SecurityWeek.
Security Week
Microsoft
SecScore ●●●○○ 09.10. 12:12
Microsoft says devices running unsupported versions of Windows will stop receiving security updates after next year's Windows Update certificate rotation. [...]
BleepingComputer
Microsoft
SecScore ●●●○○ 09.10. 10:26
Three research teams broke into Google's Pixel 10 on October 8 at Pwn2Own Ireland, a hacking contest in Cork whose rules require every target to be fully patched. The contest pays researchers to show working exploits an…
The Hacker News
Microsoft
SecScore ●●●○○ 09.10. 10:20
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
News
SecScore ●●●○○ 09.10. 10:11
Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions.
"CVE-2026…
The Hacker News
CVE
SecScore ●●●○○ 09.10. 08:53
The security defect, tracked as CVE-2026-107406, could lead to remote code execution or denial-of-service.
The post Citrix Urges Immediate Patching of Critical NetScaler Vulnerability appeared first on SecurityWeek.
Security Week
Microsoft
SecScore ●●●○○ 08.10. 22:44
Prepare for post-quantum authentication by testing certificate ecosystems now. Learn how Microsoft’s PQC TLS Pilot Program helps advance future readiness.
The post Post-quantum authentication: Why organizations should s…
Microsoft Security
News
SecScore ●●●○○ 08.10. 17:28
The security defects could lead to unauthorized access, information leaks, privilege escalation, DoS attacks, and remote code execution.
The post Cisco Patches a Dozen Critical Vulnerabilities appeared first on Security…
Security Week
APT
SecScore ●●●○○ 08.10. 17:26
The Russia-aligned threat actor known as UAC-0099 has been attributed to a previously undocumented .NET infostealer and remote access trojan (RAT) codenamed ASHVEIN.
According to TrendAI, the malware has been put to us…
The Hacker News
CVE
SecScore ●●●●○ 08.10. 16:00
Missing authorization in Azure SRE Agent allows an authorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●● 08.10. 16:00
Missing authentication for critical function in Azure App Service allows an unauthorized attacker to execute code over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 08.10. 16:00
Exposure of sensitive information to an unauthorized actor in Azure API Center allows an unauthorized attacker to disclose information over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 08.10. 16:00
Missing authorization in Azure Event Grid allows an authorized attacker to perform spoofing over a network.
MSRC Advisories
CVE
SecScore ●●●●● 08.10. 16:00
Deserialization of untrusted data in Microsoft Dataverse allows an unauthorized attacker to execute code over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 08.10. 16:00
Authorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●●○ 08.10. 16:00
Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
MSRC Advisories
CVE
SecScore ●●●○○ 08.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 08.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 08.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 08.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 08.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
Microsoft
SecScore ●●●○○ 08.10. 15:18
A Maryland man was found guilty of stealing more than $53 million after hacking the decentralized crypto exchange Uranium Finance twice in April 2021. [...]
BleepingComputer
Microsoft
SecScore ●●●○○ 08.10. 14:08
Microsoft will soon introduce support for third-party deepfake detection solutions and impersonation protection in Teams meetings. [...]
BleepingComputer
Breach
SecScore ●●●○○ 08.10. 13:42
ASOS is sending updates to affected customers about the cybersecurity incident it suffered earlier this week, confirming that hackers accessed some personal data. [...]
BleepingComputer
APT
SecScore ●●○○○ 08.10. 12:01
Cisco Talos identified an APT spear-phishing campaign against individuals affiliated with Taiwan research organizations. The operation leveraged legitimate public event themes and impersonated reputable academic and pol…
Talos Intelligence
CVE
SecScore ●●●○○ 08.10. 10:51
Information published.
MSRC Advisories
CVE
SecScore ●●●○○ 08.10. 10:50
Information published.
MSRC Advisories
Microsoft
SecScore ●●○○○ 07.10. 21:27
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed vulnerabilities in Adobe, Apple, Foxit Reader, and Microsoft.The vulnerabilities mentioned in this blog post have been patched by their …
Talos Intelligence
Microsoft
SecScore ●●●●○ 07.10. 18:00
Read how How Microsoft Security's FORGE Lab is scaling vulnerability research from Windows to the Linux kernel.
The post 3 lessons from frontier AI vulnerability research appeared first on Microsoft Security Blog.
Microsoft Security
CVE
SecScore ●●●○○ 07.10. 16:00
Updated CVE title. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 07.10. 10:48
Information published.
MSRC Advisories
Microsoft
SecScore ●●○○○ 07.10. 08:30
SQL Server läuft jetzt offiziell auf Azure Local in eigenen Rechenzentren und an Edge-Standorten, wahlweise mit Anbindung an Azure oder komplett offline.
MS Techwiese
Breach
SecScore ●●●○○ 07.10. 07:42
In October 2026, the Discord server protection service Double Counter suffered a data breach attributed to a vulnerability in the Metabase analytics tool. In its disclosure notice, Double Counter advised that attackers …
HaveIBeenPwned
Breach
SecScore ●●●○○ 07.10. 02:00
Active Directory defenses must combine identity fundamentals, telemetry, and rapid response as attackers reach the environment’s first breach attempt within a median of 11 hours.
Sophos X-Ops
APT
SecScore ●●●○○ 06.10. 20:38
Cybersecurity researchers have disclosed details of a "human-operated phishing platform" that impersonates advertising products for artificial intelligence (AI) chatbots like Google Gemini, Anthropic Claude, OpenAI Chat…
The Hacker News
Microsoft
SecScore ●●●○○ 06.10. 18:00
Learn how CISOs can mitigate cybersecurity risks and increase resilience in the age of AI-powered vulnerability management.
The post CISO perspectives on managing vulnerability risks in the age of AI appeared first on M…
Microsoft Security
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 06.10. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
Malware
SecScore ●○○○○ 06.10. 12:00
Analysis of Blinder Tunnel, an Iran-nexus campaign using fake Dubai Airports recruitment lures and GitHub C2 malware to target critical infrastructure.
The post Blinder Tunnel Campaign Targets Iraqi Infrastructure appea…
Unit 42
Microsoft
SecScore ●●●●○ 05.10. 18:21
Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions.
The vulnerability, tracked …
The Hacker News
CVE
SecScore ●●●○○ 05.10. 16:00
CVE-2026-69267 Windows Connected User Experiences and Telemetry Information Disclosure Vulnerability
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
APT
SecScore ●●●○○ 05.10. 13:46
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling.
"Cling is notable not bec…
The Hacker News
Microsoft
SecScore ●●●○○ 05.10. 07:00
CrowdStrike
CVE
SecScore ●●●○○ 05.10. 02:00
Sophos X-Ops
CVE
SecScore ●●●○○ 04.10. 11:13
Information published.
MSRC Advisories
CVE
SecScore ●●●○○ 04.10. 11:13
Information published.
MSRC Advisories
CVE
SecScore ●●●○○ 03.10. 11:05
Information published.
MSRC Advisories
CVE
SecScore ●●●●● 02.10. 16:00
Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a network.
MSRC Advisories
Microsoft
SecScore ●●●○○ 02.10. 07:54
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●●○○ 01.10. 16:00
According to this year’s Microsoft Digital Defense Report, government agencies and services were the sector most impacted by cyber threats in 2026, accounting for 27% of observed activity, up from 17% in 2025.
The post …
Microsoft Security
Microsoft
SecScore ●●●○○ 01.10. 16:00
Read highlights from the 2026 Microsoft Digital Defense Report, which reflects a security environment that continues to grow more interconnected.
The post Insights from the 2026 Microsoft Digital Defense Report appeare…
Microsoft Security
Microsoft
SecScore ●●○○○ 01.10. 08:00
Workload Orchestration für Azure Arc ist ab sofort direkt im Azure Portal verfügbar und erleichtert die Bereitstellung verteilter Anwendungen.
MS Techwiese
CVE
SecScore ●●●○○ 30.09. 22:00
Unit 42 is aware of possible 0-day activity against NetScaler devices. Citrix reports CVE-2026-88771, CVE-2026-88772 have been exploited in the wild.
The post Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-20…
Unit 42
Microsoft
SecScore ●●●○○ 30.09. 21:31
This year at Microsoft Ignite, we spotlight our AI-first, end-to-end security platform designed to protect identities, devices, data, applications, clouds, infrastructure, and the AI agents now working alongside your te…
Microsoft Security
CVE
SecScore ●●●○○ 30.09. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 30.09. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 30.09. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 30.09. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●○○ 30.09. 16:00
Updated an acknowledgement. This is an informational change only.
MSRC Advisories
CVE
SecScore ●●●●● 30.09. 16:00
CWE added. Informational change only.
MSRC Advisories
CVE
SecScore ●●●●○ 30.09. 16:00
Microsoft Threat Intelligence examines CVE-2026-73570 exploitation in Zimbra, including observed attack paths, detection opportunities, and mitigation guidance.
The post Unauthenticated command injection on internet-fac…
Microsoft Security
Phishing
SecScore ●●●○○ 29.09. 23:39
Microsoft observed phishing campaigns that abused MSP360 RMM to deploy ScreenConnect, creating redundant remote-access channels for follow-on activity
The post Phishing Abuses RMM Tools for Persistent Access appeared fi…
Microsoft Security
Breach
SecScore ●●●○○ 29.09. 18:00
Explore how Storm-3068 turned a compromised identity into broader cloud access and the steps organizations can take to defend their identities, pipelines, and cloud infrastructure.
The post Beyond source code: A path …
Microsoft Security
APT
SecScore ●●●●○ 29.09. 17:00
Since January 2026, Microsoft has observed Russian state threat actor Star Blizzard evolve their detection evasion capabilities through large-scale phishing campaigns, the use of accounts on compromised websites, and a …
Microsoft Security
Advisory
SecScore ●○○○○ 28.09. 14:00
The NCSC is urging UK organisations to promptly mitigate vulnerabilities affecting Citrix NetScaler ADC and Gateway, two of which are being actively exploited.
NCSC UK
Threat Intel
SecScore ●○○○○ 26.09. 01:00
Unit 42 security experts address critical cybersecurity misconceptions, offering practical insights to help your organization reinforce its enterprise defenses.
The post 3 Consulting Myths Debunked by Unit 42 Experts ap…
Unit 42
Microsoft
SecScore ●●●○○ 25.09. 09:22
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●○○○ 24.09. 08:00
Neue Management-Tools, KI-Funktionen und Platform-Level-Features bei Azure IaaS ermöglichen eine kontinuierliche Resilienzbewertung und minimieren die Auswirkungen von Infrastrukturstörungen.
MS Techwiese
Microsoft
SecScore ●●○○○ 23.09. 08:00
Strategie trifft Praxis: Die Microsoft AI Tour am 22. Oktober in Köln zeigt, wie Unternehmen KI-Initiativen von der Architektur und Absicherung bis zur produktiven Umsetzung voranbringen können.
MS Techwiese
Microsoft
SecScore ●●●●● 21.09. 08:00
Erfahre in dieser kostenlosen Online-Session, wie du deine Plattform mit Azure Copilot und GitHub Copilot auf eine KI-bereite Basis umstellst.
MS Techwiese
Breach
SecScore ●○○○○ 18.09. 12:00
Analysis of how default configurations in AWS AgentCore Harness allow prompt injection to exfiltrate credentials, and key steps to secure your agents.
The post A Vault with a Heap-View: The Uncomfortable Space Between A…
Unit 42
Microsoft
SecScore ●○○○○ 18.09. 09:25
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●●○○ 18.09. 00:00
Cross-environment attacks demand a new approach to security operations. Learn how Unit 42 Managed XSIAM helps SOC teams investigate complete attack paths.
The post Inside the Modern SOC: Defending the Cross-Environment …
Unit 42
Microsoft
SecScore ●●○○○ 16.09. 11:05
Ein neues Framework hilft bei der Wahl zwischen Zwei- und Drei-Zonen-Mustern für Azure-Workloads, um Kosten, Kapazitäten und Ausfallsicherheit auf Komponentenebene zu optimieren.
MS Techwiese
Malware
SecScore ●○○○○ 15.09. 14:00
Advisory on CHOSEN BRICK malware, including technical analysis and advice to help individuals and organisations protect themselves.
NCSC UK
Microsoft
SecScore ●●●●● 15.09. 08:00
Der neue Azure Copilot Troubleshooting Agent bietet eine zentrale KI-Unterstützung für die schnellere Analyse und Behebung von Betriebsstörungen in Azure.
MS Techwiese
Microsoft
SecScore ●●○○○ 14.09. 08:34
OpenAI-Modell GPT-6 Astra bringt mehrstufiges Reasoning, Tool-Nutzung und agentische Workflows in Microsoft Foundry.
MS Techwiese
Breach
SecScore ●●○○○ 11.09. 22:37
I think what really resonates with me this week is being able to completely turn the tables on perceptions around things like AI being the big bad hacking tool the news would have you believe. There's the stat I ta…
Troy Hunt
Microsoft
SecScore ●●●○○ 11.09. 07:37
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●●○○ 11.09. 07:30
Von Agentenentwicklung über Datenarchitektur bis Security: Die Microsoft AI Tour in Köln bietet jede Menge technischen Input für Developer und IT-Professionals.
MS Techwiese
Microsoft
SecScore ●●●○○ 10.09. 19:00
This blog post is the fourth and final installment of The Economics of Agent Optimization, which shares the strategies, capabilities, and proof points that can help you optimize agent costs and run AI as a managed inves…
Azure Security Blog
Breach
SecScore ●●○○○ 10.09. 12:00
Learn how root access on a compromised K8s node allows attackers to utilize SPIFFE/SPIRE metadata to spoof and harvest co-located workload identities.
The post The Machine With Many Faces: Post-Exploitation Identity Mis…
Unit 42
Microsoft
SecScore ●●●○○ 08.09. 23:44
Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial intelligence is helping…
Krebs on Security
Microsoft
SecScore ●●○○○ 08.09. 08:00
Fünf neue Features für Azure Firewall bieten flexiblere Anwendungskontrollen, dynamisches SNAT, IPv6-Unterstützung und eine höhere IDPS-Durchsatzleistung.
MS Techwiese
Microsoft
SecScore ●●●○○ 07.09. 12:00
Wie das Zusammenspiel von Modellvielfalt, Datenplattformen und App-Modernisierung produktive KI-Systeme auf Azure ermöglicht.
MS Techwiese
Microsoft
SecScore ●●●○○ 04.09. 08:00
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Breach
SecScore ●●○○○ 03.09. 12:00
Explore how attackers targeting Latin American entities use AI for data exfiltration and how basic OpSec errors allow defenders to disrupt operations.
The post Attackers Expose Ongoing AI Tool Use Targeting Organization…
Unit 42
Breach
SecScore ●○○○○ 02.09. 12:00
Using autonomous AI agents, an attacker breached an enterprise network in a matter of hours. Understand how to address and defend against agentic attacks.
The post An AI-Assisted Cyber Attack: Inside a Unit 42 Investiga…
Unit 42
Microsoft
SecScore ●●●○○ 02.09. 08:00
Neuerungen in Azure Copilot ermöglichen das direkte Ansteuern spezialisierter Agenten für Troubleshooting, Deployment, Optimierung und Resilienz.
MS Techwiese
Microsoft
SecScore ●●●○○ 01.09. 08:00
Ein strukturiertes Zusammenspiel zeigt, wie Security Copilot, Project Perception und MDASH den gesamten Security Lifecycle gemeinsam abdecken.
MS Techwiese
Malware
SecScore ●●●●● 31.08. 12:00
Learn how the Spring Ring campaign abuses Microsoft Teams and voice phishing to deploy malware and target enterprise domain controllers.
The post Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Team…
Unit 42
Microsoft
SecScore ●○○○○ 31.08. 10:11
Das in Rust geschriebene OpenVMM-Projekt baut seine Funktionen in den Bereichen Cross-Platform-Virtualisierung, Geräteemulation und Confidential Computing weiter aus.
MS Techwiese
Microsoft
SecScore ●●●●○ 28.08. 08:26
Was hat sich in der vergangenen Woche für Developer und IT-Pros getan? Was waren die wichtigsten Ankündigungen? Gab es neue Lernressourcen? Unser TechWiese-Team hat jede Menge Links für dich zusammengestellt.
MS Techwiese
Microsoft
SecScore ●●○○○ 27.08. 08:00
Steuere deine KI-Ausgaben als iteratives Investmentsystem durch gezielte Laufzeitoptimierung, Workflow-Anpassungen und kontinuierliche Governance in Microsoft Foundry.
MS Techwiese
Breach
SecScore ●●○○○ 25.08. 23:51
You're not going to believe this, but turns out you can't always take criminals at their word. Actually, I'll walk that back a bit as it may not even be the cybercrime guys who got this wrong, but it all …
Troy Hunt
Microsoft
SecScore ●●○○○ 25.08. 08:33
Neuerungen bei Azure IoT stärken die Transportsicherheit, entfernen langlebige Schlüssel aus dem Provisioning und schützen Update-Downloads.
MS Techwiese
Microsoft
SecScore ●●○○○ 25.08. 08:00
Am 22. Oktober kommt die Microsoft AI Tour nach Köln. Im Fokus: die nächste Generation von KI und Agenten, digitale Souveränität und die Frage, wie Unternehmen aus technologischen Möglichkeiten konkrete Ergebnisse mache…
MS Techwiese
Microsoft
SecScore ●●○○○ 24.08. 08:00
Die viertägige Online-Veranstaltung zeigt Developern, IT-Fachkräften und Führungskräften, wie der Übergang von KI-Konzepten zu produktiven Agenten gelingt.
MS Techwiese
Ransomware
SecScore ●○○○○ 18.08. 05:44
The current ransomware situation is a bit of a kludge (deep breath): a lot of ransomware (which often doesn't even involve "ware", it's just extortion) is carried out by kids who successfully make a …
Troy Hunt
Ransomware
SecScore ●●●○○ 13.08. 12:54
In July 2026, the cloud-based business communications platform RingCentral was the target of a ShinyHunters "pay or leak" extortion campaign. The group subsequently published data they claimed was obtained from the plat…
HaveIBeenPwned
Microsoft
SecScore ●●●●○ 11.08. 23:28
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already being actively exploited and two others th…
Krebs on Security
Breach
SecScore ●●○○○ 30.07. 15:36
DoublePulsar
Breach
SecScore ●●○○○ 26.07. 11:14
The Origin Energy breach down here in Aus is all over the news this week, and as with many breaches, it's multi-faceted. You've got them leading with "don't worry, your credit card is fine", the…
Troy Hunt
APT
SecScore ●○○○○ 23.07. 14:00
GCHQ’s National Cyber Security Centre and international partners issue warning as ‘LAUNDRY BEAR’ cyber threat group exposed for targeted phishing campaign
NCSC UK
CVE
SecScore ●●●●● 14.07. 20:10
BSI
Advisory
SecScore ●●○○○ 13.07. 14:00
New advisory highlights Russian state cyber actors’ global exploitation of poorly configured routers
NCSC UK
Microsoft
SecScore ●●●○○ 08.06. 17:37
Assistive AI agents aren't always helpful—it all depends on who they're working on behalf of.
Red Canary
Microsoft
SecScore ●●●○○ 02.06. 18:59
Microsoft Build 2026 highlights advancements in app development with Microsoft Fabric and Microsoft Databases, emphasizing a unified data and AI platform for scalable, agentic applications.
The post Microsoft Build 2026…
Azure Security Blog
Microsoft
SecScore ●●●●● 01.06. 15:04
Entra ID agent users can send malicious content to human users via Microsoft Teams. Here’s what to look out for.
Red Canary
CVE
SecScore ●●●○○ 28.05. 15:44
DoublePulsar
CVE
SecScore ●●●●● 11.05. 16:05
The EtherRAT malware family was first reported by Sysdig back in December 2025. At that time, the initial access vector was exploitation of CVE-2025-55182 (React2Shell) targeting Linux servers. In March 2026, a Windows …
The DFIR Report
Microsoft
SecScore ●●●○○ 04.05. 18:00
Security for cloud infrastructure is no longer defined by a single control, product, or boundary. Modern threats target identity, software supply chains, control planes, networks, and data simultaneously.
The post Azure…
Azure Security Blog
Microsoft
SecScore ●●●○○ 30.04. 20:00
As cloud workloads become more agentic and AI systems handle increasingly sensitive data, trust must be engineered directly into infrastructure. Azure Integrated HSM brings hardware‑enforced key protection into Azure, e…
Azure Security Blog
APT
SecScore ●●●○○ 23.04. 17:50
DoublePulsar
Advisory
SecScore ●○○○○ 23.04. 14:00
New advisory highlights how to defend against attacker tactics believed to be used by China-linked actors to hide malicious cyber activity.
NCSC UK
Microsoft
SecScore ●●●●○ 15.04. 12:40
BSI
APT
SecScore ●●●○○ 07.04. 14:00
Russian cyber actor APT28 exploit vulnerable routers to hijack DNS, enabling adversary‑in‑the‑middle attacks and theft of passwords and authentication tokens.
NCSC UK
APT
SecScore ●●●○○ 07.04. 14:00
New advisory warns cyber threat group APT28 have exploited vulnerable edge devices to support malicious operations.
NCSC UK
Microsoft
SecScore ●●●○○ 01.04. 18:00
Azure IaaS provides foundational capabilities across compute, storage, and networking to help organizations stay resilient.
The post Azure IaaS: Keep critical applications running with built-in resiliency at scale appea…
Azure Security Blog
Microsoft
SecScore ●●●●○ 25.03. 12:10
BSI
Microsoft
SecScore ●●●●○ 04.03. 18:00
As organizations accelerate digital transformation, infrastructure decisions increasingly shape how quickly teams can adopt AI, how reliably applications operate at global scale, and how effectively businesses respond t…
Azure Security Blog
Ransomware
SecScore ●●●○○ 23.02. 15:09
Key Takeaways An audio version of this report can be found on Spotify, Apple, YouTube, Audible, & Amazon.  This intrusion began in mid-February 2024 after a threat actor exploited a vul…
The DFIR Report
Microsoft
SecScore ●●●○○ 17.02. 17:00
Modern cloud systems are expected to deliver more than uptime. Customers expect consistent performance, the ability to withstand disruption, and confidence that recovery is predictable and intentional.
The post Azure re…
Azure Security Blog
CVE
SecScore ●●●○○ 13.02. 11:25
BSI
Ransomware
SecScore ●○○○○ 21.11. 00:55
DoublePulsar
APT
SecScore ●●●○○ 05.11. 08:00
We continue to adapt our sovereignty approach—innovating to meet customer needs and regulatory requirements within our Sovereign Public Cloud and Sovereign Private Cloud. We are announcing a new wave of capabilities, bu…
Azure Security Blog
APT
SecScore ●○○○○ 03.11. 19:44
DoublePulsar
Microsoft
SecScore ●●●○○ 03.11. 18:00
Microsoft is announcing the preview of Signing Transparency to address software supply chain threats that traditional code signing alone cannot fully prevent, building on the Zero Trust principle of “never trust, always…
Azure Security Blog
Microsoft
SecScore ●●●○○ 28.10. 11:20
BSI
Microsoft
SecScore ●●●○○ 27.10. 12:10
BSI
Microsoft
SecScore ●●●○○ 14.10. 20:00
Oracle Database@Azure adds new AI-ready features, expands to 33 regions, and launches new partner and migration programs
The post Oracle Database@Azure offers new features, regions, and programs to unlock data and AI in…
Azure Security Blog
Ransomware
SecScore ●●●●○ 05.08. 23:30
Overview Bumblebee malware has been an initial access tool used by threat actors since late 2021. In 2023 the malware was first reported as using SEO poisoning as a delivery mechanism. Recently in May of 2025 Cyjax repo…
The DFIR Report
CVE
SecScore ●●●●● 04.08. 10:15
BSI