Tag

#microsoft

109 stories taggedmicrosoft.

Illustration: a vast server room aisle with cool blue indicator lights reflecting on polished floor
AI Security

Microsoft's AI bug-hunters logged 140 Windows CVEs in four months. The queue is now the problem.

FORGE Lab's agentic scanner is finding flaws faster than humans can validate and patch them, and the open-source world is feeling it too.

4 min read
Illustration: a dim office desk at night, a laptop open showing a blurred generic blue corporate login form
Threat Intelligence

China-linked hackers posed as Anthropic staff to phish U.S. AI policy experts

A group tracked as TA419 ran fake-login pages that could capture passwords and the one-time codes meant to stop them.

4 min read
Illustration: a dark server room with rows of blue-lit cloud storage racks
AI Security

Microsoft Pins Azure Wipeout on JadePuffer, the First Agentic Ransomware Crew

Storm-3168's AI-driven agents destroyed more than 100 Azure storage accounts in seven minutes, using a service principal whose credentials had been sitting in a public GitHub issue.

4 min read
Illustration: a dimly lit server room with four identical rack cabinets, each glowing a different colour (red, amber, blue
Ransomware

Microsoft names Storm-2570, the affiliate hopping between Qilin, DragonForce and other ransomware crews

The same intruder, the same toolkit, four different ransom notes. Microsoft says defenders who chase payloads keep missing the person behind them.

3 min read
Illustration: a modern security operations center at night
AI Security

Microsoft merges Sentinel and Defender into one console for AI-era security teams

The new Integrated Security Operations Center bets that human analysts and AI agents need to share the same tools, signals and controls, not bolt them together after the fact.

4 min read
Illustration: a dimly lit modern conference room with a large wall-mounted video conferencing screen displaying an abstract
Identity & Access

EvilTokens: the phishing kit that turned a smart-TV login trick into a mass account raid

Microsoft says a subscription phishing service broke into more than 12,000 mailboxes by abusing the sign-in flow built for printers and conference room screens.

4 min read
Illustration: a small industrial server rack installed inside a working factory floor
AI Security

When the AI Runs on Your Hardware, You Own the Security Problem

Microsoft says customers running AI on their own kit inherit a security job cloud providers used to handle. Here is what that actually means.

4 min read
Illustration: a modern data centre cold aisle at night, blue LED indicator lights reflecting on polished floor
Cloud Security

Microsoft Publishes a Cloud Web App Attack Playbook and Names the Weak Spots Nobody Wants to Own

Microsoft's new threat matrix organises how attackers actually break into cloud-hosted web apps, from forgotten DNS records to Kudu consoles left facing the internet.

4 min read
Illustration: a glowing laptop keyboard at night with a faint holographic key hovering above the enter key
Identity & Access

Attackers Are Logging In, Not Breaking In

AI has cut the time between a stolen password and a full-blown intrusion. The fix isn't another login screen, it's checking the device too.

4 min read
Illustration: a darkened corporate office at night
Identity & Access

Windows 11 domain logins broke this week. Here is what actually happened.

A September 2026 security update quietly started enforcing an identity-protection feature. On the wrong kind of network, it locks staff out.

4 min read
Illustration: a dimly lit modern data centre corridor, rows of server racks glowing faint blue
Cloud Security

Microsoft fixes a perfect-10 flaw in Azure AI Foundry that let strangers take control

A missing authentication check in Microsoft's flagship AI development platform earned the rare CVSS 10.0 rating. Microsoft patched it on its side, but the bug says a lot about how fast AI services are shipping.

4 min read
A Windows 11 desktop with the taskbar positioned on different screen edges in a multi-monitor setup, showing the customizable positioning feature with 1,000 pat
Vulnerabilities

Microsoft's September 2026 Windows 11 update fixes 1,000 flaws and finally lets you move the taskbar

KB5124008 and KB5122880 ship a massive security backlog alongside a taskbar you can drag to any screen edge.

3 min read
A Windows 10 system information window displaying ESU enrollment status and KB5122878 update details, with legacy operating system indicators visible
Vulnerabilities

Microsoft ships final Windows 10 security rollup KB5122878 to ESU customers

The September 2026 update lands alongside a record Patch Tuesday fixing 966 flaws, and reaches only machines enrolled in Extended Security Updates or running the Enterprise LTSC editions.

4 min read
A Windows Update completion screen showing 974 security patches installed, with active exploit alerts visible in background security center notifications
Vulnerabilities

Microsoft's Biggest-Ever Security Update Fixes 974 Flaws, Two Already Used in Attacks

A record-breaking September patch release plugs two security holes that criminals were actively exploiting, plus 20 vulnerabilities serious enough that a single infected machine could spread the attack to others automatically.

3 min read
A Windows settings panel showing privacy controls with age-band categories displayed as adjustable slider options, no personal identification data visible
Policy & Regulation

Windows 11 to Tell Apps If You're a Child or Adult, Without Sharing Your Birthday

Microsoft's new age-awareness APIs return age bands rather than exact dates, and pair with a verify-once system tied to your Microsoft account.

4 min read
© 2026 Threat Vectr