Tag

#microsoft

108 stories taggedmicrosoft · page 4 of 8.

A corporate IT dashboard on multiple monitors showing enterprise device management software interface with highlighted security warning indicators and system co
Vulnerabilities

$58 Certificate, Four Flaws: Researchers Show How SCCM Can Hand Attackers the Keys to an Entire Company

A security research team chained four weaknesses in Microsoft's enterprise device-management software to reach full system control, starting with nothing more than a standard company login.

5 min read
A presentation stage at a cybersecurity conference with a speaker addressing an audience, with slides showing exploit code and vulnerability data behind them
AI Security

AI Is Spitting Out Working Exploits for $3.61. Microsoft Says the Old Playbook Is Dead.

A senior Microsoft security chief told Black Hat USA that AI tools have made finding and weaponising software flaws so cheap and fast that the entire industry's approach to defence needs to change, starting now.

5 min read
Illustration: A Windows logo surrounded by cascading code fragments and system error warnings
Vulnerabilities

Windows kernel bug already under attack as Microsoft ships nearly 400 fixes

A flaw in a core Windows networking component is being used in real attacks to hand attackers full control of a machine.

3 min read
A Windows Update installation dialog displaying KB5120249 patch details against a clean, neutral desktop environment with security indicators illuminated
Vulnerabilities

Windows 10 gets its August 2026 security patch: what KB5120249 actually fixes

Microsoft's monthly update fixes silent backup failures and widens the Secure Boot certificate rollout. Install it now.

3 min read
A calendar or timeline showing August 2026 Patch Tuesday with 400 security fixes represented as blocks, three glowing zero-day warnings prominently featured, an
Vulnerabilities

Microsoft's August Patch Tuesday: 400 fixes, three zero-days, and Lazarus back in the frame

Microsoft ships fixes for 400 flaws, including one AFD.sys hole North Korean hackers were already using to plant a kernel rootkit.

4 min read
A server room with rows of blinking rack-mounted equipment, one unit highlighted with a red warning indicator among dozens of others still operating normally, d
Vulnerabilities

Ransomware crews are now breaking into SharePoint servers through a May flaw

CISA says criminals are using CVE-2026-45659 to plant ransomware on unpatched Microsoft SharePoint servers. Over 200 remain exposed online.

4 min read
A collection of device screens—laptop, tablet, smartphone—each displaying a security patch notification downloading simultaneously, with progress bars advancing
Vulnerabilities

Microsoft and Apple Rush Out Patches for Flaws That Let Attackers In Without a Password

Several of the Microsoft bugs score a perfect 10 out of 10 for severity. Apple quietly fixed a flaw that lets someone access your screen without logging in.

3 min read
A SharePoint document repository interface with administrative access logs displayed, showing unauthorized account entries and the scope of exposed federal IT o
Breaches

Swiss federal IT office says SharePoint breach exposed 200 accounts

The BIT breach lines up with the July SharePoint bug wave, though attribution remains open.

3 min read
A conference room with corporate logos from major tech companies on whiteboards, charts showing AI incident data sharing frameworks and security protocols
Policy & Regulation

Cybersecurity Groups Draft 'SAFE' Rules for Sharing AI Incident Data

A coalition of more than 120 companies, including Nvidia, Cisco and Amazon, is asking for public feedback on a proposed framework that would let organisations quietly report AI security failures and share what they learned with everyone else.

4 min read
Illustration: A security researcher at a laptop surrounded by screens displaying code and vulnerability reports
Vulnerabilities

Microsoft Paid Out $20 Million in Bug Bounty Rewards This Year

More than 560 security researchers from 64 countries were paid to find and report software flaws. Not everyone is happy about how the company handled the work.

3 min read
A database server room with rows of glowing server racks, one unit highlighted with a red breach indicator, showing the moment unauthorized access was detected
Cloud Security

Azure Cosmos DB Flaw Let Researchers Reach Any Customer's Database

Wiz says its CosmosEscape exploit chain broke out of a query sandbox and grabbed a master key that unlocked databases across Microsoft's cloud. Microsoft has patched it.

3 min read
Illustration: A Windows 11 desktop showing system notification settings being adjusted
Vulnerabilities

Windows 11 gets a 42-fix preview update with quieter alerts and better voice control

Microsoft's optional KB5101684 preview for Windows 11 24H2 and 25H2 clears up File History backup errors, a DFS drive quirk that scared File Explorer, and a compliance bug that locked new work laptops out of company resources.

4 min read
Cybersecurity operations center with AI-optimized security dashboard displaying attack simulations and vulnerability analysis results, two separate system inter
AI Security

Microsoft Debuts Its First Cybersecurity-Only AI Model Inside MDASH

The company says pairing MAI-Cyber-1-Flash with GPT-5.4 scored 95.95% on CyberGym at half the cost of its previous best setup.

3 min read
Security operations center with multiple AI agent systems working in parallel on vulnerability assessment, each specialized interface showing different attack s
AI Security

Microsoft's New AI Security Service Can Find Bugs, Simulate Attacks and Write Patches, All in Minutes

Project Perception strings together a team of specialised AI agents to do what used to take a room full of security experts. The more interesting story is how Microsoft built it to work without the biggest, most expensive AI models.

4 min read
A conference table surrounded by corporate logos and security tool interfaces displayed on multiple monitors, with interconnected lines showing shared defense f
AI Security

Nvidia Leads 40-Company Coalition to Build Open Security Tools for AI Systems

The Open Secure AI Alliance wants shared, openly inspectable tools to become the standard defence against attacks on artificial intelligence systems, and it is warning regulators that locking down open AI could leave defenders blind.

4 min read
© 2026 Threat Vectr