Skip to main content
← All Articles

Tag

#Microsoft

95 articles

Advertisement

HIGH
Malware

Amadey & StealC Malware C2 Infrastructure Disrupted

Microsoft and global allies dismantle the shared C2 infrastructure of Amadey botnet and StealC info-stealer malware, disrupting ongoing cybercrime operations.

Runtime Rebel Intel
4 min read · Jun 24, 2026
HIGH
Vulnerabilities

Microsoft AutoGen Studio RCE via AutoJack Flaw — Patch Now

Microsoft patched the AutoJack vulnerability chain in AutoGen Studio, enabling remote code execution through malicious AI agent manipulation.

Runtime Rebel Intel
4 min read · Jun 22, 2026
INFO
Threat Intel

Microsoft Resolves Windows Update Failures with WUSA via Network Share

Microsoft has fixed an issue causing Windows updates released since May 2024 to fail when installed via the WUSA installer from a network share.

Runtime Rebel Intel
4 min read · Jun 12, 2026
HIGH
Vulnerabilities

June 2026 Patch Tuesday: Microsoft Fixes 200 Flaws — Patch Now

Microsoft’s June 2026 Patch Tuesday addresses a record-breaking 200 vulnerabilities, including 36 critical flaws and several with public exploit code.

Runtime Rebel Intel
3 min read · Jun 11, 2026
MEDIUM
Vulnerabilities

Windows Server 2025 BitLocker Recovery Bug: Mitigation Guide

Microsoft resolves a Windows Server 2025 bug causing systems to boot into BitLocker recovery modes following recent security updates. Patching guidance inside.

Runtime Rebel Intel
3 min read · Jun 11, 2026
HIGH
Supply Chain

GitHub Supply Chain Disruption: Microsoft Repos Abused to Host Malware

GitHub recently disabled 73 official Microsoft repositories after they were targeted in a massive campaign pushing password-stealing malware to developers.

Runtime Rebel Intel
4 min read · Jun 9, 2026

Advertisement

Miasma Compromises 73 Microsoft GitHub Repos: Incident Analysis
HIGH
Supply Chain

Miasma Compromises 73 Microsoft GitHub Repos: Incident Analysis

Microsoft restores some GitHub repositories after 73 projects were hit by Miasma's supply chain attack to inject information stealers. Learn detection steps.

Runtime Rebel Intel
4 min read · Jun 9, 2026
VS Code Extension Auto-Update Delay: Mitigating Supply Chain Attacks
MEDIUM
Supply Chain

VS Code Extension Auto-Update Delay: Mitigating Supply Chain Attacks

Microsoft introduces a two-hour delay for VS Code extension auto-updates to prevent rapid compromise during software supply chain attacks.

Runtime Rebel Intel
4 min read · Jun 8, 2026
INFO
Threat Intel

Microsoft Intelligent Terminal: AI Integration and Security Risks

An analysis of Microsoft's Intelligent Terminal fork. Explore technical architecture, LLM data privacy risks, and securing AI-integrated terminal environments.

Runtime Rebel Intel
4 min read · Jun 8, 2026
INFO
Threat Intel

Microsoft Rust-Based Coreutils for Windows: Security Analysis

Microsoft is adopting Rust-based Coreutils for Windows, offering a memory-safe alternative to legacy GnuWin32 tools. Learn about the security implications.

Runtime Rebel Intel
3 min read · Jun 4, 2026
INFO
Threat Intel

Microsoft Coreutils for Windows: Security and Memory Safety Analysis

Microsoft introduces native Linux Coreutils for Windows via Rust. Analyze the security impact, memory safety benefits, and potential living-off-the-land risks.

Runtime Rebel Intel
3 min read · Jun 3, 2026
HIGH
Identity & Access

Misconfigured MSAL for Android Exposes Microsoft Account Tokens

A vulnerability in the Microsoft Authentication Library for Android allowed unauthorized apps to intercept OAuth tokens, impacting billions of users.

Runtime Rebel Intel
4 min read · Jun 2, 2026
Microsoft's Zero-Day Disclosure Stance Sparks Industry Debate
MEDIUM
Threat Intel

Microsoft's Zero-Day Disclosure Stance Sparks Industry Debate

Microsoft's legal threats against a researcher for Zero-Day exploit disclosure spark industry backlash, prompting scrutiny of responsible disclosure practices.

Runtime Rebel Intel
4 min read · Jun 2, 2026
CRITICAL
Vulnerabilities

CVE-2020-1472: How Attackers Exploit Windows Netlogon RCE — Patch Now

Threat actors are actively exploiting Zerologon (CVE-2020-1472), a critical Windows Netlogon RCE vulnerability that allows for full domain takeover.

Runtime Rebel Intel
4 min read · Jun 1, 2026
Microsoft Condemns Public Zero-Day Disclosures, Advocates CVD
INFO
Threat Intel

Microsoft Condemns Public Zero-Day Disclosures, Advocates CVD

Microsoft reiterates strong support for Coordinated Vulnerability Disclosure, criticizing immediate public zero-day disclosures after a researcher's account removal.

Runtime Rebel Intel
4 min read · May 28, 2026
INFO
Vulnerabilities

Windows 11 KB5089573: Performance and Reliability Fixes for 24H2/25H2

Microsoft releases KB5089573 preview for Windows 11 24H2 and 25H2, addressing Task Manager bugs, ReFS performance issues, and Sandbox stability errors.

Runtime Rebel Intel
3 min read · May 27, 2026
CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now
HIGH
Vulnerabilities

CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now

Microsoft addresses CVE-2026-45659, a high-severity RCE flaw in SharePoint Server caused by untrusted data deserialization. Learn how to mitigate this risk.

Runtime Rebel Intel
3 min read · May 26, 2026
HIGH
Vulnerabilities

YellowKey BitLocker Bypass: Microsoft Mitigates Data Access

Microsoft addresses the 'YellowKey' BitLocker bypass, preventing unauthorized data access via the FsTx Auto Recovery Utility in WinRE. Understand the threat.

Runtime Rebel Intel
5 min read · May 20, 2026
HIGH
Vulnerabilities

YellowKey Zero-Day: Mitigating BitLocker Encryption Bypasses in Windows

Microsoft releases mitigation guidance for the YellowKey zero-day, a Windows BitLocker vulnerability allowing unauthorized access to encrypted data volumes.

Runtime Rebel Intel
3 min read · May 20, 2026
HIGH
Threat Intel

Microsoft Disrupts MSaaS Operation Abusing Artifact Signing Service

Microsoft shuts down a malware-signing-as-a-service provider that leveraged fraudulent certificates to bypass security controls for ransomware groups.

Runtime Rebel Intel
3 min read · May 20, 2026
INFO
Threat Intel

Microsoft's 2026 Plan: Enhancing Windows 11 Driver Quality and Security

Microsoft outlines plans for 2026 to significantly enhance Windows 11 driver quality, aiming to bolster system stability and security from the core up.

Runtime Rebel Intel
4 min read · May 19, 2026
HIGH
Threat Intel

Windows Update Failures in Restricted Networks via January 2025 Patch

Microsoft confirms January 2025 non-security updates cause Windows Update failures in restricted networks. Learn how to resolve metadata service connection errors.

Runtime Rebel Intel
3 min read · May 19, 2026
MEDIUM
Cloud Security

Azure Backup for AKS Vulnerability: Risks of Silent Patches

A reported Azure Backup for AKS vulnerability allowed potential cluster compromise. Learn why Microsoft rejected the report and the impact of silent fixes.

Runtime Rebel Intel
3 min read · May 17, 2026
INFO
Supply Chain

Microsoft Introduces Remote Rollback for Faulty Windows Drivers

Microsoft expands its Known Issue Rollback capability to Windows drivers, allowing remote remediation of faulty updates that cause boot loops or crashes.

Runtime Rebel Intel
4 min read · May 15, 2026