Skip to main content
← CVE Tracker

Vendor

Microsoft

266 articles

Microsoft's Post-Quantum Cryptography Acceleration: A 2029 Shift
INFO
Threat Intel

Microsoft's Post-Quantum Cryptography Acceleration: A 2029 Shift

Microsoft accelerates its post-quantum cryptography (PQC) timeline to 2029, urging security professionals to assess current encryption standards and prepare for…

Runtime Rebel Intel
4 min read · Jul 1, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-33825: BlueHammer Zero-Day in Microsoft Defender Exploited by Ransomware

Analysis of the BlueHammer zero-day, CVE-2026-33825, in Microsoft Defender, actively exploited by ransomware groups. Learn detection and mitigation strategies.

Runtime Rebel Intel
4 min read · Jul 1, 2026
AI Agents Vulnerable to Data Leak via Poisoned MCP Tools
HIGH
Threat Intel

AI Agents Vulnerable to Data Leak via Poisoned MCP Tools

Microsoft warns that malicious tool descriptions for AI agents can lead to stealthy data exfiltration, bypassing security controls by mimicking routine actions.

Runtime Rebel Intel
4 min read · Jul 1, 2026
CL
INFO
Cloud Security

Microsoft Teams Enhances Meeting Security with New Bot Protection Policy

Microsoft introduces a new admin policy for Teams meetings, preventing unapproved third-party bots from joining, mitigating meeting bombing incidents.

Runtime Rebel Intel
5 min read · Jun 30, 2026
TH
HIGH
Threat Intel

Windows BlueHammer Flaw Exploited by Ransomware Gangs — Patch Now

CISA warns that ransomware gangs are now exploiting the BlueHammer privilege escalation vulnerability in Microsoft Defender to bypass security controls.

Runtime Rebel Intel
3 min read · Jun 30, 2026
Microsoft Pulls 119 Malicious StegoAd Edge Extensions
MEDIUM
Malware

Microsoft Pulls 119 Malicious StegoAd Edge Extensions

Microsoft removes 119 Edge extensions linked to the StegoAd campaign, which used steganography in images and fonts to steal credentials and commit ad fraud.

Runtime Rebel Intel
3 min read · Jun 29, 2026
TH
INFO
Threat Intel

Windows 10 ESU Extended to 2027: Security Implications

Microsoft extends free Windows 10 Extended Security Updates (ESU) for consumers until October 2027. Understand the security implications and planning for end-of-life.

Runtime Rebel Intel
4 min read · Jun 25, 2026
MA
HIGH
Malware

Amadey & StealC Malware C2 Infrastructure Disrupted

Microsoft and global allies dismantle the shared C2 infrastructure of Amadey botnet and StealC info-stealer malware, disrupting ongoing cybercrime operations.

Runtime Rebel Intel
4 min read · Jun 24, 2026
MA
HIGH
Malware

Amadey & StealC Malware Operations Disrupted by Operation Endgame

Operation Endgame, led by Europol and Microsoft, has disrupted infrastructure supporting Amadey and StealC info-stealer malware, impacting cybercriminal services.

Runtime Rebel Intel
5 min read · Jun 24, 2026
TH
INFO
Threat Intel

Windows 11 KB5095093: New Point-in-Time Restore and Bug Fixes

Microsoft releases KB5095093 for Windows 11 24H2, introducing a critical Point-in-Time restore feature and addressing multiple system-level bugs.

Runtime Rebel Intel
3 min read · Jun 23, 2026
VU
HIGH
Vulnerabilities

Microsoft AutoGen Studio RCE via AutoJack Flaw — Patch Now

Microsoft patched the AutoJack vulnerability chain in AutoGen Studio, enabling remote code execution through malicious AI agent manipulation.

Runtime Rebel Intel
4 min read · Jun 22, 2026
SU
HIGH
Supply Chain

North Korean Sapphire Sleet Compromises 140+ Mastra AI npm Packages

Microsoft attributes the Mastra AI supply chain attack to Sapphire Sleet (BlueNoroff), involving 140+ malicious npm packages targeting AI developers.

Runtime Rebel Intel
3 min read · Jun 20, 2026
AutoJack: AI Browsing Agents Hijacked for Host RCE via Web Pages
HIGH
Vulnerabilities

AutoJack: AI Browsing Agents Hijacked for Host RCE via Web Pages

Microsoft researchers reveal AutoJack, a novel exploit chain where malicious web pages hijack AI browsing agents to achieve remote code execution on host systems.

Runtime Rebel Intel
4 min read · Jun 19, 2026
TH
HIGH
Threat Intel

ClickOnce Abuse for Malware Delivery: Understanding the Threat

Explores the new abuse of Microsoft ClickOnce technology for stealthy malware delivery, enabling attackers to bypass traditional security measures and execute malicious…

Runtime Rebel Intel
5 min read · Jun 19, 2026
TH
MEDIUM
Threat Intel

Defending Against ClickOnce Abuse for Persistence and Initial Access

Learn how adversaries abuse Microsoft ClickOnce for stealthy persistence and how to secure Windows environments against malicious deployment manifests.

Runtime Rebel Intel
3 min read · Jun 19, 2026
TH
LOW
Threat Intel

Microsoft Office Launch Issues After June Windows Updates

Microsoft confirms issues preventing third-party applications from launching Office apps or opening documents on Windows systems after recent June updates.

Runtime Rebel Intel
4 min read · Jun 17, 2026
Microsoft Copilot 'SearchLeak' Attack: AI Prompt Injection Data Theft
HIGH
Vulnerabilities

Microsoft Copilot 'SearchLeak' Attack: AI Prompt Injection Data Theft

Analysis of the critical Microsoft Copilot 'SearchLeak' attack. Learn how prompt injection allowed 1-click data theft and crucial defense strategies for AI applications.

Runtime Rebel Intel
5 min read · Jun 16, 2026
ScarCruft Deploys NarwhalRAT via Fake Microsoft Security Alerts
HIGH
Threat Intel

ScarCruft Deploys NarwhalRAT via Fake Microsoft Security Alerts

North Korean threat actor ScarCruft (APT37) is deploying NarwhalRAT via spear-phishing emails that mimic official Microsoft Account security notifications.

Runtime Rebel Intel
4 min read · Jun 16, 2026
Microsoft 365 Copilot SearchLeak: One-Click Data Exfiltration
HIGH
Vulnerabilities

Microsoft 365 Copilot SearchLeak: One-Click Data Exfiltration

Varonis Threat Labs uncovered 'SearchLeak', a one-click flaw in Microsoft 365 Copilot Enterprise Search allowing exfiltration of emails, files, and MFA codes.

Runtime Rebel Intel
5 min read · Jun 15, 2026
TH
INFO
Threat Intel

Microsoft Resolves Windows Update Failures with WUSA via Network Share

Microsoft has fixed an issue causing Windows updates released since May 2024 to fail when installed via the WUSA installer from a network share.

Runtime Rebel Intel
4 min read · Jun 12, 2026
VU
HIGH
Vulnerabilities

June 2026 Patch Tuesday: Microsoft Fixes 200 Flaws — Patch Now

Microsoft’s June 2026 Patch Tuesday addresses a record-breaking 200 vulnerabilities, including 36 critical flaws and several with public exploit code.

Runtime Rebel Intel
3 min read · Jun 11, 2026
VU
MEDIUM
Vulnerabilities

Windows Server 2025 BitLocker Recovery Bug: Mitigation Guide

Microsoft resolves a Windows Server 2025 bug causing systems to boot into BitLocker recovery modes following recent security updates. Patching guidance inside.

Runtime Rebel Intel
3 min read · Jun 11, 2026
VU
HIGH
Vulnerabilities

Microsoft Patch Tuesday: 200 Vulnerabilities Addressed

Microsoft addressed 200 vulnerabilities in its latest Patch Tuesday, including three publicly disclosed flaws. Prompt patching is essential for defense.

Runtime Rebel Intel
4 min read · Jun 10, 2026
VU
CRITICAL
Vulnerabilities

Microsoft Defender 'RoguePlanet' Zero-Day Grants SYSTEM Privileges

Analysis of 'RoguePlanet' zero-day in Microsoft Defender allowing local privilege escalation to SYSTEM, its impact, and critical patch guidance.

Runtime Rebel Intel
4 min read · Jun 10, 2026