Skip to main content
← CVE Tracker

Vendor

Microsoft

266 articles

SU
HIGH
Supply Chain

GitHub Supply Chain Disruption: Microsoft Repos Abused to Host Malware

GitHub recently disabled 73 official Microsoft repositories after they were targeted in a massive campaign pushing password-stealing malware to developers.

Runtime Rebel Intel
4 min read · Jun 9, 2026
Miasma Compromises 73 Microsoft GitHub Repos: Incident Analysis
HIGH
Supply Chain

Miasma Compromises 73 Microsoft GitHub Repos: Incident Analysis

Microsoft restores some GitHub repositories after 73 projects were hit by Miasma's supply chain attack to inject information stealers. Learn detection steps.

Runtime Rebel Intel
4 min read · Jun 9, 2026
VS Code Extension Auto-Update Delay: Mitigating Supply Chain Attacks
MEDIUM
Supply Chain

VS Code Extension Auto-Update Delay: Mitigating Supply Chain Attacks

Microsoft introduces a two-hour delay for VS Code extension auto-updates to prevent rapid compromise during software supply chain attacks.

Runtime Rebel Intel
4 min read · Jun 8, 2026
TH
INFO
Threat Intel

Microsoft Intelligent Terminal: AI Integration and Security Risks

An analysis of Microsoft's Intelligent Terminal fork. Explore technical architecture, LLM data privacy risks, and securing AI-integrated terminal environments.

Runtime Rebel Intel
4 min read · Jun 8, 2026
TH
HIGH
Threat Intel

Chinese APT UNC5221 Deploys New Malware for M365 Persistence

Chinese APT UNC5221 leverages new malware, Plenet and AgentPSD, alongside Brickstorm backdoor to maintain persistent access in compromised Microsoft 365 environments for…

Runtime Rebel Intel
5 min read · Jun 5, 2026
OP-512: Analyzing the Custom Web Shell Framework Targeting Microsoft IIS
HIGH
Threat Intel

OP-512: Analyzing the Custom Web Shell Framework Targeting Microsoft IIS

Security researchers have identified OP-512, a China-nexus threat cluster targeting Microsoft IIS servers with a bespoke web shell framework for espionage.

Runtime Rebel Intel
4 min read · Jun 5, 2026
TH
INFO
Threat Intel

Microsoft Rust-Based Coreutils for Windows: Security Analysis

Microsoft is adopting Rust-based Coreutils for Windows, offering a memory-safe alternative to legacy GnuWin32 tools. Learn about the security implications.

Runtime Rebel Intel
3 min read · Jun 4, 2026
HTTP/2 Bomb: Remote DoS Affects NGINX, Apache, and Microsoft IIS
HIGH
Vulnerabilities

HTTP/2 Bomb: Remote DoS Affects NGINX, Apache, and Microsoft IIS

Researchers identify HTTP/2 Bomb vulnerability affecting NGINX, Apache, and IIS default settings, allowing remote denial-of-service attacks on web servers.

Runtime Rebel Intel
4 min read · Jun 3, 2026
TH
INFO
Threat Intel

Microsoft Coreutils for Windows: Security and Memory Safety Analysis

Microsoft introduces native Linux Coreutils for Windows via Rust. Analyze the security impact, memory safety benefits, and potential living-off-the-land risks.

Runtime Rebel Intel
3 min read · Jun 3, 2026
ID
HIGH
Identity & Access

Misconfigured MSAL for Android Exposes Microsoft Account Tokens

A vulnerability in the Microsoft Authentication Library for Android allowed unauthorized apps to intercept OAuth tokens, impacting billions of users.

Runtime Rebel Intel
4 min read · Jun 2, 2026
CL
MEDIUM
Cloud Security

Microsoft Exchange Online Outage: North America and Germany Impacts

Microsoft Exchange Online outage disrupts mail flow in North America and Germany, causing email delays and NDR errors. Learn how to monitor service health.

Runtime Rebel Intel
4 min read · Jun 2, 2026
VU
HIGH
Vulnerabilities

Windows 11 BitLocker Bypass: Nightmare Eclipse Exploit Analysis

Microsoft threatens legal action against researcher Nightmare Eclipse after the release of a Windows 11 BitLocker bypass. Learn how to detect and mitigate.

Runtime Rebel Intel
4 min read · Jun 2, 2026
Microsoft's Zero-Day Disclosure Stance Sparks Industry Debate
MEDIUM
Threat Intel

Microsoft's Zero-Day Disclosure Stance Sparks Industry Debate

Microsoft's legal threats against a researcher for Zero-Day exploit disclosure spark industry backlash, prompting scrutiny of responsible disclosure practices.

Runtime Rebel Intel
4 min read · Jun 2, 2026
CL
MEDIUM
Cloud Security

Microsoft Teams and Office Web File Access Disruptions - Mitigation Guide

Microsoft is investigating a service incident impacting file access in Teams and Office for the web, causing operational delays for global enterprises.

Runtime Rebel Intel
4 min read · Jun 1, 2026
Microsoft Condemns Public Zero-Day Disclosures, Advocates CVD
INFO
Threat Intel

Microsoft Condemns Public Zero-Day Disclosures, Advocates CVD

Microsoft reiterates strong support for Coordinated Vulnerability Disclosure, criticizing immediate public zero-day disclosures after a researcher's account removal.

Runtime Rebel Intel
4 min read · May 28, 2026
VU
INFO
Vulnerabilities

Windows 11 KB5089573: Performance and Reliability Fixes for 24H2/25H2

Microsoft releases KB5089573 preview for Windows 11 24H2 and 25H2, addressing Task Manager bugs, ReFS performance issues, and Sandbox stability errors.

Runtime Rebel Intel
3 min read · May 27, 2026
AI Chatbot Poisoning: Defending Against Malicious Cryptojacking Links
MEDIUM
Threat Intel

AI Chatbot Poisoning: Defending Against Malicious Cryptojacking Links

Microsoft warns of threat actors manipulating AI chatbot recommendations to deliver cryptojacking malware via poisoned web search results.

Runtime Rebel Intel
3 min read · May 27, 2026
CL
INFO
Cloud Security

Anthropic Claude Enterprise Security Governance via 28 Integrations

Anthropic expands Claude’s security posture with 28 integrations from CrowdStrike, Okta, and Microsoft to enhance enterprise AI visibility and governance.

Runtime Rebel Intel
3 min read · May 26, 2026
TH
INFO
Threat Intel

Automated Endpoint Isolation in Microsoft Defender for Endpoint

Microsoft Defender for Endpoint now features automatic device isolation to block lateral movement and contain high-confidence security breaches effectively.

Runtime Rebel Intel
3 min read · May 26, 2026
CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now
HIGH
Vulnerabilities

CVE-2026-45659: SharePoint RCE via Deserialization - Patch Now

Microsoft addresses CVE-2026-45659, a high-severity RCE flaw in SharePoint Server caused by untrusted data deserialization. Learn how to mitigate this risk.

Runtime Rebel Intel
3 min read · May 26, 2026
ID
MEDIUM
Identity & Access

Windows Server 2016 DC Lookup Failures: KB5037763 Mitigation Guide

Microsoft confirms a regression in Windows Server 2016 causing LSASS crashes and domain controller lookup failures after the May 2024 security update.

Runtime Rebel Intel
4 min read · May 26, 2026
SU
HIGH
Supply Chain

TeamPCP Supply Chain Attack Targets Microsoft SDKs and GitHub

TeamPCP expands its supply chain campaign to trojanize official Microsoft Python SDKs and infiltrate GitHub, requiring immediate dependency audits.

Runtime Rebel Intel
3 min read · May 25, 2026
MA
MEDIUM
Malware

Analyzing Microsoft Access VBA Macros for Malware Detection

Learn how threat actors use Microsoft Access .accdb files to execute malicious VBA code and how to analyze these OLE streams for incident response.

Runtime Rebel Intel
3 min read · May 25, 2026
Linux Vulnerabilities and Defender Zero-Days: Weekly Threat Recap
HIGH
Threat Intel

Linux Vulnerabilities and Defender Zero-Days: Weekly Threat Recap

Weekly intelligence recap covering Linux flaws, Microsoft Defender zero-days, router botnets, and supply chain compromises targeting developer toolchains.

Runtime Rebel Intel
3 min read · May 25, 2026