microsoft 28
- Microsoft Defender for Endpoint Tests Automatic Isolation of Compromised Hosts to Block Lateral Movement
- Reaper macOS Malware and Two Microsoft Defender Zero-Days Exploited in the Wild
- CISA Adds 7 Known Exploited Vulnerabilities Including Active Microsoft Defender Flaws
- Windows Zero-Day Barrage: YellowKey, GreenPlasma, and MiniPlasma Disclosed Post-Patch Tuesday
- Microsoft Disrupts Fox Tempest Malware-Signing-as-a-Service Platform
- MiniPlasma Windows Zero-Day Grants SYSTEM Privileges on Fully Patched Systems
- Pwn2Own Berlin 2026 Day 2: 15 Zero-Days in Windows 11, Exchange, and RHEL Earn $385K
- Microsoft Edge Will No Longer Load Saved Passwords in Cleartext at Startup
- Microsoft Exchange CVE-2026-42897 Zero-Day Exploited via Crafted Email
- Researcher Drops YellowKey BitLocker Bypass and GreenPlasma Windows EoP Zero-Days
- May 2026 Patch Tuesday: 138 CVEs Including Critical Zero-Click Outlook Flaw CVE-2026-40361
- GhostLock PoC: Legitimate Windows File API Abused to Block Local and SMB File Access
- CloudZ RAT Abuses Windows Phone Link to Steal Credentials and Bypass 2FA
- April Windows 11 Update KB5083769 Breaks Third-Party Backup Software on 24H2 and 25H2
- CISA Adds Actively Exploited ConnectWise ScreenConnect and Windows Flaws to KEV
- Microsoft Patches Entra ID AI Agent Role That Enabled Service Principal Takeover
- Microsoft VibeVoice: MIT-Licensed Speech-to-Text Model with Built-In Speaker Diarization
- Incomplete Windows Patch Exposes Systems to Zero-Click APT28 Attack Vector
- OpenAI and Microsoft Restructure Partnership: AGI Clause Dropped, AWS Sales Unlocked
- Microsoft Rolls Out Entra Passkeys on Windows for Phishing-Resistant Auth in Late April
- Microsoft Defender Zero-Day Exploited to Dump NTLM Hashes and Gain SYSTEM Privileges
- Microsoft Issues Emergency Out-of-Band Patches for Critical ASP.NET Core Privilege Escalation
- Over 1,300 SharePoint Servers Still Exposed to Actively Exploited Spoofing Zero-Day
- Windows Zero-Days Leaked, Now Actively Exploited for SYSTEM Privileges
- April 2026 Patch Tuesday: SharePoint Zero-Day Among 167 CVEs Fixed
- Microsoft Testing OpenClaw-Style Autonomous Agents Inside Microsoft 365 Copilot
- VENOM Phishing-as-a-Service Platform Targets C-Suite Executives' Microsoft Credentials
- Microsoft Suspends Developer Accounts for High-Profile Open Source Projects