Security News

New Flaws in Microsoft macOS Apps Could Allow Hackers to Gain Unrestricted Access
2024-09-03 04:01

Eight vulnerabilities have been uncovered in Microsoft applications for macOS that an adversary could exploit to gain elevated privileges or access sensitive data by circumventing the operating...

Microsoft is trying to reduce Windows 11's desktop spotlight clutter
2024-08-30 20:03

Windows 11's Spotlight feature is a pretty nice way to jazz up your desktop background with different wallpapers and fun facts when you hover over the image icon, but it takes up a lot of space....

Threat Actors Exploit Microsoft Sway to Host QR Code Phishing Campaigns
2024-08-29 20:42

Threat actors are abusing Microsoft Sway to host QR Code phishing campaigns.

Microsoft hosts a security summit but no press, public allowed
2024-08-28 22:20

CrowdStrike, other vendors, friendly govt reps…but not anyone would can tell you what happened op-ed Microsoft will host a security summit next month with CrowdStrike and other "key" endpoint...

From Copilot to Copirate: How data thieves could hijack Microsoft's chatbot
2024-08-28 13:05

Prompt injection, ASCII smuggling, and other swashbuckling attacks on the horizon Microsoft has fixed flaws in Copilot that allowed attackers to steal users' emails and other personal data by...

New QR Code Phishing Campaign Exploits Microsoft Sway to Steal Credentials
2024-08-28 06:49

Cybersecurity researchers are calling attention to a new QR code phishing (aka quishing) campaign that leverages Microsoft Sway infrastructure to host fake pages, once again highlighting the abuse...

Microsoft security tools questioned for treating employees as threats
2024-08-27 14:00

Cracked Labs examines how workplace surveillance turns workers into suspects Software designed to address legitimate business concerns about cyber security and compliance treats employees as...

Microsoft Sway abused in massive QR code phishing campaign
2024-08-27 14:00

​A massive QR code phishing campaign abused Microsoft Sway, a cloud-based tool for creating online presentations, to host landing pages to trick Microsoft 365 users into handing over their...

Microsoft Fixes ASCII Smuggling Flaw That Enabled Data Theft from Microsoft 365 Copilot
2024-08-27 06:09

Details have emerged about a now-patched vulnerability in Microsoft 365 Copilot that could enable the theft of sensitive user information using a technique called ASCII smuggling. "ASCII Smuggling...

Microsoft mistake blows up admins' inboxes with fake malware alerts
2024-08-26 19:45

Legitimate emails misclassified in software snafu Many administrators have had a trying Monday after getting spammed out with false malware reports by Microsoft.…