Security News

Microsoft isn't fixing 8-year-old shortcut exploit abused for spying
2025-03-18 15:13

'Only' a local access bug but important part of N Korea, Russia, and China attack picture An exploitation avenue found by Trend Micro has been used in an eight-year-long spying campaign, but...

Microsoft Warns of StilachiRAT: A Stealthy RAT Targeting Credentials and Crypto Wallets
2025-03-18 07:00

Microsoft is calling attention to a novel remote access trojan (RAT) named StilachiRAT that it said employs advanced techniques to sidestep detection and persist within target environments with an...

Microsoft: New RAT malware used for crypto theft, reconnaissance
2025-03-17 18:59

​Microsoft has discovered a new remote access trojan (RAT) that employs "sophisticated techniques" to avoid detection, ensure persistence, and extract sensitive information data. [...]

Microsoft: March Windows updates mistakenly uninstall Copilot
2025-03-17 13:39

​Microsoft says the March 2025 Windows cumulative updates automatically and mistakenly remove the AI-powered Copilot digital assistant from some Windows 10 and Windows 11 systems. [...]

Microsoft wouldn't look at a bug report without a video. Researcher maliciously complied
2025-03-17 09:30

Maddening techno loop, Zoolander reference, and 14 minutes of time wasted A vulnerability analyst and prominent member of the infosec industry has blasted Microsoft for refusing to look at a bug...

Malicious Adobe, DocuSign OAuth apps target Microsoft 365 accounts
2025-03-16 14:19

Cybercriminals are promoting malicious Microsoft OAuth apps that masquerade as Adobe and DocuSign apps to deliver malware and steal Microsoft 365 accounts credentials. [...]

Microsoft apologizes for removing VSCode extensions used by millions
2025-03-13 20:53

Microsoft has reinstated the 'Material Theme - Free' and 'Material Theme Icons - Free' extensions on the Visual Studio Marketplace after finding that the obfuscated code they contained wasn't...

Microsoft says button to restore classic Outlook is broken
2025-03-13 17:51

​Microsoft is investigating a known issue that causes the new Outlook email client to crash when users click the "Go to classic Outlook" button, which should help them switch back to the classic...

Microsoft Warns of ClickFix Phishing Campaign Targeting Hospitality Sector via Fake Booking[.]com Emails
2025-03-13 15:26

Microsoft has shed light on an ongoing phishing campaign that targeted the hospitality sector by impersonating online travel agency Booking.com using an increasingly popular social engineering...

Patch Tuesday: Microsoft Fixes 57 Security Flaws – Including Active Zero-Days
2025-03-12 19:02

Microsoft's March 2025 Patch Tuesday includes six actively exploited zero-day vulnerabilities. Learn about the critical vulnerabilities and why immediate updates are essential.