Tag Microsoft

SolarWinds Hackers Exfiltrated Source Code for Microsoft Azure, Exchange, and Intune

Microsoft Concludes Investigation into SolarWinds Hack: Key Findings Revealed On Thursday, Microsoft announced the completion of its investigation into the SolarWinds cyberattack. The company confirmed that while the attackers were indeed able to exfiltrate source code from its repositories, there is no evidence that they leveraged this breach to access…

Read MoreSolarWinds Hackers Exfiltrated Source Code for Microsoft Azure, Exchange, and Intune

CISA Releases Urgent Directive Regarding Active Microsoft Exchange Vulnerabilities

In a recent cybersecurity development, Microsoft addressed critical zero-day vulnerabilities within its on-premises Exchange Server software through a series of out-of-band patches. Following these updates, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent directive alerting organizations to the “active exploitation” of these vulnerabilities. This warning follows Microsoft’s…

Read MoreCISA Releases Urgent Directive Regarding Active Microsoft Exchange Vulnerabilities

Microsoft Exchange Cyber Attack: Current Insights and Updates

On Friday, Microsoft issued a grave warning regarding the active exploitation of vulnerabilities in unpatched Microsoft Exchange Servers affecting numerous organizations globally. The cyberattack campaigns reportedly compromise tens of thousands of businesses and government bodies across the United States, Europe, and Asia. The company’s security team reported a significant escalation…

Read MoreMicrosoft Exchange Cyber Attack: Current Insights and Updates

250 Million Microsoft Customer Support Records Leaked Online

Microsoft Confirms Data Breach Exposing Customer Support Records Microsoft has recently disclosed a significant security breach that may have put nearly 250 million customer support records at risk. This exposure stems from a misconfigured server, which allowed sensitive logs of interactions between Microsoft’s support team and customers to be publicly…

Read More250 Million Microsoft Customer Support Records Leaked Online

US Border Patrol Conducts Surveillance on Millions of American Drivers

Eight years after a researcher alerted WhatsApp to vulnerabilities allowing mass extraction of user phone numbers, a new investigation from the University of Vienna has confirmed that this issue persists. The researchers employed a technique exploiting WhatsApp’s discovery function, which allows individuals to check if a phone number is registered…

Read MoreUS Border Patrol Conducts Surveillance on Millions of American Drivers

Urgent: Hidden Backdoor Discovered in XZ Utils Library, Affects Major Linux Distributions

Red Hat Issues Urgent Security Alert Following Backdoor Discovery in XZ Utils On Friday, Red Hat issued an urgent security alert, revealing a critical security vulnerability involving two versions of the widely-used data compression library known as XZ Utils, previously LZMA Utils. This vulnerability allows malicious actors to gain unauthorized…

Read MoreUrgent: Hidden Backdoor Discovered in XZ Utils Library, Affects Major Linux Distributions

Hackers Target European Banking Authority in Microsoft Exchange Breach

On Sunday, the European Banking Authority (EBA) reported a cyberattack that compromised its Microsoft Exchange Servers. As a precautionary step, the agency took its email systems offline temporarily. This incident raises significant concerns as it may have allowed unauthorized access to personal data stored in emails. The EBA, located in…

Read MoreHackers Target European Banking Authority in Microsoft Exchange Breach

Vulnerability in XZ Utils for Linux Systems Allows Remote Code Execution

Significant Supply Chain Attack Discovered in XZ Utils, Posing Serious Risks to Linux Users A profound security threat has emerged following the discovery of malicious code inserted into XZ Utils, an open-source library used extensively in numerous major Linux distributions. This vulnerability, identified as CVE-2024-3094 and given a critical CVSS…

Read MoreVulnerability in XZ Utils for Linux Systems Allows Remote Code Execution