Tag Microsoft

Microsoft Exchange Cyber Attack: Current Insights and Updates

On Friday, Microsoft issued a grave warning regarding the active exploitation of vulnerabilities in unpatched Microsoft Exchange Servers affecting numerous organizations globally. The cyberattack campaigns reportedly compromise tens of thousands of businesses and government bodies across the United States, Europe, and Asia. The company’s security team reported a significant escalation…

Read MoreMicrosoft Exchange Cyber Attack: Current Insights and Updates

250 Million Microsoft Customer Support Records Leaked Online

Microsoft Confirms Data Breach Exposing Customer Support Records Microsoft has recently disclosed a significant security breach that may have put nearly 250 million customer support records at risk. This exposure stems from a misconfigured server, which allowed sensitive logs of interactions between Microsoft’s support team and customers to be publicly…

Read More250 Million Microsoft Customer Support Records Leaked Online

US Border Patrol Conducts Surveillance on Millions of American Drivers

Eight years after a researcher alerted WhatsApp to vulnerabilities allowing mass extraction of user phone numbers, a new investigation from the University of Vienna has confirmed that this issue persists. The researchers employed a technique exploiting WhatsApp’s discovery function, which allows individuals to check if a phone number is registered…

Read MoreUS Border Patrol Conducts Surveillance on Millions of American Drivers

Urgent: Hidden Backdoor Discovered in XZ Utils Library, Affects Major Linux Distributions

Red Hat Issues Urgent Security Alert Following Backdoor Discovery in XZ Utils On Friday, Red Hat issued an urgent security alert, revealing a critical security vulnerability involving two versions of the widely-used data compression library known as XZ Utils, previously LZMA Utils. This vulnerability allows malicious actors to gain unauthorized…

Read MoreUrgent: Hidden Backdoor Discovered in XZ Utils Library, Affects Major Linux Distributions

Hackers Target European Banking Authority in Microsoft Exchange Breach

On Sunday, the European Banking Authority (EBA) reported a cyberattack that compromised its Microsoft Exchange Servers. As a precautionary step, the agency took its email systems offline temporarily. This incident raises significant concerns as it may have allowed unauthorized access to personal data stored in emails. The EBA, located in…

Read MoreHackers Target European Banking Authority in Microsoft Exchange Breach

Vulnerability in XZ Utils for Linux Systems Allows Remote Code Execution

Significant Supply Chain Attack Discovered in XZ Utils, Posing Serious Risks to Linux Users A profound security threat has emerged following the discovery of malicious code inserted into XZ Utils, an open-source library used extensively in numerous major Linux distributions. This vulnerability, identified as CVE-2024-3094 and given a critical CVSS…

Read MoreVulnerability in XZ Utils for Linux Systems Allows Remote Code Execution

SolarWinds Breach: New Evidence Points to Possible Connections with Chinese Hackers

Recent investigations have linked a malicious web shell deployed on Windows systems to a possible Chinese cyber threat group, following the exploitation of an undisclosed zero-day vulnerability in SolarWinds’ Orion network monitoring software. The cybersecurity firm Secureworks reported that this breach involved a web shell referred to as Supernova, which…

Read MoreSolarWinds Breach: New Evidence Points to Possible Connections with Chinese Hackers

$5 Million Settlement Reached in Geisinger Health and Nuance Insider Breach Case

Governance & Risk Management, Healthcare, Industry Specific Settlement Approved in Class Action Linked to Former Employee’s Data Breach Marianne Kolbasuk McGee (HealthInfoSec) • November 20, 2025 A federal court has granted preliminary approval for a $5 million settlement in a breach lawsuit involving a former Nuance employee and Geisinger Health.…

Read More$5 Million Settlement Reached in Geisinger Health and Nuance Insider Breach Case

Utilize Microsoft’s One-Click Tool to Safeguard Against Exchange Attacks

On Monday, Microsoft announced the rollout of a new one-click mitigation software aimed at shielding susceptible environments from the ongoing ProxyLogon cyberattacks targeting Exchange Servers. This tool, known as the Exchange On-premises Mitigation Tool (EOMT), employs PowerShell to implement necessary countermeasures against known vulnerabilities, specifically CVE-2021-26855. It also conducts scans…

Read MoreUtilize Microsoft’s One-Click Tool to Safeguard Against Exchange Attacks