Tag Microsoft

Microsoft Alerts to Increasing APT29 Espionage Campaigns Aiming at International Organizations

On Thursday, Microsoft disclosed that a group of Russian state-sponsored threat actors, linked to a cyber attack on its systems in late November 2023, has been targeting additional organizations. The company is now in the process of notifying affected entities. This announcement follows Hewlett Packard Enterprise’s revelation that it fell…

Read MoreMicrosoft Alerts to Increasing APT29 Espionage Campaigns Aiming at International Organizations

Fraudster Allegedly Made Millions by Hacking Into Executives’ Office365 Inboxes, According to Federal Authorities

Federal prosecutors have charged Robert B. Westbrook, a UK national, for his alleged involvement in a “hack-to-trade” scheme that reportedly generated $3.75 million in illicit stock trades. This operation involved unauthorized access to the Office365 email accounts of various executives at publicly traded companies, allowing Westbrook to acquire confidential quarterly…

Read MoreFraudster Allegedly Made Millions by Hacking Into Executives’ Office365 Inboxes, According to Federal Authorities

New Vulnerabilities in Microsoft macOS Apps Could Enable Hackers to Gain Unrestricted Access

Eight vulnerabilities have recently been discovered in Microsoft applications tailored for macOS, potentially enabling attackers to exploit these weaknesses for elevated privileges and unauthorized access to sensitive user data. This circumvention directly undermines the operating system’s permissions framework, specifically the Transparency, Consent, and Control (TCC) model designed by Apple. Security…

Read MoreNew Vulnerabilities in Microsoft macOS Apps Could Enable Hackers to Gain Unrestricted Access

Microsoft Discovers Serious Vulnerabilities in Rockwell Automation PanelView Plus

Security Flaws Discovered in Rockwell Automation’s PanelView Plus Could Lead to Remote Attacks Recent disclosures have unveiled two critical security vulnerabilities in Rockwell Automation’s PanelView Plus systems, which could potentially allow remote, unauthenticated attackers to execute arbitrary code or trigger denial-of-service (DoS) conditions. This revelation, made by Microsoft security teams,…

Read MoreMicrosoft Discovers Serious Vulnerabilities in Rockwell Automation PanelView Plus

Microsoft and OpenAI Caution Against Nation-State Hackers Exploiting AI for Cyber Attacks

Nation-State Actors Leverage AI for Cyber Attacks Recent investigations reveal that nation-state actors from Russia, North Korea, Iran, and China are increasingly incorporating artificial intelligence (AI) and large language models (LLMs) into their cyber offensive strategies. This alarming trend indicates a significant evolution in the tactics employed by these actors…

Read MoreMicrosoft and OpenAI Caution Against Nation-State Hackers Exploiting AI for Cyber Attacks

Iran and Hezbollah Hackers Initiate Attacks to Shape Israel-Hamas Narrative

Cyber Attacks Linked to Iran and Hezbollah Targeting Israel Amid Ongoing Conflict In the wake of heightened tensions resulting from the Israel-Hamas war, hackers associated with Iran and Hezbollah have orchestrated a range of cyber attacks aimed at undermining public support for Israel. These cyber offensives emerged prominently after October…

Read MoreIran and Hezbollah Hackers Initiate Attacks to Shape Israel-Hamas Narrative

Microsoft’s July Update Addresses 143 Vulnerabilities, Including Two Currently Under Attack

Microsoft has announced the release of security patches addressing a staggering 143 vulnerabilities as part of its latest monthly updates. Among these issues, two have been confirmed to be actively exploited, heightening concerns for organizations relying on Microsoft software. The updates, which categorize five vulnerabilities as Critical, 136 as Important,…

Read MoreMicrosoft’s July Update Addresses 143 Vulnerabilities, Including Two Currently Under Attack

Essential Takeaway from Microsoft’s Password Spray Attack: Ensure Every Account is Secure

In January 2024, Microsoft revealed that it fell victim to a cyberattack attributed to the Russian state-sponsored hacking group known as Midnight Blizzard, or Nobelium. This incident stands out not only due to the reputational ramifications for one of the world’s leading technology companies but also because of the ease…

Read MoreEssential Takeaway from Microsoft’s Password Spray Attack: Ensure Every Account is Secure