Advanced persistent threat actors increasingly target Microsoft Exchange inbox rules to maintain persistence and siphon sensitive data without raising alarms.
The newly released Inboxfuscation...
A recent disclosure by security researcher Dirk-Jan Mollema has revealed CVE-2025-55241, a catastrophic flaw in Microsoft’s Actor token validation that allowed a single token,...
A critical security vulnerability in Microsoft's OneDrive auto-sync feature is silently exposing enterprise secrets at scale, according to new research from Entro Labs.
The...
Microsoft’s September 2025 security update addresses four elevation-of-privilege flaws in the Windows Defender Firewall service, each rated Important in severity.
Detailed in the September...
A sophisticated malware campaign has recently been uncovered that leverages Microsoft’s Azure Functions to host its command-and-control (C2) infrastructure, presenting a novel challenge for...