Live
Microsoft’s July 2026 SharePoint Update Blocks Spoofing Attacks That Exploit Low-Privilege Accounts·MSFT +2.1%How Attackers Are Using Microsoft’s Own Login Page to Hijack Your 365 Account·NVDA +0.2%July SharePoint Patches Close Spoofing Hole: Here’s Why You Can’t Skip the Workflow Manager Update First·GOOGL +1.7%Windows 11 Gaming Performance on Steam Machine Matches SteamOS in Early Tests, but Caveats Abound·AMZN +1.1%Windows 11’s new recovery tools can fix boot failures and bad updates without a reset — your complete field guide·MSFT +2.1%Microsoft Fixes Excel Data Exposure Flaw—Update Now to Prevent Information Leaks·NVDA +0.2%Why a Vulnerability Disclosure Policy Isn't Enough: CISA and NSA Demand Full Programs·GOOGL +1.7%Patch Now: Microsoft Office Vulnerability CVE-2026-55018 Lets Attackers Run Code via Malicious Files·AMZN +1.1%Microsoft’s July 2026 SharePoint Update Blocks Spoofing Attacks That Exploit Low-Privilege Accounts·MSFT +2.1%How Attackers Are Using Microsoft’s Own Login Page to Hijack Your 365 Account·NVDA +0.2%July SharePoint Patches Close Spoofing Hole: Here’s Why You Can’t Skip the Workflow Manager Update First·GOOGL +1.7%Windows 11 Gaming Performance on Steam Machine Matches SteamOS in Early Tests, but Caveats Abound·AMZN +1.1%Windows 11’s new recovery tools can fix boot failures and bad updates without a reset — your complete field guide·MSFT +2.1%Microsoft Fixes Excel Data Exposure Flaw—Update Now to Prevent Information Leaks·NVDA +0.2%Why a Vulnerability Disclosure Policy Isn't Enough: CISA and NSA Demand Full Programs·GOOGL +1.7%Patch Now: Microsoft Office Vulnerability CVE-2026-55018 Lets Attackers Run Code via Malicious Files·AMZN +1.1%
Cve 2026 55021 · Microsoft Patches

Microsoft’s July 2026 SharePoint Update Blocks Spoofing Attacks That Exploit Low-Privilege Accounts

Microsoft’s July 2026 security updates, released on Patch Tuesday, deliver a critical fix for a SharePoint Server vulnerability that lets attackers with any authenticated account inject malicious...

SE Security Desk·1w ago
Conditional Access · Entra Id

How Attackers Are Using Microsoft’s Own Login Page to Hijack Your 365 Account

A new phishing toolkit can break into Microsoft 365 accounts without stealing a single password, and it does so by exploiting a legitimate Microsoft sign-in workflow. The attack, detailed in research...

SE Security Desk·1w ago
Cve-2026-55020 · Microsoft Patches

July SharePoint Patches Close Spoofing Hole: Here’s Why You Can’t Skip the Workflow Manager Update First

Microsoft fixed a spoofing vulnerability in its on-premises SharePoint servers on July 14, 2026. The patch lands for SharePoint Server 2016, 2019, and Subscription Edition under CVE-2026-55020. But...

SE Security Desk·1w ago
Gaming Benchmarks · Steam Machine

Windows 11 Gaming Performance on Steam Machine Matches SteamOS in Early Tests, but Caveats Abound

Valve’s newly released Windows drivers for its 2026 Steam Machine have prompted a fresh wave of benchmarking, and the numbers are in: Windows 11 holds its own against the custom-tuned SteamOS....

WN WindowsNews Desk·1w ago
Bitlocker · System Recovery

Windows 11’s new recovery tools can fix boot failures and bad updates without a reset — your complete field guide

Microsoft has quietly assembled the most comprehensive repair toolkit in Windows history. The latest Windows 11 releases—headlined by version 24H2 and beyond—now pack over a dozen recovery...

WN WindowsNews Desk·1w ago
Cve 2026 55046 · Microsoft Excel

Microsoft Fixes Excel Data Exposure Flaw—Update Now to Prevent Information Leaks

On July 14, 2026, Microsoft released a security update for Microsoft Excel that patches a vulnerability capable of silently leaking sensitive data from your spreadsheets. The flaw, identified as...

SE Security Desk·1w ago
Cisa · Nsa

Why a Vulnerability Disclosure Policy Isn't Enough: CISA and NSA Demand Full Programs

On July 15, CISA, the National Security Agency, and international cybersecurity partners released joint guidance pushing software makers to move beyond superficial vulnerability disclosure policies...

SE Security Desk·1w ago
Cve 2026 55018 · Microsoft Office

Patch Now: Microsoft Office Vulnerability CVE-2026-55018 Lets Attackers Run Code via Malicious Files

{ "title": "Patch Now: Microsoft Office Vulnerability CVE-2026-55018 Lets Attackers Run Code via Malicious Files", "content": "Microsoft on July 14, 2026, released security updates that patch a...

SE Security Desk·1w ago
Cross-site Scripting · Cve 2026 55019

Microsoft Patches SharePoint Server Spoofing Bug That Could Let Attackers Impersonate Trusted Content

On July 14, 2026, Microsoft shipped its monthly security updates for SharePoint Server, and tucked inside is a fix for a cross-site scripting (XSS) vulnerability that could let an attacker with...

SE Security Desk·1w ago
Cve 2026 50408 · Microsoft Excel

Excel Memory-Disclosure Vulnerability Patched in Microsoft’s July 2026 Updates

On July 14, 2026, Microsoft pushed out security fixes for Office that plug a memory-disclosure vulnerability in Excel. Tracked as CVE-2026-50408, the flaw can expose sensitive data from the...

SE Security Desk·1w ago
Microsoft Excel · Office Security

Microsoft: Apply July 2026 Excel Patches Now to Block New Remote Code Execution Attacks

Microsoft has released security updates for Microsoft Excel that close a high-severity vulnerability allowing attackers to run malicious code on a victim's PC simply by persuading them to open a...

SE Security Desk·1w ago
Cve 2026 55016 · Microsoft Patches

Microsoft Patches SharePoint XSS Spoofing Flaw in July 2026 Update – Here’s How to Secure Your Farm

Microsoft released fixes on July 14, 2026, for a cross-site scripting (XSS) vulnerability in on-premises SharePoint Server that could let an authenticated attacker place deceptive content on pages...

SE Security Desk·1w ago