Identity Security
The latest Identity Security coverage — news, analysis, and updates from the WindowsNews.AI desk.
Patch Now: June 2025’s Most Critical CVEs Threatening Your Network
June 2025 has emerged as a pivotal month for cybersecurity, with threat actors actively exploiting newly disclosed vulnerabilities across enterprise systems. The Cybersecurity and Infrastructure...
Microsoft 365 Security Strategies Every Small Business Must Implement in 2025
In today's digital landscape, small businesses leveraging Microsoft 365 face an evolving array of cyber threats that demand proactive security measures. What was once considered an IT afterthought...
Buenos Aires Court Debuts Blockchain IDs via Microsoft Entra to End Paper Credential Fraud
The Supreme Court of Buenos Aires (SCBA) has taken a groundbreaking step in 2024 by implementing a digital identity system to revolutionize credentialing for its vast judicial network. As one of...
nOAuth Vulnerability in Microsoft Entra: Critical Risks & Security Fixes
Microsoft's Entra ID (formerly Azure AD) has become the backbone of enterprise cloud security, but the discovery of the nOAuth vulnerability exposes critical gaps in its authentication framework....
nOAuth Vulnerability: How 15,000+ SaaS Apps Are at Risk and What Enterprises Must Do Now
A critical authentication flaw in Microsoft’s Entra ID (formerly Azure Active Directory) has exposed over 15,000 SaaS applications to potential exploitation, raising alarms across the cybersecurity...
Microsoft Defender for Identity Enhances Security with Domain-Based Scoping for Active Directory
Microsoft Defender for Identity has introduced domain-based scoping for Active Directory (AD), a powerful new feature designed to streamline security operations and enhance threat detection in hybrid...
Microsoft 365 Security Overhaul: Phasing Out Legacy File Access Methods in 2025
Microsoft is taking a significant step toward bolstering its Microsoft 365 security framework by deprecating outdated file access methods starting mid-July 2025. This move, part of the company's...
Golden SAML Attacks: Detection and Prevention Strategies for Enterprise Security
In the shadowy landscape of cybersecurity, most organizations wrestle with threats as old as the internet itself: brute-forced passwords, relentless phishing campaigns, and credential stuffing...
How TeamFiltration Protects Microsoft Entra ID from AI-Powered Cloud Identity Attacks
The cybersecurity landscape is witnessing a dangerous evolution as AI-driven attacks increasingly target Microsoft Entra ID (formerly Azure Active Directory), putting organizations at unprecedented...
Microsoft Entra ID Password Spraying: How to Protect Your Accounts Now
Microsoft Entra ID users are under siege from a massive password spraying campaign, marking one of the most aggressive credential-based attacks in recent history. This sophisticated threat targets...
Microsoft Defender & Okta Integration: Next-Gen Cloud Identity Security Explained
As enterprises accelerate cloud adoption and support hybrid workforces, identity has emerged as the primary attack surface in modern cybersecurity. Microsoft Defender for Identity's integration with...
UNK_SneakyStrike: How Hackers Weaponize Cloud Security Tools to Breach 80,000+ Accounts
A sophisticated cyberattack campaign dubbed UNK_SneakyStrike has exposed a chilling new trend in cloud security breaches—hackers are now weaponizing legitimate penetration testing tools and cloud...