Security Awareness
The latest Security Awareness coverage — news, analysis, and updates from the WindowsNews.AI desk.
Messaging Apps as Cyberattack Vectors: Protecting Microsoft 365 Credentials
In an era where remote work and digital communication dominate the corporate landscape, hackers have found a new gateway to infiltrate systems and steal sensitive information: messaging apps....
Russian Hackers Exploit OAuth 2.0 to Compromise Microsoft 365 Accounts in 2025
Introduction In early 2025, cybersecurity researchers uncovered a series of sophisticated attacks orchestrated by Russian-linked threat actors targeting Microsoft 365 accounts. These adversaries...
Exploiting Trust: How Russian Hackers Hijacked Microsoft 365 Accounts via OAuth 2.0 in 2023
Introduction In 2023, cybersecurity researchers uncovered a series of sophisticated attacks orchestrated by Russian state-sponsored hackers targeting Microsoft 365 accounts. These adversaries...
Microsoft Exchange Online's AI Misstep: Adobe Emails Mistakenly Flagged as Spam
Introduction In April 2025, Microsoft Exchange Online experienced a significant issue where its machine learning (ML) models erroneously classified legitimate Adobe emails as spam. This incident...
Understanding the Security Implications of Windows' 'Inetpub' Folder Post-April 2025 Update
Introduction In April 2025, Windows users observed the unexpected creation of an empty 'inetpub' folder on their systems following the latest cumulative update. This development raised questions and...
Safeguarding Remote Support: Preventing Quick Assist Scams in 2023
Introduction In the evolving landscape of cyber threats, remote support tools like Microsoft's Quick Assist have become targets for exploitation. Cybercriminals are increasingly misusing these tools...
Russian Cyber-Espionage Targets Ukrainian NGOs with OAuth Attacks on Microsoft 365
In the ever-evolving landscape of cyber warfare, a disturbing trend has emerged targeting Ukrainian non-governmental organizations (NGOs) through sophisticated OAuth attacks as part of Russian...
Understanding the 'inetpub' Folder and CVE-2025-21204: Navigating Windows' Latest Security Update
Introduction In April 2025, Windows users encountered an unexpected addition to their system drives: a new, empty folder named "inetpub" located at the root of the C: drive. This sudden appearance...
Russian State Hackers Weaponize Microsoft 365 OAuth Tokens in 2023 Campaigns
Introduction In 2023, cybersecurity researchers identified a series of sophisticated cyber attacks orchestrated by Russian state-sponsored actors targeting Microsoft 365 environments. These...
OAuth Phishing in Microsoft 365: A Growing Cybersecurity Threat for Windows Users
In the ever-evolving landscape of cybersecurity, a particularly insidious threat has emerged, targeting the trust users place in familiar platforms like Microsoft 365. Cybercriminals are increasingly...
Russian Hackers Target Microsoft 365: OAuth Exploits and Cybersecurity Threats
In the ever-evolving landscape of cybersecurity, a chilling new threat has emerged targeting Microsoft 365 users worldwide. Russian hackers, often linked to state-sponsored groups, have refined their...
Securing Microsoft 365: Combatting Social Engineering and OAuth Threats in 2023
In an era where digital transformation has become the backbone of business operations, Microsoft 365 stands as a cornerstone for millions of organizations worldwide, powering productivity through...