Live
CVE-2025-55243: OfficePlus Spoofing Flaw Exposes Data, Bypasses Scanners·MSFT +0.1%Microsoft Slaps 100-Recipient Daily Limit on onmicrosoft.com Outbound Email to Thwart Spammers·NVDA +3.0%Microsoft Caps onmicrosoft.com Emails at 100 External Recipients Per Day — Enforcement Starts October 15·GOOGL +1.2%Microsoft Drops Limited Details on CVE-2025-25006 Exchange Spoofing Bug—Here’s How to Protect Your Network·AMZN +2.9%The Phishing Pipeline: How Attackers Weaponize Microsoft 365 Direct Send to Evade Every Defense·MSFT +0.1%Exploiting Microsoft 365 Direct Send: A Rising Internal Phishing Threat and How to Mitigate It·NVDA +3.0%Microsoft 365 Direct Send Exploited for Advanced Phishing Attacks in 2025·GOOGL +1.2%Microsoft 365 'Direct Send' Exploited in Sophisticated Phishing Attacks: What You Need to Know·AMZN +2.9%CVE-2025-55243: OfficePlus Spoofing Flaw Exposes Data, Bypasses Scanners·MSFT +0.1%Microsoft Slaps 100-Recipient Daily Limit on onmicrosoft.com Outbound Email to Thwart Spammers·NVDA +3.0%Microsoft Caps onmicrosoft.com Emails at 100 External Recipients Per Day — Enforcement Starts October 15·GOOGL +1.2%Microsoft Drops Limited Details on CVE-2025-25006 Exchange Spoofing Bug—Here’s How to Protect Your Network·AMZN +2.9%The Phishing Pipeline: How Attackers Weaponize Microsoft 365 Direct Send to Evade Every Defense·MSFT +0.1%Exploiting Microsoft 365 Direct Send: A Rising Internal Phishing Threat and How to Mitigate It·NVDA +3.0%Microsoft 365 Direct Send Exploited for Advanced Phishing Attacks in 2025·GOOGL +1.2%Microsoft 365 'Direct Send' Exploited in Sophisticated Phishing Attacks: What You Need to Know·AMZN +2.9%

Spf

The latest Spf coverage — news, analysis, and updates from the WindowsNews.AI desk.

9 stories in view AI assisted desk updated 6:05 PM
Latest Most Read Breaking
Sort
Asr · Cve-2025-55243

CVE-2025-55243: OfficePlus Spoofing Flaw Exposes Data, Bypasses Scanners

Microsoft has published a security advisory for CVE-2025-55243, a spoofing vulnerability in Microsoft OfficePlus that can lead to the exposure of sensitive information and enable attackers to...

Advertisement
Cloud Security · Cyber Threats

The Phishing Pipeline: How Attackers Weaponize Microsoft 365 Direct Send to Evade Every Defense

Microsoft 365’s Direct Send feature has become a double-edged sword. Designed to let printers, scanners, and applications relay mail without a dedicated mailbox, it now enables attackers to slip...

SE Security Desk·49w ago
Attack Detection · Cyber Threats

Exploiting Microsoft 365 Direct Send: A Rising Internal Phishing Threat and How to Mitigate It

The rapidly evolving landscape of cyber threats has once again placed Microsoft 365 at the forefront of organizational security concerns. Previously hailed as a linchpin of digital collaboration and...

SE Security Desk·49w ago
Cloud Security · Cyberattack

Microsoft 365 Direct Send Exploited for Advanced Phishing Attacks in 2025

Microsoft 365's Direct Send feature, designed to simplify email delivery for businesses, has become an unexpected weapon in the hands of cybercriminals. Security researchers have identified a surge...

SE Security Desk·55w ago
Cyber Threats · Cybersecurity

Microsoft 365 'Direct Send' Exploited in Sophisticated Phishing Attacks: What You Need to Know

Cybercriminals are increasingly exploiting Microsoft 365's "Direct Send" feature to launch highly convincing phishing attacks that bypass traditional email security measures. This sophisticated...

SE Security Desk·55w ago
Business Email Compromise · Cloud Security

Microsoft 365's Direct Send Feature Exploited in Phishing Attacks: What You Need to Know

Microsoft 365's Direct Send feature, designed to simplify internal email routing, has become an unexpected weapon in cybercriminals' phishing arsenals. Security researchers have uncovered...

SE Security Desk·55w ago