Live
CVE-2025-31191: Exploiting and Mitigating the macOS App Sandbox Escape Vulnerability·MSFT +2.1%Netskope Wins Microsoft Security ISV Partner of the Year 2025: A Game-Changer for Cloud-Native Security·NVDA +0.2%CVE-2025-30392 Azure Bot SDK flaw grants remote privilege escalation with no user action needed·GOOGL +1.7%Defending Against Advanced SaaS Phishing Attacks: Strategies for 2025·AMZN +1.1%CISA Urges Immediate Patching for Critical SAP Vulnerability (CVE-2025-31324) Exploited in Attacks·MSFT +2.1%Microsoft Security Excellence Awards 2025: Key Trends and Winners·NVDA +0.2%Microsoft's AI-Powered Security Copilot Agents: Transforming Cybersecurity with Autonomous Defense·GOOGL +1.7%CISA adds three actively exploited critical CVEs to KEV catalog, urges immediate patching.·AMZN +1.1%CVE-2025-31191: Exploiting and Mitigating the macOS App Sandbox Escape Vulnerability·MSFT +2.1%Netskope Wins Microsoft Security ISV Partner of the Year 2025: A Game-Changer for Cloud-Native Security·NVDA +0.2%CVE-2025-30392 Azure Bot SDK flaw grants remote privilege escalation with no user action needed·GOOGL +1.7%Defending Against Advanced SaaS Phishing Attacks: Strategies for 2025·AMZN +1.1%CISA Urges Immediate Patching for Critical SAP Vulnerability (CVE-2025-31324) Exploited in Attacks·MSFT +2.1%Microsoft Security Excellence Awards 2025: Key Trends and Winners·NVDA +0.2%Microsoft's AI-Powered Security Copilot Agents: Transforming Cybersecurity with Autonomous Defense·GOOGL +1.7%CISA adds three actively exploited critical CVEs to KEV catalog, urges immediate patching.·AMZN +1.1%

Threat Intelligence

The latest Threat Intelligence coverage — news, analysis, and updates from the WindowsNews.AI desk.

12 stories in view AI assisted desk updated 3:13 PM
Latest Most Read Breaking
Sort
Application Sandbox · Cross-platform Security

CVE-2025-31191: Exploiting and Mitigating the macOS App Sandbox Escape Vulnerability

Introduction In May 2025, Microsoft disclosed a critical security vulnerability in macOS, identified as CVE-2025-31191. This flaw allowed attackers to bypass the App Sandbox, a key security feature...

Advertisement
Cisa · Cve-2025-31324

CISA Urges Immediate Patching for Critical SAP Vulnerability (CVE-2025-31324) Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent directive for federal agencies and private organizations to patch a critical SAP vulnerability actively being...

SE Security Desk·64w ago
Cloud Security · Cyber Defense

Microsoft Security Excellence Awards 2025: Key Trends and Winners

The RSA Conference 2025 buzzed with more than just the usual chatter about threat vectors and zero-trust architectures; it pulsed with the electric anticipation surrounding the annual Microsoft...

SE Security Desk·64w ago
Ai In Cybersecurity · Ai Security

Microsoft's AI-Powered Security Copilot Agents: Transforming Cybersecurity with Autonomous Defense

The relentless drumbeat of cyber threats grows louder daily, demanding more sophisticated defenses than human teams alone can muster. Against this backdrop, Microsoft has taken a decisive leap...

AI AI & Copilot Desk·64w ago
Backup Security · Cisa

CISA adds three actively exploited critical CVEs to KEV catalog, urges immediate patching.

The Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities (KEV) Catalog, adding three critical vulnerabilities that are actively being...

SE Security Desk·64w ago
Cloud Security · Cyber Defense

Russian Hackers Exploit OAuth 2.0 in Microsoft 365 'Midnight Blizzard' Attack

The digital battlegrounds of cloud security witnessed a sophisticated escalation this summer as Russian state-sponsored hackers orchestrated a novel attack exploiting inherent weaknesses in OAuth 2.0...

SE Security Desk·64w ago
Advanced Persistent Threats · Apt28

CVE-2025-24054: Exploitation of Windows NTLM Hash Leak Vulnerability Highlights Urgent Need for Patch Management

Overview In March 2025, Microsoft addressed a critical security vulnerability, CVE-2025-24054, within its Windows operating system. This flaw, involving the NT LAN Manager (NTLM) authentication...

SE Security Desk·64w ago
Advanced Persistent Threats · Apple Zero-day

Exploitation of Windows NTLM Vulnerability CVE-2025-24054 in Widespread Cyberattacks

Overview In March 2025, Microsoft released a security update addressing a critical vulnerability in the Windows NT LAN Manager (NTLM) authentication protocol, identified as CVE-2025-24054. Despite...

SE Security Desk·64w ago
Apple Zero-day · Authentication

Microsoft fixes NTLM flaw CVE-2025-24054 after rapid attacks hit Poland, Romania

Overview of March 2025 Patch Tuesday In March 2025, Microsoft released its regular Patch Tuesday updates, addressing a multitude of security vulnerabilities across its software suite. Among these,...

SE Security Desk·64w ago