Threat Intelligence
The latest Threat Intelligence coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2025-31191: Exploiting and Mitigating the macOS App Sandbox Escape Vulnerability
Introduction In May 2025, Microsoft disclosed a critical security vulnerability in macOS, identified as CVE-2025-31191. This flaw allowed attackers to bypass the App Sandbox, a key security feature...
Netskope Wins Microsoft Security ISV Partner of the Year 2025: A Game-Changer for Cloud-Native Security
In an era where digital threats evolve at breakneck speed, the announcement that Netskope has been crowned Microsoft Security ISV Partner of the Year for 2025 sends ripples through the cybersecurity...
CVE-2025-30392 Azure Bot SDK flaw grants remote privilege escalation with no user action needed
Introduction Microsoft has recently addressed a critical security vulnerability identified as CVE-2025-30392 affecting the Azure Bot Framework SDK. This vulnerability, classified as an elevation of...
Defending Against Advanced SaaS Phishing Attacks: Strategies for 2025
Introduction The landscape of cyber threats is continually evolving, with Software as a Service (SaaS) platforms becoming prime targets for sophisticated phishing attacks. Cybercriminals are...
CISA Urges Immediate Patching for Critical SAP Vulnerability (CVE-2025-31324) Exploited in Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent directive for federal agencies and private organizations to patch a critical SAP vulnerability actively being...
Microsoft Security Excellence Awards 2025: Key Trends and Winners
The RSA Conference 2025 buzzed with more than just the usual chatter about threat vectors and zero-trust architectures; it pulsed with the electric anticipation surrounding the annual Microsoft...
Microsoft's AI-Powered Security Copilot Agents: Transforming Cybersecurity with Autonomous Defense
The relentless drumbeat of cyber threats grows louder daily, demanding more sophisticated defenses than human teams alone can muster. Against this backdrop, Microsoft has taken a decisive leap...
CISA adds three actively exploited critical CVEs to KEV catalog, urges immediate patching.
The Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities (KEV) Catalog, adding three critical vulnerabilities that are actively being...
Russian Hackers Exploit OAuth 2.0 in Microsoft 365 'Midnight Blizzard' Attack
The digital battlegrounds of cloud security witnessed a sophisticated escalation this summer as Russian state-sponsored hackers orchestrated a novel attack exploiting inherent weaknesses in OAuth 2.0...
CVE-2025-24054: Exploitation of Windows NTLM Hash Leak Vulnerability Highlights Urgent Need for Patch Management
Overview In March 2025, Microsoft addressed a critical security vulnerability, CVE-2025-24054, within its Windows operating system. This flaw, involving the NT LAN Manager (NTLM) authentication...
Exploitation of Windows NTLM Vulnerability CVE-2025-24054 in Widespread Cyberattacks
Overview In March 2025, Microsoft released a security update addressing a critical vulnerability in the Windows NT LAN Manager (NTLM) authentication protocol, identified as CVE-2025-24054. Despite...
Microsoft fixes NTLM flaw CVE-2025-24054 after rapid attacks hit Poland, Romania
Overview of March 2025 Patch Tuesday In March 2025, Microsoft released its regular Patch Tuesday updates, addressing a multitude of security vulnerabilities across its software suite. Among these,...