Follow Cyber Kendra on Google News! | WhatsApp | Telegram

Add as a preferred source on Google
Microsoft

Microsoft Busts "Fox Tempest" — A Dark Web Service That Sold Fake Code Signatures to Ransomware Gangs

Microsoft has dismantled a sophisticated criminal operation that essentially ran a paid signing service for malware, allowing ransomware groups to ma…

Storm-2949 Hackers Turned One Stolen Password Reset Into a Full Azure Cloud Takeover

A single helpdesk phone call was all it took. Microsoft's Threat Intelligence team has published a detailed breakdown of how a threat actor it t…

Microsoft Exchange Zero-Day Exploited in the Wild — and Pwn2Own Researchers Just Made It Worse

Microsoft Exchange Server is having a very bad week. While threat actors are already exploiting a critical cross-site scripting vulnerability in the …

Microsoft's AI Just Found 16 Windows Vulnerabilities Humans Missed — And It's Only Getting Started

For decades, finding dangerous bugs buried deep inside Windows has been a job for elite human researchers armed with time and hard-won instinct. Toda…

Microsoft's April Patch Breaks Its Own Security Feature — Domain Controllers Are Stuck in Reboot Loops

There is a bitter irony in a security patch disabling the very infrastructure that enterprise security runs on — but that is exactly what Microsoft&#…

Your Router Is Spying on You — And Russia's APT28 Is Behind It

Your home router may already be working for Russian military intelligence — and you'd have no idea. In a rare coordinated disclosure, both the UK…

AI Found Three Critical Microsoft RCEs on Its Own — And Got the CVEs to Prove It

For the first time in the history of vulnerability research, an autonomous AI system has been formally credited with discovering critical remote co…

Hackers Are Actively Exploiting a Critical Microsoft SharePoint Flaw — Patch Now

Attackers are exploiting a critical remote code execution (RCE) vulnerability in Microsoft SharePoint that Microsoft patched two months ago but many …

Millions of Windows PCs Face "Degraded Security State" as Critical Boot Certificates Near Expiration

A ticking clock is now running on one of Windows' most fundamental security protections. Microsoft has confirmed that the original Secure Boot ce…

New Notepad Flaw That Lets Hackers Execute Code via Markdown Files

Microsoft patched a serious security hole in Windows Notepad this week that could allow attackers to remotely execute malicious code on victims' …

Windows 11's New Security Feature Had 9 Vulnerabilities: Researcher Details the Flaws

Microsoft's flagship security upgrade for Windows 11 had a close call: a researcher found nine different ways to bypass it during testing. Google…

Hackers Are Actively Exploiting Critical Microsoft Office Flaw—Patch Now or Risk Takeover

Microsoft has scrambled to release an out-of-band security patch for a high-severity zero-day vulnerability in Office that attackers are actively wea…

Your Windows PC's Encryption Keys Are Just One FBI Warrant Away From Microsoft

Microsoft just confirmed what privacy advocates have long feared: the company will hand over your Windows PC's encryption keys to federal authori…

Hackers Weaponise OpenAI's API to Build Undetectable Backdoor

Cybersecurity researchers have uncovered a sophisticated backdoor that exploits OpenAI's legitimate services as a covert command-and-control chan…

Microsoft Azure Outage Impacts Multiple Services

Just days after Amazon's massive cloud failure , Microsoft Azure has experienced a global outage—exposing the alarming vulnerability of our cloud…

Hackers Exploit Windows Server Flaw Hours After Emergency Patch

Cybersecurity researchers have confirmed active exploitation of a critical Windows Server Update Services (WSUS) vulnerability just hours after Micro…

Microsoft's Copilot Just Got a Face—And It Can Transform Into Clippy

Microsoft has unveiled Mico, an expressive animated avatar that gives its AI assistant Copilot a visible personality for the first time. The floating…

Microsoft Patches 6 Zero-Days as Windows 10 Reaches End of Life

Microsoft has released critical October 2025 Patch Tuesday updates KB5066835, KB5066793, and KB5066791, addressing 172 vulnerabilities including six …

Windows Server 2025 Bug Can Cripple Active Directory During Exchange Updates

Microsoft has disclosed a serious Active Directory replication flaw that can break domain controller synchronization when organizations running Windo…

Cybercriminals Redirect Employee Salaries to Fraudulent Accounts, says Microsoft

Microsoft Threat Intelligence has uncovered a sophisticated cybercrime operation targeting U.S. universities, where hackers are compromising employee…