Microsoft

VS Code zero-day lets hackers steal GitHub tokens in one click News

VS Code zero-day lets hackers steal GitHub tokens in one click

A security researcher has released exploit code for a Visual Studio Code (VS Code) zero-day vulnerability that allows at...
Microsoft fixes KB5089549 Windows security update install issues News

Microsoft fixes KB5089549 Windows security update install issues

Microsoft has resolved a known issue causing installation failures and 0x800f0922 errors when deploying the May 2026 Win...
Microsoft Defender can now automatically isolate hacked endpoints News

Microsoft Defender can now automatically isolate hacked endpoints

Microsoft is testing a new Defender for Endpoint capability that will automatically isolate compromised endpoints to thw...
Microsoft shares mitigation for YellowKey Windows zero-day News

Microsoft shares mitigation for YellowKey Windows zero-day

Microsoft has shared mitigations for YellowKey, a recently disclosed Windows BitLocker zero-day vulnerability that grant...
Cybercrime service disrupted for abusing Microsoft platform to sign malware News

Cybercrime service disrupted for abusing Microsoft platform to sign malware

Microsoft says it has disrupted a malware-signing-as-a-service (MSaaS) operation that abused the company's Artifact Sign...
News

Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation

Authored by: Morey J. Haber, Chief Security Advisor, BeyondTrust, and James Maude, Field Chief Technology Officer, Beyon...
Microsoft confirms patching issues in restricted Windows networks News

Microsoft confirms patching issues in restricted Windows networks

Microsoft says customers in restricted network environments may encounter Windows Update failures after installing the J...
Microsoft confirms Windows 11 security update install issues News

Microsoft confirms Windows 11 security update install issues

Microsoft has confirmed that the May 2026 Windows 11 security update (KB5089549) fails to install on some systems and tr...
New Windows ‘MiniPlasma’ zero-day exploit gives SYSTEM access, PoC released News

New Windows ‘MiniPlasma’ zero-day exploit gives SYSTEM access, PoC released

A cybersecurity researcher has released a proof-of-concept exploit for a Windows privilege escalation zero-day dubbed "M...
Microsoft rejects critical Azure vulnerability report, no CVE issued News

Microsoft rejects critical Azure vulnerability report, no CVE issued

Editor's note, May 19th 2026: Following publication, CERT/CC contacted to clarify its handling of this report. CERT/CC d...