Security Guard Magazine
    Thumbnail
    MOVEit Microsoft ransomware China

    Major Cyber Breaches of 2023-2024: From MOVEit's $12B Impact to Nation-State Attacks

    December 21, 2024 • 1 min read

    An analysis of devastating cyber attacks that defined 2023-2024, including the record-breaking MOVEit breach affecting 2,600 organizations and sophisticated nation-state campaigns targeting tech giants and political entities. The incidents highlight escalating threats across sectors, with ransomware and AI-powered attacks leading the surge.

    Thumbnail
    CISA Microsoft Azure cybersecurity

    CISA Sets 2025 Deadline for Federal Agencies to Secure Microsoft Cloud Services

    December 19, 2024 • 1 min read

    CISA has issued a new directive requiring federal agencies to implement enhanced security measures for Microsoft cloud environments by mid-2025. The directive establishes key deadlines for cloud tenant inventory, security assessment tools deployment, and implementation of secure baselines.

    Thumbnail
    Microsoft cybersecurity biometrics authentication

    Microsoft Leads Charge to Replace Passwords with More Secure Passkey Authentication

    December 19, 2024 • 1 min read

    Microsoft is spearheading a major shift away from traditional passwords toward passkeys, blocking 7,000 password attacks every second. The tech giant is gradually implementing passkey support across its ecosystem while strategically encouraging user adoption through targeted messaging and design.

    Thumbnail
    malware cryptocurrency Microsoft

    CoinLurker: New Crypto-Stealing Malware Exploits Microsoft Edge WebView2 to Evade Detection

    December 17, 2024 • 1 min read

    A sophisticated new malware called CoinLurker is targeting cryptocurrency users through deceptive update notifications, leveraging Microsoft Edge WebView2 technology to steal wallet data. The malware employs advanced evasion techniques including EtherHiding and stolen certificates while targeting multiple cryptocurrency platforms.

    Thumbnail
    Microsoft Windows privacy malware

    Windows Privacy Alert: Microsoft Recall Feature Found Storing Sensitive Personal Data

    December 13, 2024 • 1 min read

    Microsoft's new Windows Recall feature has been discovered capturing and storing screenshots containing sensitive information like credit card and Social Security numbers, despite built-in privacy filters. Security experts recommend immediate disabling of the feature while Microsoft claims improvements are in development.

    Thumbnail
    Microsoft Windows malware cybersecurity

    Critical Windows NTLM Zero-Day Vulnerability Left Unpatched Until April 2024

    December 09, 2024 • 1 min read

    A severe security flaw affecting all Windows versions allows attackers to capture NTLM credentials through malicious files in Windows Explorer. Microsoft plans to address this zero-day vulnerability in April 2024, leaving systems potentially exposed for months.

    Thumbnail
    Microsoft Windows malware encryption

    Critical Flaw in Microsoft Licensing Could Enable Mass Software Activation

    December 02, 2024 • 1 min read

    A hacking group called Massgrave claims to have found a groundbreaking exploit in Microsoft's software licensing system, potentially allowing unauthorized activation of Windows and Office products. The group plans to release details of their method that reportedly requires no system modifications and could work across multiple Microsoft product generations.

    Thumbnail
    AI Microsoft ChatGPT cybersecurity

    New 'Flowbreaking' Attacks Expose Security Flaws in AI Language Models

    November 29, 2024 • 1 min read

    Security researchers have uncovered novel race condition vulnerabilities in Large Language Model systems, dubbed 'Flowbreaking' attacks. These exploits target infrastructure rather than the AI models themselves, allowing attackers to bypass safety controls in platforms like ChatGPT and Microsoft 365 Copilot.

    Thumbnail
    Microsoft Azure AI malware

    Microsoft Patches Critical Security Flaws in AI and Cloud Services After Active Exploitation

    November 29, 2024 • 1 min read

    Microsoft addresses multiple security vulnerabilities across its platforms, including an actively exploited flaw in partner.microsoft.com that enables privilege escalation. The patches cover critical issues in Copilot Studio, Azure PolicyWatch, and Dynamics 365 Sales, highlighting ongoing challenges in cloud and AI security.

    Thumbnail
    Microsoft FTC Azure ransomware

    Microsoft Under FTC Investigation for Cloud Services in Government Contracts

    November 25, 2024 • 1 min read

    The Federal Trade Commission launches probe into Microsoft's potential anticompetitive practices in cloud computing, focusing on $150 billion government security upgrade deal. Questions arise over contract bidding processes and hidden costs in seemingly generous offerings.

  • Previous
  • 1
  • 2
  • 3
  • 4
  • Next

Free Security Guards Resource and Information Magazine