Security news

Latest security news

102 of 1,256 storiesMicrosoftClear all

Mon, 14 Sept 2026

  1. Microsoft releases emergency Windows updates to fix RDS failures

    Microsoft has released emergency out-of-band Windows updates to fix Remote Desktop Services failures caused by this month's security updates, along with Hyper-V and USB audio problems on some Windows versions.

    BleepingComputerMicrosoft, Windows
  2. Microsoft: September updates cause RDS failures on Windows Server

    Microsoft has confirmed reports that the September 2026 security updates cause Remote Desktop Services (RDS) failures on Windows Server systems.

    BleepingComputerMicrosoft, Windows
  3. Microsoft: September updates break audio on some Windows PCs

    Microsoft has confirmed that USB audio devices may fail on some Windows systems after installing the KB5124008and KB5124012 September 2026 security updates.

    BleepingComputerMicrosoft, Windows

Sun, 13 Sept 2026

  1. Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

    Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments. The first campaign, per the tech giant, involved sending over a million scam emails between August 3 and 5, 2026, by masquerading as chief executive officers

    The Hacker NewsMicrosoft

Fri, 11 Sept 2026

  1. Microsoft sees some new wrinkles in invoice-scam emails

    Researchers analyzed a flood of fraudulent business emails and found that the threat actors had doubled-up on tactics to make them appear legitimate, including help from AI.

    The RecordMicrosoft
  2. Passkey-themed phishing attacks lead to Microsoft 365 data theft

    Microsoft says threat actors linked to ShinyHunters, Helix, and other extortion gangs are using passkey and single sign-on-themed social engineering attacks to compromise corporate Microsoft accounts and steal data from Microsoft 365 services.

    BleepingComputerMicrosoft
  3. Hackers Favor US Eastern Business Hours in M365 Phishing Campaign

    KnowBe4 researchers observed a new phishing campaign leveraging Microsoft 365’s Direct Send to send malicious emails

    Infosecurity MagazineMicrosoft
  4. Accountability, oversight and AI: Inside Microsoft’s security transformation

    Stung by years of embarrassing hacks, the tech giant overhauled how it approached cybersecurity. Company leaders now say they’re seeing results.

    Cybersecurity DiveMicrosoft
  5. Microsoft fixes Teams, Outlook launch failures on ARM Windows PCs

    Microsoft has fixed a bug that prevented Teams and Outlook from launching on ARM-based Windows devices after installing updates released since the August 2026 Patch Tuesday.

    BleepingComputerMicrosoft, Windows, Outlook
  6. Most Organizations Skip Permissions Reviews Before Deploying AI Tools

    A new Syskit study has shown that only 43% of organizations with AI agents deployed in Microsoft 365 environments completed a permission review before doing so

    Infosecurity MagazineMicrosoft

About this news

1,256
Stories
41
Added in the last 24 hours
19
Critical in the last 7 days
4
Reported by several outlets