Microsoft

Word documents seemingly carrying videos can deliver malicious code instead
A feature that allows anyone to embed a video directly in a Word document can be easily misused to trick target users into downloading and running malware, Cymulate …

Windows Defender can now run inside a sandbox
Microsoft has made it possible for Windows Defender Antivirus to be run within a sandbox, a restrictive environment that separates the AV’s processes from those of the …

Phishing attacks becoming more targeted, phishers love Microsoft the most
Microsoft remains ensconced on the top of the list of brands impersonated by phishers in North America, Vade Secure has revealed. Phishers’ favorite targets The company …

IT and security professionals unprepared for Windows 7 end of life
An Avecto survey of over 500 individuals from Europe, the United Arab Emirates and the United States revealed that, while some organisations have already migrated to Windows …

PoC exploit for Windows Shell RCE released
Here’s one more reason to hurry with the implementation of the latest Microsoft patches: a PoC exploit for a remote code execution vulnerability that can be exploited …
iboss cloud integrates Microsoft Azure to extend protection for corporate data
iboss has extended its cloud security offerings to be available as a Microsoft Azure private app. This allows organizations running data within Azure to extend to iboss …
Fidelis Cybersecurity announces support for Microsoft Azure’s virtual network TAP
Fidelis Cybersecurity now supports Microsoft Azure’s virtual network terminal access point (TAP) to enable mirroring of virtual machine (VM) network traffic, without the use …
Portnox provides risk assessment and management to all levels of access
Portnox released a solution offering network protection and control to organizations using Microsoft DirectAccess. According to IDC, mobile workers will account for nearly 73 …

October 2018 Patch Tuesday: Microsoft fixes 49 flaws, one APT-wielded zero-day
With the October 2018 Patch Tuesday release Microsoft has fixed 49 vulnerabilities, 12 of which are rated “critical.” Previously known flaws and an actively …

Heading into October Patch Tuesday on the heels of big announcements from Microsoft
October is here and Patch Tuesday is next week, followed quickly by Halloween. Don’t be scared (unless you are a Facebook user)! The winds of change are blowing this fall …

New infosec products of the week: September 28, 2018
Chronicle announces VirusTotal Enterprise with greater search and analysis capabilities Chronicle, the cybersecurity subsidiary of Google’s parent company Alphabet, has …
ShiftLeft announces code-informed runtime protection for Microsoft’s .Net Framework
ShiftLeft announced the general availability of its security-as-a-service platform for Microsoft’s .Net Framework. .Net developers can now leverage the commercial source code …
Featured news
Resources
Don't miss
- Unpatched Windows Server vulnerability allows full domain compromise
- Signal blocks Microsoft Recall from screenshotting conversations
- The hidden gaps in your asset inventory, and how to close them
- CTM360 report: Ransomware exploits trust more than tech
- Lumma Stealer Malware-as-a-Service operation disrupted