📰 Microsoft Security Intelligence News
Page 3 - Microsoft Security Intelligence News Today
Fast, Ad-Free News Updates
Stay updated with breaking news from Microsoft Security Intelligence. Real-time updates on events, politics, business and more.
May 24, 2021
BankInfoSecurity Compliance @prajeetspeaks) • May 24, 2021 If the "Outgoing Payments" PDF is clicked, it downloads the StrRAT. (Source: Microsoft) Microsoft is warning about a spam campaign that uses an updated variant of Java-based StrRAT malware that steals confidential data while disguising itself as a ransomware infection even though it does not actually encrypt data. "This remote access Trojan is infamous f...
May 21, 2021
minute read Share this article: Microsoft Security discovered malicious PDFs that download Java-based StrRAT, which can steal credentials and change file names but doesn’t actually encrypt. An email campaign is delivering a Java-based remote access trojan (RAT) that can not only steal credentials and take control of systems, but also presents as fake ransomware, Microsoft researchers have discovered. The Microsoft Security Intelligence (MSI) team has outlined details of a “mass...
May 17, 2021
Watch your work email for malware that can hijack your system By Charlie Fripp, Komando.com Business infrastructure and email systems should be of the highest priority for all companies. If hackers manage to infect corporate networks with malware, there is no telling what information they can steal. But sometimes, even the best systems can be breached when employees arenât careful or negligently divulge information. Over the last few months, Microsoft said that it has been tracking sev...
May 13, 2021
What you need to know Phishers are at it again, distributing data theft Trojans. Microsoft has been following their activities. Microsoft Security Intelligence released findings on Twitter. Today in predictable cybercrime, theres a campaign going on wherein phishers are targeting people in the travel and aerospace industries with malicious emails containing loaders that pave the way for remote access Trojans (RATs) to steal data. Microsoft Security Intelligence exposed the whole operation over ...
April 3, 2021
Ransomware is spiking as cyberattacks on Microsoft jump, according to a report. The two trends are overlapping in the wake of the Cybersecurity and Infrastructure Security Agency’s (CISA) recent alerts on ransomware attacks targeting Microsoft Exchange servers, according to Check Point Research (CPR). The CPR report cited a 57% increase in ransomware attacks on organizations it tracks within the last six months and a 9% increase in ransomware attacks each month since the beginning of the yea...
March 16, 2021
DearCry ransomware appends ".CRYPT" to forcibly encrypted files. (Source: Sophos) Fresh ransomware targeting as-yet-unpatched on-premises Exchange servers appears to have been rushed to market, with attackers seeking to capitalize on new opportunities before the competition stepped in, security firm Sophos reports. Sophos has published a teardown of the new DearCry ransomware, which it describes as being "unsophisticated" and apparently "created by a beginner." The ransomware was first spotted ...
March 14, 2021
Four exploits in Microsoft Exchange Server hit the news last week, when we heard that a Chinese hacking group had targeted the email servers of some 30,000...
March 13, 2021
12 March 2021, 8:13 pm EST By Microsoft Exchange Hack Sparks Chaos for Users with Unpatched Servers ( Screenshot From Pxhere Official Website ) Microsoft has recently issued an alert that hackers are using a certain strain of ransomware known as the DearCry and are now targeting those users with unpatched Microsoft Exchange servers. The target as of the moment is th...
March 12, 2021
A strain of ransomware called DearCry is being used to target unpatched Exchange servers. Microsoft has released patches for Exchange servers, but some organizations have not patched systems yet. Check Point Research reports that exploitation attempts doubled every 2-3 hours over a recent 24-hour period. While Microsoft has rolled out emergency patches to address vulnerabilities on its Exchange server software, many systems remain unpatched. Attackers are now increasingly going after unpatched ...
March 12, 2021
Source: Microsoft, Bleeping Computer Ransomware-wielding attackers have begun to exploit a serious proxy-logon flaw in unpatched versions of Microsoft Exchange running on premises, Microsoft reports. Hackers have exploited the flaw to access vulnerable servers, crypto-lock files and demand a ransom from victims in return for the promise of a decryption tool. News of the attack campaign follows Microsoft on March 2 issuing emergency patches to fix four zero-day flaws in Microsoft Exchange, which...