Improper verification of cryptographic signature in Windows Certificates allows an unauthorized attacker to perform spoofing over a network.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Storage allows an unauthorized attacker to e...
Improper access control in Azure Databricks allows an unauthorized attacker to elevate privileges over a network.
Improper authorization in Microsoft PC Manager allows an unauthorized attacker to elevate privileges over a network.
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Rel...
![Cherry pie, Douglas firs and the last trip of the summer](https://blog.talosintelligence.com/content/images/2025/08/threat-source-newsletter-2.jp...
Qilin ransomware claims a 4TB data breach at Nissan CBI, leaking car design files, financial data, 3D models,…
Europol has confirmed that a widely reported $50,000 reward for information on the Qilin ransomware group is a…
A new HTTP request smuggling technique was recently discovered, where attackers take advantage of inconsistent parsing behaviors between front-end ...
Over the past year, Microsoft Threat Intelligence and Microsoft Defender Experts have observed the ClickFix social engineering technique growing in...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.