Recent Advisories

Severity ID Title Vendor Product Date Type
NONE MSSECURE:D89510...

Simplifying AWS defense with Microsoft Sentinel UEBA_MSSECURE:D895103860F068923302D11791A3000A

In this article 1. Under the hood: The tables 2. Traditional vs. new approach 3. Real-world attack scenarios: Microsoft Sentinel UEBA in act...

N/A N/A MSSECURE
NONE MSSECURE:176AE6...

AI-powered defense for an AI-accelerated threat landscape_MSSECURE:176AE6068213B39CE5F4144168CF9979

We are at an inflection point in cybersecurity. Recent advances in AI model capabilities are changing how vulnerabilities are discovered and explo...

N/A N/A MSSECURE
NONE MSSECURE:5020DC...

Detection strategies across cloud and identities against infiltrating IT workers_MSSECURE:5020DCEC89A41A75CF456957ED606778

In this article 1. Attack chain overview 1. Activities in pre-recruitment phase 2. Activities in recruiting phase 3. Activities i...

N/A N/A MSSECURE
NONE MSSECURE:70E91B...

Detection strategies across cloud and identities against infiltrating IT workers_MSSECURE:70E91BB4449BA676B3E194C0081884DF

In this article 1. Attack chain overview 1. Activities in pre-recruitment phase 2. Activities in recruiting phase 3. Activities i...

N/A N/A MSSECURE
NONE MSSECURE:DF1AF8...

Making opportunistic cyberattacks harder by design_MSSECURE:DF1AF8DDA633079144573A950A4DD4FC

_This is part of a series of blogs and interviews conducted with our_ _Microsoft Deputy CISOs_ _, in which we surface a number of mission-critical ...

N/A N/A MSSECURE
NONE MSSECURE:66679F...

Cross‑tenant helpdesk impersonation to data exfiltration: A human-operated intrusion playbook_MSSECURE:66679F3CE944612564FE6C4792DE5780

In this article 1. Risk to enterprise environments 2. Attack chain overview 1. Stage 1: Initial contact via Teams (T1566.003 Spearphishin...

N/A N/A MSSECURE
NONE MSSECURE:CD98CF...

Containing a domain compromise: How predictive shielding shut down lateral movement_MSSECURE:CD98CFEAEA319651AC7FD506BC66D993

In this article 1. Predictive shielding overview 2. Attack chain overview 3. How predictive shielding changed the outcome 4. MITRE ATT&CK®...

N/A N/A MSSECURE
NONE MSSECURE:75E1FC...

Dissecting Sapphire Sleet’s macOS intrusion from lure to compromise_MSSECURE:75E1FC8647218AF87BE0A6DF2F74B4EB

In this article 1. Sapphire Sleet’s campaign lifecycle 2. Defending against Sapphire Sleet intrusion activity 3. Microsoft Defender detectio...

N/A N/A MSSECURE
NONE MSSECURE:BACED6...

Building your cryptographic inventory: A customer strategy for cryptographic posture management_MSSECURE:BACED6089ECEC935999D9B437EC320C2

Post-quantum cryptography (PQC) is coming—and for most organizations, the hardest part won’t be choosing new algorithms. It will be finding where c...

N/A N/A MSSECURE
NONE MSSECURE:C1F22D...

Incident response for AI: Same fire, different fuel_MSSECURE:C1F22D62D1A5BADE41BFF6973C81F614

In this article 1. The fundamentals still hold 2. Where AI changes the equation 3. Closing the gaps in telemetry, tooling, and response 4....

N/A N/A MSSECURE