Recent Advisories

Severity ID Title Vendor Product Date Type
CRITICAL 10 MSSECURE:3490E7...

Defending against the CVE-2025-55182 (React2Shell) vulnerability in React Server Components_MSSECURE:3490E78725A996787146B5ED05CB3C9B

CVE-2025-55182 (also referred to as React2Shell and includes CVE-2025-66478, which was merged into it) is a critical pre-authentication remote code...

N/A N/A MSSECURE
NONE MSSECURE:505FB7...

Microsoft named an overall leader in KuppingerCole Leadership Compass for Generative AI Defense_MSSECURE:505FB7FDED14FB40F999BB1C39296C3B

Today, we are proud to share that Microsoft has been recognized as an overall leader in the **KuppingerCole Leadership Compass for Generative AI De...

N/A N/A MSSECURE
NONE MSSECURE:982F05...

Imposter for hire: How fake people can gain very real access_MSSECURE:982F05C23C9CBA5201A483C4DDE5D64F

In the latest edition of our Cyberattack Series, we dive into a real-world case of fake employees. Cybercriminals are no longer just breaking into ...

N/A N/A MSSECURE
NONE MSSECURE:12A4CE...

From awareness to action: Building a security-first culture for the agentic AI era_MSSECURE:12A4CE09E258FC7897992E6A5AADF4B0

The insights gained from Cybersecurity Awareness Month, right through to Microsoft Ignite 2025, demonstrate that security remains a top priority fo...

N/A N/A MSSECURE
NONE MSSECURE:39B048...

Imposter for hire: How fake people can gain very real access_MSSECURE:39B048F9D543612BA7BBB6E0DC4915F6

In the latest edition of our Cyberattack Series, we dive into a real-world case of fake employees. Cybercriminals are no longer just breaking into ...

N/A N/A MSSECURE
NONE MSSECURE:D76DE4...

Clarity in complexity: New insights for transparent email security_MSSECURE:D76DE41640A662938338C8BAA06E4D0D

As email threats grow more sophisticated and layered security architectures become more common, organizations need clear, data-driven insights to e...

N/A N/A MSSECURE
NONE MSSECURE:7B5CAB...

From awareness to action: Building a security-first culture for the agentic AI era_MSSECURE:7B5CAB3BCCCA2BC6A24B920AEF86A0F0

The insights gained from Cybersecurity Awareness Month, right through to Microsoft Ignite 2025, demonstrate that security remains a top priority fo...

N/A N/A MSSECURE
NONE MSSECURE:BEFCE5...

Shai-Hulud 2.0: Guidance for detecting, investigating, and defending against the supply chain attack_MSSECURE:BEFCE5C86D4CC486976084A1414739A9

The Shai‑Hulud 2.0 supply chain attack represents one of the most significant cloud-native ecosystem compromises observed recently. Attackers malic...

N/A N/A MSSECURE
NONE MSSECURE:E2DBE7...

Shai-Hulud 2.0: Guidance for detecting, investigating, and defending against the supply chain attack_MSSECURE:E2DBE7DF64859D08F163E1B41F9E1118

The Shai‑Hulud 2.0 supply chain attack represents one of the most significant cloud-native ecosystem compromises observed recently. Attackers malic...

N/A N/A MSSECURE
NONE MSSECURE:4562F9...

Changing the physics of cyber defense_MSSECURE:4562F953D66272BA6B83EFA135EEC35C

__The Deputy CISO blog series is whereMicrosoft _Deputy Chief Information Security Officers_ __(CISOs) share their thoughts on what is most import...

N/A N/A MSSECURE