BreachFeed
company

Microsoft

Tracked by 3 people · Cloud Provider

Track Microsoft

Incident history

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwzejf900aphpu2qlcxsvq8

Windows 11 Security Update KB5124008 Breaks Always-On VPN Connections

Microsoft’s September 2026 security update KB5124008 is knocking some Windows 11 enterprise clients off Always On VPN after the Patch Tuesday package landed on September 8. Administrators who can reproduce the failure say certificate-based tunnels that worked immediately before the patch stop connecting afterward, then recover as soon as the cumulative update is removed and […] The post Windows 11 Security Update KB5124008 Breaks Always-On VPN Connections appeared first on Cyber Security News.

CSO Online·3 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtws46v52p6ghmu2d7k7rsql

Attackers use passkey-themed scams to hijack Microsoft 365 accounts

Attackers are using passkey-themed social engineering to trick employees into giving them access to their Microsoft accounts. Microsoft Security Research said it has been tracking active cloud intrusions since May in which attackers impersonated IT helpdesk staff, told employees they needed to update or enroll a passkey, and then took them to adversary-in-the-middle (AiTM) phishing pages or Microsoft device-code authentication flows. The campaign ultimately gave attackers access to compromised…

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwn6q7v2jkmhmu2qvq09t3e

Microsoft Investigating Microsoft 365 Copilot Access Issues Under Incident CP1470554

Microsoft is investigating a Microsoft 365 Copilot disruption in which users may be unable to open the assistant or encounter errors while using it. The company is tracking the event as CP1470554 and pointed administrators to the Service Health Dashboard in the Microsoft 365 admin center. In a status update on X, Microsoft 365 Status […] The post Microsoft Investigating Microsoft 365 Copilot Access Issues Under Incident CP1470554 appeared first on Cyber Security News.

Cyber Security News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwmbvd12immhmu2b7c2wlu3

Top 10 Best Cloud Security Posture Management (CSPM) Tools in 2026

CSPM finds the cloud misconfigurations that cause most cloud breaches public buckets, permissive IAM, exposed databases continuously, across accounts and providers. Wiz still sets the pace on agentless visibility and attack-path context, Microsoft Defender for Cloud wins Azure-centric economics, and the market’s biggest story is corporate: Google’s agreement to acquire Wiz for approximately $32 billion, […] The post Top 10 Best Cloud Security Posture Management (CSPM) Tools in 2026 appeared…

Cyber Security News·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtwh6och2cr6hmu2irz7ktmg

Remote Desktop Services Failures on Windows Servers Following September Update

Windows administrators worldwide are grappling with a disruptive Remote Desktop Services (RDS) bug that surfaced immediately after Microsoft shipped its September 2026 Patch Tuesday cumulative updates. Session hosts running Windows Server 2019, 2022, and 2025 have begun freezing hours after boot, leaving RDP connections stuck at “Connecting…” and preventing logged-in users from disconnecting or logging […] The post Remote Desktop Services Failures on Windows Servers Following September Update…

CSO Online·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtw9gwzc23yyhmu2vnl798vf

Attackers are weaponizing the gap between Chromium fixes and Chrome patches

A new exploit kit is revealing the perils of the “patch later” mentality. According to the Proofpoint Threat Research team, espionage-motivated threat actors are using a new malicious toolkit to chain together four separate Chrome browser and Microsoft Windows vulnerabilities to allow them to launch targeted spear phishing campaigns. Proofpoint, which researched the new attack method along with Google’s Threat Intelligence Group, Microsoft’s Threat Intelligence Center, and cybersecurity company…