BreachFeed
company

Microsoft

Tracked by 3 people · Cloud Provider

Track Microsoft

Incident history

SecurityWeek·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu2hk12066ebhpu2f5bm3g5u

Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints

The Humanist AI Code of Conduct draws a line between defensive cyber research and operational attack capability. The post Microsoft AI Code of Conduct Sets Cyberattack Boundaries, Chain of Command, Safety Constraints appeared first on SecurityWeek.

The Hacker News·4 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu2ag43t5yjbhpu21f6aumcg

China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE

A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple non-governmental organizations (NGOs) on September 1, 2026. "The

Cyber Security Headlines·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu5rjzp5002dhku21d3opmg2

Passkey phishing attack, Anthropic's blockbuster report, airline cybersecurity loophole

Attackers use passkey phishing to hijack Microsoft cloud accounts Anthropic blockbuster report reveals sophisticated hacks Airlines compliance with new cybersecurity regulations means fewer passenger conveniences Get the show notes here: https://cisoseries.com/cybersecurity-news-september-14-2026/ Huge thanks to our episode sponsor, Vanta Risk and regulation ramping up—and customers expect proof of security just to do business. Vanta's automation brings compliance, risk, and customer trust…

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtznurln31rehpu2049r9zfc

Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments. The first campaign, per the tech giant, involved sending over a million scam emails between August 3 and 5, 2026, by masquerading as chief executive officers

CSO Online·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmtx7h6ck09i6hpu2xzhtzql9

Update your firewall rules: Teams and Copilot are changing address

Microsoft is changing the destination address of two of its most popular services: starting this month, it will redirect M365 and Teams web users to copilot.cloud.microsoft and teams.cloud.microsoft, respectively. The Teams move is already under way, and Microsoft has now added M365 to the mix. The company announced the changes in two MessageCenter posts: MC1465764 (mirror) and MC1462915 (mirror). Organizations using these products are advised to update their systems and documentation to ensure…