Skip to content
GeekWire
  • Home
  • News
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • Security
    • Books
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • Archive
  • About
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap
GeekWire
  • Home
  • News
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • Security
    • Books
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • Archive
  • About
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

Microsoft 365

BEC scammers take advantage of “Out-of-office” Microsoft 365 users

29 January 2021

Fraudsters found a way during the recent holiday season to take advantage of users’ “Out of office” messages to sneak messages into …

Tags BEC, IT, Microsoft, Microsoft 365, News

BEC Scammers Find New Ways to Navigate Microsoft 365

26 January 2021

Business email compromise (BEC) scammers targeted victims’ out-of-office replies and read receipts during the 2020 holiday season, when …

Tags BEC, Find, Microsoft 365, New, Scammers

How to Better Secure Your Microsoft 365 Environment

25 January 2021

Cloud security concerns have long been top-of-mind for many IT security pros tasked with protecting data, applications, and infrastructure …

Tags Better, Environments, How, Microsoft 365, Secure

Hackers Steal Mimecast Certificate Used to Securely Connect with Microsoft 365

13 January 2021

Mimecast said on Tuesday that “a sophisticated threat actor” had compromised a digital certificate it provided to certain customers to …

Tags Certificates, Cyber Threats, Hacking, Microsoft, Microsoft 365

Hackers compromise Mimecast certificate used to connect to Microsoft 365

13 January 2021

A security certificate issued by Mimecast Services Ltd. used to authenticate some of the company’s products with Microsoft …

Tags Cyber Threats, Hacking, Microsoft, Microsoft 365, Mimecast

DoJ’s Microsoft 365 Email Accounts Compromised in SolarWinds Attacks

6 January 2021

“On Dec. 24, 2020, the Department of Justice’s Office of the Chief Information Officer (OCIO) learned of previously unknown malicious …

Tags Accounts, Attacks, Emails, Microsoft 365, SolarWinds

Phishers bypass Microsoft 365 security controls by spoofing Microsoft.com

10 December 2020

A domain spoofing email phishing campaign that very convincingly impersonates Microsoft and successfully tricks legacy secure email …

Tags DMARC, IT, Microsoft, Microsoft 365, News

Attackers Know Microsoft 365 Better Than You Do

8 December 2020

Organizations have quickly adopted the full-featured set of productivity and collaboration tools offered by Office 365 (O365), which was …

Tags Attackers, Better, Cloud, Microsoft 365, You

Phishing Campaign Targets 200M Microsoft 365 Accounts

7 December 2020

A large-scale phishing campaign is targeting 200 million Microsoft 365 users around the world, particularly within the financial services, …

Tags Accounts, IT, Microsoft 365, Phishing Campaign, Targets

Microsoft Revamps ‘Invasive’ M365 Feature After Privacy Backlash

2 December 2020

Microsoft has announced what it calls a more privacy-friendly version of its Productivity Score enterprise feature, following backlash from …

Tags Cloud Computing, Cloud Software, Data Privacy, Features, Microsoft 365

Majority of Microsoft 365 Admins Don’t Enable MFA

27 October 2020

Up to 78 percent of Microsoft 365 administrators do not have multi-factor authentication (MFA) security measures enabled. A recent report …

Tags IT, MFA, Microsoft 365, News

78% of Microsoft 365 admins don’t activate MFA

27 October 2020

On average, 50% of users at enterprises running Microsoft 365 are not managed by default security policies within the platform, according …

Tags IT, MFA, Microsoft 365, News
Post navigation
Older posts
Page1 Page2 … Page4 Next →
Cookie-Free

NVD

CVE-2020-24455 – Missing initialization of a variable in the TPM2 source may allow a privileged user to pot …

26 February 2021

CVE-2021-23969 – As specified in the W3C Content Security Policy draft, when creating a violation report, & …

26 February 2021

CVE-2021-23965 – Mozilla developers reported memory safety bugs present in Firefox 84. Some of these bugs s …

26 February 2021

CVE-2021-0401 – In vow, there is a possible memory corruption due to a race condition. This could lead to …

26 February 2021

CVE-2020-27618 – The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when proces …

26 February 2021

CVE-2021-21328 – Vapor is a web framework for Swift. In Vapor before version 4.40.1, there is a DoS attack …

26 February 2021

EXPLOITS

Remote Desktop Web Access – Authentication Timing Attack (Metasploit Module)

26 February 2021

LightCMS 1.3.4 – ‘exclusive’ Stored XSS

26 February 2021

Triconsole 3.75 – Reflected XSS

26 February 2021

Simple Employee Records System 1.0 – File Upload RCE (Unauthenticated)

26 February 2021

Vehicle Parking Management System 1.0 – ‘catename’ Persistent Cross-Site Scripting (XSS)

25 February 2021

ASUS Remote Link 1.1.2.13 – Remote Code Execution

25 February 2021

SECURELIST

The state of stalkerware in 2020

26 February 2021

Lazarus targets defense industry with ThreatNeedle

25 February 2021

DDoS attacks in Q4 2020

16 February 2021

Spam and phishing in 2020

15 February 2021

How kids coped with COVID-hit winter holidays

4 February 2021

Privacy predictions for 2021

28 January 2021

Information Cyber Network Enterprise Security News

© 2021 GeekWire | Privacy Policy | Cookie-Free | We are not responsible for the content of external sites.