Microsoft September 2025 Patch Tuesday brings fixes for 81 security flaws across Windows, Office, Azure, and SQL Server. Eight of these are marked critical, including dangerous remote code execution and privilege escalation bugs. Patch Tuesday updates are designed to close gaps before attackers exploit them, but history shows cybercriminals move fast once vulnerabilities are disclosed. […]
Microsoft remained a dominant force in the digital ecosystem in 2024—but also a magnet for cyber threats. This report delivers a data-driven breakdown of key cyberattacks that targeted Microsoft or exploited its products globally between January and December 2024. Cybersecurity professionals will find detailed analysis of threat actors, exploited vulnerabilities, attack vectors, volume of attacks, […]
Microsoft has addressed a critical Windows MSHTML zero-day vulnerability, tracked as CVE-2024-38112, which has been actively exploited in cyberattacks for eighteen months. This high-severity MHTML spoofing issue, fixed during the July 2024 Patch Tuesday security updates, allowed malicious scripts to bypass built-in security features. Haifei Li of Check Point Research discovered the vulnerability and reported […]