Microsoft has identified a long, widespread phishing campaign that stole session cookies to bypass MFA and led to BEC and payment fraud.
Security researchers say the choice by Microsoft to re-enable Office macros by default is "puzzling."
Threat actors deploying the Black Basta ransomware have exploited the Microsoft PrintNightmare bug as part of their attacks.
New guidance urges U.S. government agencies to expedite the switch to Modern Auth in Exchange Online ahead of Microsoft's Oct. 1 deadline.
Microsoft issued a patch for the Follina vulnerability, which was first disclosed in May and has been under active exploitation by attackers.