Monday , September 14 2026

Recent Posts

Hackers Exploit Entra ID Accounts to Steal Microsoft 365, Azure Data

Entra ID

Hackers misuse Microsoft Entra ID accounts to steal data from Microsoft 365 and Azure. A very advanced cyberattack by a group called Storm-2949 is aiming at Microsoft Entra ID accounts to take sensitive data from Microsoft 365 and Azure. Storm-2949 used real cloud management tools to get deep access to …

Read More »

CISA Admin Leaked AWS GovCloud Keys on Github Repository

One of the most egregious government data leaks in recent history might be the recent leak of Cybersecurity & Infrastructure Security Agency (CISA) public GitHub repository maintained by a contractor that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts …

Read More »

CISA Adds Microsoft Exchange Server Flaw To Its KEV

CISA has given a new warning about a Microsoft Exchange Server flaw that attackers are already using, which worries organizations that depend on local email systems. The issue CVE-2026-42897 is a cross-site scripting (XSS) flaw in Microsoft Exchange Server, mainly in Outlook Web Access (OWA). The official warning says the …

Read More »