Microsoft Security Blog Expert coverage of cybersecurity topics
- Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise by Srikanth Shoroff on August 10, 2026 at 4:00 pm
Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and human expertise. The post Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise appeared first on Microsoft Security Blog.
- DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructureby Microsoft Threat Intelligence on August 10, 2026 at 3:00 pm
Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support victim communications, negotiations, and data leak operations alongside double extortion tactics used to pressure victims. The post DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure appeared first on Microsoft Security Blog.
- Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP)by Ran Rosin on August 5, 2026 at 4:30 pm
Learn why KuppingerCole named Microsoft a Leader in its Leadership Compass: Cloud Native Application Protection Platforms report. The post Microsoft named a Leader in the KuppingerCole Leadership Compass for Cloud Native Application Protection Platforms (CNAPP) appeared first on Microsoft Security Blog.
- From open lures to cloaked gates: How a macOS ClickFix campaign learned to hideby Microsoft Security Research and Srinivasan Govindarajan on August 5, 2026 at 3:48 pm
A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicious infrastructure harder to detect while giving defenders new hunting opportunities. The post From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide appeared first on Microsoft Security Blog.
- ChainDrop supply chain compromise: Anatomy of a self-propagating wormby Microsoft Security Research, Ravikant Tiwari, Sagar Patil and Suriyaraj Natarajan on August 4, 2026 at 11:46 pm
A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates. This analysis details the attack chain, affected environments, and practical guidance for detection, hunting, and remediation. The post ChainDrop supply chain compromise: Anatomy of a self-propagating worm appeared first on Microsoft Security Blog.
- Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOpsby Ron Pessner on August 4, 2026 at 6:30 pm
Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance. The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps appeared first on Microsoft Security Blog.
- 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET by Microsoft Security Research, David Shiran and Ayelet Artzi on August 4, 2026 at 5:54 pm
Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET appeared first on Microsoft Security Blog.
- CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theftby Microsoft Threat Intelligence on July 31, 2026 at 9:01 pm
Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations such as hotels since May 2026 in order to deliver malware to travelers and steal credentials in an operation we call CaptiveCrunch. The post CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft appeared first on Microsoft Security Blog.
- What’s new in Microsoft Security: July 2026by Alym Rayani on July 30, 2026 at 4:00 pm
This month’s updates help security and IT teams secure their AI environments, use AI to defend, and strengthen the foundations that AI-powered operations depend on. The post What’s new in Microsoft Security: July 2026 appeared first on Microsoft Security Blog.
- Better security starts with better questionsby Aarti Borkar on July 29, 2026 at 4:00 pm
Learn how better questions, trusted AI, and human judgment help security leaders make confident decisions and build resilient systems. The post Better security starts with better questions appeared first on Microsoft Security Blog.










