Microsoft Security Response Center
PulseAugur coverage of Microsoft Security Response Center — every cluster mentioning Microsoft Security Response Center across labs, papers, and developer communities, ranked by signal.
3 day(s) with sentiment data
-
AI Agent Frameworks Hit by Critical Command Injection Vulnerabilities
Three critical vulnerabilities (CVEs) have been disclosed in the last two months affecting AI agent frameworks, specifically CrewAI, LiteLLM, and Amazon Q Developer. These vulnerabilities stem from the Model Context Pro…
-
Microsoft pays record $20M in bug bounties to researchers
Microsoft has awarded a record $20 million in bounties to security researchers over the past year for discovering vulnerabilities. This payout, distributed to 562 researchers from 64 countries, highlights the crucial ro…
-
AI worms self-propagate through Microsoft Word's Copilot
A new type of AI worm has been discovered that can self-propagate through Microsoft Word documents using Copilot. The worm exploits prompt injection vulnerabilities, where hidden instructions in a document are interpret…
-
Nightmare Eclipse releases new Windows zero-day exploits targeting Defender and BitLocker
A cybersecurity researcher known as Nightmare Eclipse has released two new zero-day exploits targeting Microsoft Windows: RoguePlanet and GreatXML. RoguePlanet exploits a vulnerability in Windows Defender to achieve SYS…
-
Microsoft GitHub bans researcher over zero-day Windows exploits
Microsoft's GitHub platform has banned a security researcher known as Nightmare-Eclipse, who had previously published several zero-day Windows exploits. The researcher claims the ban is a vindictive response to their di…
-
Microsoft warns of BitLocker zero-day, offers USB bypass mitigation
Microsoft has issued mitigation advice for a zero-day vulnerability affecting Windows BitLocker, known as YellowKey. The exploit, detailed by a hacker named Chaotic Eclipse, allows attackers to bypass security features …
-
Hacker releases two Windows zero-day exploits targeting BitLocker and CTFMON
A security researcher known as Chaotic Eclipse has publicly disclosed two new zero-day exploits for Microsoft Windows, named YellowKey and GreenPlasma. These exploits target Windows BitLocker encryption and CTFMON arbit…
-
AI agents reconstruct vulnerabilities from Linux and Windows binaries
Researchers have developed agentic pipelines for vulnerability discovery in software binaries. Patch2Vuln focuses on Linux distribution binary patches, successfully identifying security-relevant functions in half of tes…