home.social

#microsoft — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #microsoft, aggregated by home.social.

  1. Latest PyPi Compromise

    A supply chain attack targeting the Microsoft DurableTask Python client compromised versions 1.4.1, 1.4.2, and 1.4.3 on PyPi. The threat actor gained access through a compromised GitHub account previously linked to attacks, using stolen credentials to dump GitHub secrets containing PyPi tokens. The evolved payload targets Linux systems, stealing credentials from AWS, Azure, GCP, Kubernetes, Vault, and password managers like Bitwarden and 1Password. It propagates via AWS SSM and Kubernetes lateral movement, limited to 5 targets per infected host. The payload scrapes shell history, bruteforces password managers, and establishes persistence through infection markers. Compromised packages were quarantined following analysis.

    Pulse ID: 6a0ce3b0ad791179648c47b0
    Pulse Link: otx.alienvault.com/pulse/6a0ce
    Pulse Author: AlienVault
    Created: 2026-05-19 22:26:56

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AWS #Azure #BruteForce #CyberSecurity #GitHub #InfoSec #Linux #Microsoft #OTX #OpenThreatExchange #Password #PyPI #Python #RCE #SupplyChain #Word #bot #AlienVault

  2. Latest PyPi Compromise

    A supply chain attack targeting the Microsoft DurableTask Python client compromised versions 1.4.1, 1.4.2, and 1.4.3 on PyPi. The threat actor gained access through a compromised GitHub account previously linked to attacks, using stolen credentials to dump GitHub secrets containing PyPi tokens. The evolved payload targets Linux systems, stealing credentials from AWS, Azure, GCP, Kubernetes, Vault, and password managers like Bitwarden and 1Password. It propagates via AWS SSM and Kubernetes lateral movement, limited to 5 targets per infected host. The payload scrapes shell history, bruteforces password managers, and establishes persistence through infection markers. Compromised packages were quarantined following analysis.

    Pulse ID: 6a0ce3b0ad791179648c47b0
    Pulse Link: otx.alienvault.com/pulse/6a0ce
    Pulse Author: AlienVault
    Created: 2026-05-19 22:26:56

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AWS #Azure #BruteForce #CyberSecurity #GitHub #InfoSec #Linux #Microsoft #OTX #OpenThreatExchange #Password #PyPI #Python #RCE #SupplyChain #Word #bot #AlienVault

  3. Latest PyPi Compromise

    A supply chain attack targeting the Microsoft DurableTask Python client compromised versions 1.4.1, 1.4.2, and 1.4.3 on PyPi. The threat actor gained access through a compromised GitHub account previously linked to attacks, using stolen credentials to dump GitHub secrets containing PyPi tokens. The evolved payload targets Linux systems, stealing credentials from AWS, Azure, GCP, Kubernetes, Vault, and password managers like Bitwarden and 1Password. It propagates via AWS SSM and Kubernetes lateral movement, limited to 5 targets per infected host. The payload scrapes shell history, bruteforces password managers, and establishes persistence through infection markers. Compromised packages were quarantined following analysis.

    Pulse ID: 6a0ce3b0ad791179648c47b0
    Pulse Link: otx.alienvault.com/pulse/6a0ce
    Pulse Author: AlienVault
    Created: 2026-05-19 22:26:56

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AWS #Azure #BruteForce #CyberSecurity #GitHub #InfoSec #Linux #Microsoft #OTX #OpenThreatExchange #Password #PyPI #Python #RCE #SupplyChain #Word #bot #AlienVault

  4. Latest PyPi Compromise

    A supply chain attack targeting the Microsoft DurableTask Python client compromised versions 1.4.1, 1.4.2, and 1.4.3 on PyPi. The threat actor gained access through a compromised GitHub account previously linked to attacks, using stolen credentials to dump GitHub secrets containing PyPi tokens. The evolved payload targets Linux systems, stealing credentials from AWS, Azure, GCP, Kubernetes, Vault, and password managers like Bitwarden and 1Password. It propagates via AWS SSM and Kubernetes lateral movement, limited to 5 targets per infected host. The payload scrapes shell history, bruteforces password managers, and establishes persistence through infection markers. Compromised packages were quarantined following analysis.

    Pulse ID: 6a0ce3b0ad791179648c47b0
    Pulse Link: otx.alienvault.com/pulse/6a0ce
    Pulse Author: AlienVault
    Created: 2026-05-19 22:26:56

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AWS #Azure #BruteForce #CyberSecurity #GitHub #InfoSec #Linux #Microsoft #OTX #OpenThreatExchange #Password #PyPI #Python #RCE #SupplyChain #Word #bot #AlienVault

  5. Latest PyPi Compromise

    A supply chain attack targeting the Microsoft DurableTask Python client compromised versions 1.4.1, 1.4.2, and 1.4.3 on PyPi. The threat actor gained access through a compromised GitHub account previously linked to attacks, using stolen credentials to dump GitHub secrets containing PyPi tokens. The evolved payload targets Linux systems, stealing credentials from AWS, Azure, GCP, Kubernetes, Vault, and password managers like Bitwarden and 1Password. It propagates via AWS SSM and Kubernetes lateral movement, limited to 5 targets per infected host. The payload scrapes shell history, bruteforces password managers, and establishes persistence through infection markers. Compromised packages were quarantined following analysis.

    Pulse ID: 6a0ce3b0ad791179648c47b0
    Pulse Link: otx.alienvault.com/pulse/6a0ce
    Pulse Author: AlienVault
    Created: 2026-05-19 22:26:56

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AWS #Azure #BruteForce #CyberSecurity #GitHub #InfoSec #Linux #Microsoft #OTX #OpenThreatExchange #Password #PyPI #Python #RCE #SupplyChain #Word #bot #AlienVault

  6. Exposing Fox Tempest: A malware-signing service operation

    Fox Tempest is a financially motivated threat actor operating a malware-signing-as-a-service (MSaaS) business used by cybercriminals to distribute malicious code, including ransomware. The actor abuses Microsoft Artifact Signing to generate fraudulent code-signing certificates, allowing malware to evade security controls. Fox Tempest created over a thousand certificates and established hundreds of Azure tenants to support operations. Microsoft revoked over one thousand certificates and disrupted the service in May 2026 through the Digital Crimes Unit. The operation enabled ransomware deployment including Rhysida by threat actors like Vanilla Tempest, and distributed malware families including Oyster, Lumma Stealer, and Vidar. The MSaaS was available through signspace[.]cloud, charging between $5000-$9000 USD. Attacks impacted healthcare, education, government, and financial services sectors globally.

    Pulse ID: 6a0ca3690196d40952527b96
    Pulse Link: otx.alienvault.com/pulse/6a0ca
    Pulse Author: AlienVault
    Created: 2026-05-19 17:52:41

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Azure #Cloud #CyberSecurity #Education #Government #Healthcare #InfoSec #LummaStealer #Malware #Microsoft #OTX #OpenThreatExchange #RAT #RansomWare #Rhysida #Vidar #bot #AlienVault

  7. 🚨 New Episode Live: Is BitLocker a Backdoor?

    A new zero-day, "YellowKey," allows attackers to bypass default Windows encryption instantly. The discoverer claims it looks like an intentional flaw in the recovery environment.

    We dive into the evidence, the "bug vs. backdoor" debate, and the critical steps you must take to secure your drive right now.

    Don't wait for a patch. Fix it yourself.

    Listen now: ImpracticalPrivacy.com

    #BitLocker #Privacy #InfoSec #CyberSecurity #OpenSource #microsoft

  8. “The developers of large language models such as #OpenAI and #Anthropic are preparing for blockbuster initial public offerings later this year to benefit from investor optimism about their #growth.

    Meanwhile, the hyperscalers #Microsoft, #Alphabet, #Amazon, #Meta and #Oracle plan to invest hundreds of billions in the next five years in data centres to provide the #computing power to run these models. And this is where the #maths of the #AIBoom becomes challenging.

    For each of these #hyperscalers, I collected the consensus estimates of analysts for the capital #expenditures and revenues between 2025 and 2030.

    In these five years, capital #investments are expected to rise by 20 per cent a year, a growth rate never seen before in this industry. Meanwhile, #revenues are expected to grow 15 per cent annually” — Joachim Klement

    #IPO / #AI / #LLM / #market <archive.md/I1SLq> / (paywall) <ft.com/content/32bf8935-8d21-4>

  9. “The developers of large language models such as #OpenAI and #Anthropic are preparing for blockbuster initial public offerings later this year to benefit from investor optimism about their #growth.

    Meanwhile, the hyperscalers #Microsoft, #Alphabet, #Amazon, #Meta and #Oracle plan to invest hundreds of billions in the next five years in data centres to provide the #computing power to run these models. And this is where the #maths of the #AIBoom becomes challenging.

    For each of these #hyperscalers, I collected the consensus estimates of analysts for the capital #expenditures and revenues between 2025 and 2030.

    In these five years, capital #investments are expected to rise by 20 per cent a year, a growth rate never seen before in this industry. Meanwhile, #revenues are expected to grow 15 per cent annually” — Joachim Klement

    #IPO / #AI / #LLM / #market <archive.md/I1SLq> / (paywall) <ft.com/content/32bf8935-8d21-4>

  10. “The developers of large language models such as #OpenAI and #Anthropic are preparing for blockbuster initial public offerings later this year to benefit from investor optimism about their #growth.

    Meanwhile, the hyperscalers #Microsoft, #Alphabet, #Amazon, #Meta and #Oracle plan to invest hundreds of billions in the next five years in data centres to provide the #computing power to run these models. And this is where the #maths of the #AIBoom becomes challenging.

    For each of these #hyperscalers, I collected the consensus estimates of analysts for the capital #expenditures and revenues between 2025 and 2030.

    In these five years, capital #investments are expected to rise by 20 per cent a year, a growth rate never seen before in this industry. Meanwhile, #revenues are expected to grow 15 per cent annually” — Joachim Klement

    #IPO / #AI / #LLM / #market <archive.md/I1SLq> / (paywall) <ft.com/content/32bf8935-8d21-4>

  11. “The developers of large language models such as #OpenAI and #Anthropic are preparing for blockbuster initial public offerings later this year to benefit from investor optimism about their #growth.

    Meanwhile, the hyperscalers #Microsoft, #Alphabet, #Amazon, #Meta and #Oracle plan to invest hundreds of billions in the next five years in data centres to provide the #computing power to run these models. And this is where the #maths of the #AIBoom becomes challenging.

    For each of these #hyperscalers, I collected the consensus estimates of analysts for the capital #expenditures and revenues between 2025 and 2030.

    In these five years, capital #investments are expected to rise by 20 per cent a year, a growth rate never seen before in this industry. Meanwhile, #revenues are expected to grow 15 per cent annually” — Joachim Klement

    #IPO / #AI / #LLM / #market <archive.md/I1SLq> / (paywall) <ft.com/content/32bf8935-8d21-4>

  12. “The developers of large language models such as #OpenAI and #Anthropic are preparing for blockbuster initial public offerings later this year to benefit from investor optimism about their #growth.

    Meanwhile, the hyperscalers #Microsoft, #Alphabet, #Amazon, #Meta and #Oracle plan to invest hundreds of billions in the next five years in data centres to provide the #computing power to run these models. And this is where the #maths of the #AIBoom becomes challenging.

    For each of these #hyperscalers, I collected the consensus estimates of analysts for the capital #expenditures and revenues between 2025 and 2030.

    In these five years, capital #investments are expected to rise by 20 per cent a year, a growth rate never seen before in this industry. Meanwhile, #revenues are expected to grow 15 per cent annually” — Joachim Klement

    #IPO / #AI / #LLM / #market <archive.md/I1SLq> / (paywall) <ft.com/content/32bf8935-8d21-4>

  13. #Microsoft Took a Step Toward #HumanRights #Accountability. #Google and #Amazon (and Others) Should Pay Attention!

    For years, civil society organizations, workers, #journalists , and human rights experts have warned that major technology companies risk enabling grave human rights abuses when they provide #cloud computing, #AI , and #surveillance #infrastructure to #governments implicated in violations of international and humanitarian law.

    eff.org/deeplinks/2026/05/micr

  14. Instead of working on my next video I am stuck in Microsoft support hell to recover my son's account after a compromised Minecraft mod gave some assholes from India control over his account.

    Some schmuck is now playing Minecraft with the money I paid for it.

    And I have no recourse.

    #hacking #recovery #microsoft

  15. I really want to like Microsoft so bad. I have deep respect to the company because I was such a big fan of Windows XP and Windows 7 that some parts of their former self have shaped how I perceive what a personal computer should be. Several decades ago, there was no 'app store'. It was all decentralized. A user just take a piece of software installer from the internet and it should handle the installation. Having an 'app store' to me feels like a centralized approach in how I, as a user, get a software. This is why I don't feel that much comfortable using Flathub on my Linux computer.

    I read this, and frankly, I feel a sense of hope. Although I know Microsoft will continue to push ads and Edge browser and Copilot and some corporate jank. I want the early Windows so bad.

    eff.org/deeplinks/2026/05/micr

    #microsoft #tech #computer

  16. Ich bin Student an der #Hochschule #Bielefeld @hochschulebielefeld #HSBI und missbillige die geplante Umstellung von lokalen Email-Servern auf #Microsoft Exchange Online.

    Heute wollte ich die/den Datenschutzbeauftragte*n der Hochschule fragen, welche Möglichkeiten des Opt-Out aus der Email-Umstellung es gibt, da ich nicht möchte, dass meine persönlichen Daten an Microsoft übertragen werden. Dies war die Antwort:

    >> Das Büro der Datenschutzbeauftragten ist derzeit nicht besetzt. Es werden keine Anfragen gelesen, bearbeitet, beantwortet oder weitergeleitet.

    Ihr datenschutzrechtliches Anliegen ist dringlich und unaufschiebbar? Bitte wenden sie sich derzeit direkt an ein Mitglied des Präsidiums:

    hsbi.de/praesidium
    [...] <<

    #Datenschutz #Fail #HSBI #DigitalSovereignty

  17. Ich bin Student an der #Hochschule #Bielefeld @hochschulebielefeld #HSBI und missbillige die geplante Umstellung von lokalen Email-Servern auf #Microsoft Exchange Online.

    Heute wollte ich die/den Datenschutzbeauftragte*n der Hochschule fragen, welche Möglichkeiten des Opt-Out aus der Email-Umstellung es gibt, da ich nicht möchte, dass meine persönlichen Daten an Microsoft übertragen werden. Dies war die Antwort:

    >> Das Büro der Datenschutzbeauftragten ist derzeit nicht besetzt. Es werden keine Anfragen gelesen, bearbeitet, beantwortet oder weitergeleitet.

    Ihr datenschutzrechtliches Anliegen ist dringlich und unaufschiebbar? Bitte wenden sie sich derzeit direkt an ein Mitglied des Präsidiums:

    hsbi.de/praesidium
    [...] <<

    #Datenschutz #Fail #HSBI #DigitalSovereignty

  18. So that's why Discord ramped up its security.

    New.

    "Webworm also added two new backdoors to its toolset: EchoCreep, which uses Discord for C&C communication, and GraphWorm, which uses Microsoft Graph API for the same purpose. The group is also known for staging its malware and tools in GitHub repositories, ensuring that malware can be directly downloaded onto the victim’s machine."

    ESET: Webworm: New burrowing techniques welivesecurity.com/en/eset-res

    More:

    The Hacker News: Webworm Deploys EchoCreep and GraphWorm Backdoors Using Discord and MS Graph API thehackernews.com/2026/05/webw @thehackernews #infosec #cybercrime #Microsoft #Discord #GitHub

  19. 🖼️ Windows Spotlight Images 📝 A canal-centered capital 📝 Beach life in Belgium 📝 A kangaroo's beach day 📝 Anteater antics #WindowsSpotlight, #Spotlight, #Wallpaper, #Microsoft, #Photography, @[email protected]

  20. Ich dachte zuerst, die Hölle friert mal wieder zu, aber tatsächlich bietet Microsoft wohl schon länger für seine Cloud Computing-Kunden ein eigenes auf Fedora basierendes Linux an: golem.de/news/ueberraschende-a #Microsoft #Linux #Azure

  21. Well, that isn't great.

    "GitHub has confirmed that roughly 3,800 internal repositories were breached after one of its employees installed a malicious VS Code extension.

    The company has since removed the unnamed trojanized extension from the VS Code marketplace and has secured the compromised device."

    https://www.bleepingcomputer.com/news/security/github-confirms-breach-of-3-800-repos-via-malicious-vscode-extension/

    #GitHub #VSCode #Microsoft

  22. RE: mastodon.social/@linuxiac/1166

    Now, that's a disturbing logo, name and everything.

    Should have been behind a content warning, really.

    #linux #microsoft #azureLinux #azure

  23. Option 2: Mastodon
    🚨 New Episode Live: YellowKey

    A new zero-day called "YellowKey" lets attackers bypass default BitLocker encryption with a simple USB trick. Microsoft hasn't patched it yet.

    We break down the exploit, the "backdoor" accusations, and exactly how to secure your drive today.

    Don't trust the default. Listen now: ImpracticalPrivacy.com

    #BitLocker #Privacy #InfoSec #CyberSecurity #OpenSource #YellowKey #Microsoft #Surveillance #Windows #Windows11 #OpSec #Encryption

  24. If Microsoft was run by sensible people, they could turn Bing into the default search engine on the web as Google just left that space. I use noai DDG which uses Bing and have preferred its search results over Google for over a year now.

    The above "if" statement is wildly optimistic. Sensibility is a rare commodity in the LLM era.

    #Google #Microsoft #LLM

  25. Microsoft’s Azure Linux 4 development branch confirms a move to Fedora-based packaging sources and standard RPM tooling.
    linuxiac.com/microsoft-azure-l

    #microsoft #azure #linux #opensource

  26. Installiert nur noch über unsere äppstohrs…

    …dann dort kümmern wir uns darum, dass da keine schadsoftwäjhr verbreitet wird und alles wird viel sicherererer:

    Angreifer hatten offenbar Zugriff auf interne Repositories von GitHub […] Offenbar war das Einfallstor Schadcode in einer Visual Studio Code Extension auf dem Gerät eines Mitarbeiters […] Immer wieder finden sich infizierte Extensions auch auf den offiziellen Marktplätzen von Microsoft und Eclipse

    Seht ihr! 😁️

    #Appstore #Fail #Microsoft #Schadsoftware #Security #VisualStudio
  27. Installiert nur noch über unsere äppstohrs…

    …dann dort kümmern wir uns darum, dass da keine schadsoftwäjhr verbreitet wird und alles wird viel sicherererer:

    Angreifer hatten offenbar Zugriff auf interne Repositories von GitHub […] Offenbar war das Einfallstor Schadcode in einer Visual Studio Code Extension auf dem Gerät eines Mitarbeiters […] Immer wieder finden sich infizierte Extensions auch auf den offiziellen Marktplätzen von Microsoft und Eclipse

    Seht ihr! 😁️

    #Appstore #Fail #Microsoft #Schadsoftware #Security #VisualStudio
  28. Installiert nur noch über unsere äppstohrs…

    …dann dort kümmern wir uns darum, dass da keine schadsoftwäjhr verbreitet wird und alles wird viel sicherererer:

    Angreifer hatten offenbar Zugriff auf interne Repositories von GitHub […] Offenbar war das Einfallstor Schadcode in einer Visual Studio Code Extension auf dem Gerät eines Mitarbeiters […] Immer wieder finden sich infizierte Extensions auch auf den offiziellen Marktplätzen von Microsoft und Eclipse

    Seht ihr! 😁️

    #Appstore #Fail #Microsoft #Schadsoftware #Security #VisualStudio
  29. Installiert nur noch über unsere äppstohrs…

    …dann dort kümmern wir uns darum, dass da keine schadsoftwäjhr verbreitet wird und alles wird viel sicherererer:

    Angreifer hatten offenbar Zugriff auf interne Repositories von GitHub […] Offenbar war das Einfallstor Schadcode in einer Visual Studio Code Extension auf dem Gerät eines Mitarbeiters […] Immer wieder finden sich infizierte Extensions auch auf den offiziellen Marktplätzen von Microsoft und Eclipse

    Seht ihr! 😁️

    #Appstore #Fail #Microsoft #Schadsoftware #Security #VisualStudio
  30. The Register: Microsoft shuts down illegal code-signing operation used by ransomware crims to mask their malware. “Microsoft seized websites and took down hundreds of virtual machines running a cybercrime service that allegedly sold code-signing certificates to ransomware gangs, thus making their malware look like legitimate software – and allowing criminals to infect thousands of machines in […]

    https://rbfirehose.com/2026/05/20/the-register-microsoft-shuts-down-illegal-code-signing-operation-used-by-ransomware-crims-to-mask-their-malware/
  31. Microsoft introduced Azure Linux 4.0 as a supported Linux distribution for Azure AI, Kubernetes, and enterprise workloads, with WSL support planned. ☁️
    The release deepens Microsoft’s control over cloud infrastructure as Linux continues powering most Azure workloads and modern AI systems. 🐧

    🔗 techgenyz.com/azure-linux-4-0-

    #TechNews #AzureLinux #Microsoft #Linux #Azure #Kubernetes #OpenSource #CloudComputing #AI #Enterprise #WSL #Containers #Cybersecurity #Infrastructure #DevOps #FOSS #Privacy

  32. #Microsoft surprises with its first #server #Linux distribution: #AzureLinux 4.0
    You'll be able to run this Linux distro on both #Azure and your desktop using Windows Subsystem for Linux
    Under the hood, #AzureLinux4 is based on #FedoraLinux and is delivered as an open distribution on GitHub
    While developers will be able to run Azure Linux locally through #WSL, Microsoft is not positioning it as a traditional desktop #Linux there are "no plans" for a graphical environment
    zdnet.com/article/microsoft-re