This week’s roundup covers Microsoft cloud patches, a high-severity Exchange exploit, and a Dropbox account compromise tied to Lenovo’s email verification process. It also highlights the Knight Office phishing kit, malicious code served through Coder’s module registry, and the charging of Searzhudin Tamirlanovich Aktulaev for delivering malware to freelance users. #Microsoft #Exchange #Dropbox #Lenovo #KnightOffice #Coder #SearzhudinTamirlanovichAktulaev
Keypoints
- Microsoft patched nine vulnerabilities across several cloud services.
- Project Watershed 250 will help Texas water utilities improve cyber defenses.
- Exploit code was published for a Microsoft Exchange flaw affecting over 21,000 servers.
- About 5,000 Dropbox accounts were compromised through Lenovo login abuse.
- Knight Office is stealing Microsoft 365 and Google Workspace credentials with AitM phishing.