Skip to main content
Microsoft Security

Microsoft Security Blog

Latest posts
A group of security practitioners work at their computers.

​​Microsoft is named a Leader in the 2024 Gartner® Magic Quadrantâ„¢ for Endpoint Protection Platforms 

Gartner® names Microsoft a Leader in Endpoint Protection Platforms—a reflection, we believe, of our continued progress in helping organizations protect their endpoints against even the most sophisticated attacks, while driving continued efficiency for security operations center teams.

Retain Microsoft Security Experts

Microsoft Security Experts are now available to strengthen your team with managed security services. Learn how to defend against threats with security experts.

A photo of a male standing in front of a computer

Peach Sandstorm deploys new custom Tickler malware in long-running intelligence gathering operations 

Between April and July 2024, Microsoft observed Iranian state-sponsored threat actor Peach Sandstorm deploying a new custom multi-stage backdoor, which we named Tickler. Tickler has been used in attacks against targets in the satellite, communications equipment, oil and gas, as well as federal and state government sectors in the United States and the United Arab […]

Two colleagues in a courtyard on a laptop

Chained for attack: OpenVPN vulnerabilities discovered leading to RCE and LPE 

Microsoft researchers found multiple vulnerabilities in OpenVPN that could lead to an attack chain allowing remote code execution and local privilege escalation. This attack chain could enable attackers to gain full control over targeted endpoints, potentially resulting in data breaches, system compromise, and unauthorized access to sensitive information.