We are Microsoft's global network of security experts. Follow for security research and threat intelligence.aka.ms/threatintelblog Redmond, WAJoined November 2010
Threat actors seek to abuse Microsoft Teams features and capabilities at different points along the attack chain, raising the stakes for defenders to proactively monitor, detect, and respond. msft.it/6015sLUrP
Read our latest blog to get extensive recommendations for…
Storm-1175, a financially motivated threat actor known for deploying Medusa ransomware, was observed exploiting the CVE-2025-10035 vulnerability in GoAnywhere MFT's License Servlet. Read our analysis and get detection and hunting guidance: msft.it/6018sIfKr
Users looking to create, publish, and test agents in Security Copilot using natural language, agent builder forms, YAMLs, and MCP can get more info and guidance from the Microsoft Security Copilot developer content: msft.it/6010svulk.
The nature of incident response is its chaos, and Microsoft Incident Response (IR) team thrives amid disorder, stepping in when environments are compromised and confidence is shaken. msft.it/6016svfZK
According to Adrian Hill, lead investigator for Microsoft IR, the…
From graph-based context to build-your-own Microsoft Security
Copilot agents, we're introducing a new AI-ready security platform
and innovations to empower defenders in the era of agentic AI:
msft.it/6010sQNtI#MSSecure
Don’t miss your chance to join these speakers for the latest solutions to your end-to-end security platforms.
Register today! msft.it/6010sqUgO#MSSecure#SecurityforAI
Microsoft Threat Intelligence has uncovered a new variant of the XCSSET malware, which is designed to infect Xcode projects, typically used by software developers building Apple or macOS-related applications. msft.it/6019sS0yx
This new XCSSET variant improves browser…
Attackers are leveraging AI and bots to create phishing campaigns that are more tailored than ever. Using these tools for domain impersonation, typosquatting, etc., attackers can tailor a phishing attack directly to one individual – and do that at scale. msft.it/6017sSdRU…
Microsoft Threat Intelligence recently detected and blocked a credential phishing campaign that likely leveraged AI-generated code to obfuscate its payload and evade traditional defenses. msft.it/6019sSBmS
The campaign, though limited in scope, demonstrates how attackers…
GitHub is strengthening npm security with stricter authentication, granular tokens, and enhanced trusted publication. This is in response to the surge of account takeovers on package registries like npm. msft.it/6018sqQ2a
In these attacks, threat actors gain unauthorized…
"Microsoft Threat Intelligence is fully focused on disrupting threat actor activity."
In the first of a four-part Inside Microsoft Threat Intelligence miniseries, Director of Threat Intelligence Strategy @sherrod_im gives a behind-the-scenes look at how Microsoft's Digital…
241K Followers 203 FollowingBreaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
55K Followers 3K FollowingDirector of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
20K Followers 2K FollowingPrincipal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK).
And yes, opinions are my own ;)
26K Followers 1K FollowingI play with vulnerabilities and exploits. I used to be here on Twitter but now I'm here:
@[email protected]
https://t.co/hXggdAVkSQ
17K Followers 2K FollowingChristian. Husband. Father. Runner. Speaker. Author. Cyber and AI @Microsoft. Dude/Bro. Also on BlueSky at https://t.co/J6dqBN31D3
26K Followers 1K FollowingSenior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
3K Followers 2K FollowingResto Shaman, AOTC PvE, PvP WoW Player. The United States of America is the best country on earth. Likes etc are not endorsements.
399 Followers 882 FollowingGOD is sovereign, he can be trusted completely🙏🏾Link me on all your Enterprise Tech needs👨🏾💻LIVERPOOL 🏆Before u react, ask yourself if this is necessary
138 Followers 32 FollowingCreate web tools using PowerShell, Python or your favorite scripting language. Built-in RBAC, REST APIs and more. Easy to use since 2012.
241K Followers 203 FollowingBreaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
64K Followers 81 FollowingThe latest research and news from Unit 42, the Palo Alto Networks (@paloaltontwks) Threat Intelligence and Security Consulting Team covering incident response.
55K Followers 3K FollowingDirector of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
20K Followers 2K FollowingPrincipal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK).
And yes, opinions are my own ;)
26K Followers 1K FollowingSenior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
89K Followers 911 FollowingProgrammer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
61K Followers 1K FollowingSecurity information portal, testing and certification body.
Organisers of the annual Virus Bulletin conference. @[email protected]
343K Followers 49 FollowingOne of the most widely read and trusted cybersecurity news sites, providing IT security professionals informed insights into the latest news and trends.
147K Followers 382 FollowingWhy, How & When to use current and forthcoming Microsoft Tech. Hosted by Microsoft Director @DeployJeremy & colleagues. An official @Microsoft video series.
349K Followers 325 FollowingWe are prioritizing security above all else through our Secure Future Initiative (SFI). Explore SFI principles, pillars, and progress here ⬇️
370 Followers 219 FollowingManager at Microsoft Threat Intelligence Center. Adjunct Faculty at Georgetown University. Penn State Alum. Tweets are my own.
4K Followers 136 FollowingSoftware security @MSFT working on Azure. Co-author of 'Designing and Developing Secure Azure Solutions' and Co-host of the Azure Security Podcast.
77K Followers 830 FollowingSenior reporter at @CyberSecDive covering all things digital security. I also co-host @hothtakes. | Send me tips: https://t.co/j2VflOTeFS
4.4M Followers 3 FollowingOpenAI’s mission is to ensure that artificial general intelligence benefits all of humanity. We’re hiring: https://t.co/dJGr6Lg202
1K Followers 873 Following'Don't miss opportunities because you think that ideas aren't important unless they're complicated. Simple ideas are often the most powerful.' -Patrick Winston
280 Followers 545 FollowingIntelligence Analyst. (Former) dancer. Not good at tweeting but love reading and liking tweets from others! Views are mine not my employer’s.
5K Followers 2K FollowingMicrosoft Chief Security Advisor, Keynote Speaker, Best Selling Author, Lover of Doggos. Eternal Optimist! Aston Baby. All views my own 🇬🇧
118K Followers 1K FollowingThe Citizen Lab is an academic research group at @UofT focusing on the intersection of technologies, human rights and global security.
36K Followers 7K FollowingWeird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
901 Followers 156 FollowingBrockton Royalty. Cybersecurity @Microsoft - working to secure the digital ecosystem. Still wearing great shoes. Tweets are all mine.
1K Followers 414 FollowingSecurity Person at Microsoft. Microsoft Threat Intelligence Center, #AzureSentinel. #AzureSecurityCenter. Opinions are my own.