Phishing
The latest Phishing coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2025-49740: Critical SmartScreen Bypass Vulnerability Explained
Windows SmartScreen, a cornerstone of Microsoft's security architecture, has been compromised by a newly discovered zero-day vulnerability (CVE-2025-49740) that allows attackers to bypass its...
**Critical Microsoft Office Flaw CVE-2025-49702 Exposes Systems to Remote Code Execution**
Critical Microsoft Office Flaw CVE-2025-49702 Exposes Systems to Remote Code Execution A critical security vulnerability, identified as CVE-2025-49702, has been discovered in Microsoft Office, posing...
Critical Microsoft Word Vulnerability Allows for Remote Code Execution
Critical Microsoft Word Vulnerability Allows for Remote Code Execution A critical security flaw, identified as CVE-2025-49700, has been discovered in Microsoft Word, which could allow attackers to...
Microsoft Office Hit by Critical Use-After-Free RCE: CVE-2025-49699 Requires Immediate Patching
Microsoft has confirmed a critical remote code execution vulnerability in its Office productivity suite, tracked as CVE-2025-49699, that stems from a use-after-free memory corruption flaw. The...
Microsoft Office RCE Flaw CVE-2025-49696: What 'Remote' Actually Means — and How to Stay Safe
Microsoft has confirmed a critical security vulnerability in its Office suite that could let attackers execute arbitrary code on a victim's machine simply by tricking them into opening a malicious...
Microsoft Ships Patches for Critical Office RCE Bug CVE-2025-49695, Including Office for Mac
A dangerous use-after-free vulnerability in Microsoft Office, tracked as CVE-2025-49695, has been patched after attackers could potentially execute malicious code just by tricking users into opening...
Critical Excel Vulnerability CVE-2025-49711 Exposes Systems to Remote Code Execution
Critical Excel Vulnerability CVE-2025-49711 Exposes Systems to Remote Code Execution A newly identified security flaw in Microsoft Excel, designated CVE-2025-49711, could allow unauthorized attackers...
Critical Office Flaw CVE-2025-47994 Lets Attackers Elevate Privileges
A critical vulnerability has been identified in Microsoft Office, posing a significant security risk to users. Tracked as CVE-2025-47994, this flaw could allow attackers to gain elevated privileges...
2025 Identity Attack Surge: 3 Critical MFA & Training Defenses
The cybersecurity landscape is undergoing a seismic shift as identity-based attacks surge to the forefront of digital threats. In 2025, cybercriminals are increasingly bypassing traditional perimeter...
Calendar Phishing Alert: How Hackers Exploit Microsoft 365 Invites
Cybercriminals are increasingly exploiting Microsoft 365 calendar invites as a stealthy phishing vector, bypassing traditional email security filters. These attacks leverage the trust users place in...
Office 2025 EOL: How to Secure Your Business Against Macro Threats
Microsoft's announcement of the October 2025 end-of-life (EOL) for Office 2016 and 2019 has sent shockwaves through enterprise IT departments. This milestone isn't just about losing access to...
Passkeys defeat AI brute-force and phishing, driving a major shift away from passwords.
The cybersecurity landscape is undergoing a seismic shift as artificial intelligence (AI) becomes both a weapon for attackers and a tool for defenders. With tech giants like Google and Microsoft...