
GitHub and Microsoft launch ReviewBench AI code review benchmark
GitHub and Microsoft have released ReviewBench, an open benchmark for evaluating AI code review tools using 219 real-world pull requests.
Every Cybersecurity story tagged Microsoft.

GitHub and Microsoft have released ReviewBench, an open benchmark for evaluating AI code review tools using 219 real-world pull requests.

Microsoft confirms the optional September 2026 KB5124010 preview update for Windows 11 causes crashes in some games and applications that use AC-3 audio decoding.

Cisco Talos details a China-nexus threat actor, UAT-11587, using a Rust-based backdoor called Antino that leverages Microsoft 365 services for covert communications.

Microsoft details two campaigns: one blasting CEO-impersonation invoice scams and another using passkey-themed social engineering to hijack Microsoft cloud accounts.

A phishing campaign exploiting Microsoft 365's Direct Send feature sent nearly 30,000 emails, primarily during US Eastern business hours, to bypass email security gateways.

Microsoft's September 2026 Patch Tuesday addressed a record 974 vulnerabilities, including two Windows zero-days under active exploitation. The U.S.

A threat cluster tracked as PREY-0058 is using fake IT calls and proxy sign-ins to steal data from executives for extortion, according to Arctic Wolf.

Anthropic is locking users out of Claude accounts due to login sessions compromised by infostealer malware. Separately, nearly 22,000 Microsoft Exchange servers remain unpatched against a critical flaw, CVE-2026-62911.

Microsoft has alerted of a phishing campaign using invisible Unicode tag characters to split financial keywords and evade email filters.

September 2026's Patch Tuesday follows a record-breaking August with 398 CVEs patched. Experts highlight actively exploited SharePoint and Exchange flaws, while Microsoft works on a fix for the 'ShieldBreak' Defender vulnerability.