In Other News: Microsoft's Cloud Patches, Hacked Dropbox Accounts, Guardio's $1.1B Valuation
Microsoft patched nine vulnerabilities across Entra ID, Azure services, and Copilot Studio, all deployed server-side requiring no customer action A new AitM phishing kit called Knight Office targets Microsoft 365 and Google Workspace users via token theft, bypassing MFA entirely Project Watershed 250 launched by the White House and Texas governor to harden water utilities against state-sponsored cyberattacks from China and Iran Israeli AI security startup Lasso Security raised $30M and launched
Analysis
TL;DR
- Microsoft patched nine vulnerabilities across Entra ID, Azure services, and Copilot Studio, all deployed server-side requiring no customer action
- A new AitM phishing kit called Knight Office targets Microsoft 365 and Google Workspace users via token theft, bypassing MFA entirely
- Project Watershed 250 launched by the White House and Texas governor to harden water utilities against state-sponsored cyberattacks from China and Iran
- Israeli AI security startup Lasso Security raised $30M and launched LEAP, an AI guardrail with top-tier CPU-based detection accuracy
- Over 21,000 Microsoft Exchange servers remain unpatched against CVE-2026-62911 after exploit code was publicly released
Why It Matters
This roundup highlights the accelerating convergence of AI and cybersecurity threats, from AI-driven scams enabling credential theft to AI-powered guardrails emerging as a defensive countermeasure. For AI practitioners, the Lasso Security funding and LEAP announcement signal growing investment in AI security infrastructure, while the Knight Office phishing campaign demonstrates how token theft techniques are becoming weaponized at scale against enterprise SaaS platforms.
Technical Details
- Microsoft Cloud Patches: Nine vulnerabilities patched across Entra ID, Azure Cosmos DB, Power Automate, Copilot Studio, Azure AD B2C, Fabric, Azure AI Language, and Discovery Studio; all fixes deployed server-side with zero customer action required
- Knight Office AitM Campaign: Adversary-in-the-middle phishing kit steals authentication tokens from Microsoft 365 and Google Workspace, bypassing both password requirements and MFA by capturing already-authenticated sessions
- CVE-2026-62911: High-severity Microsoft Exchange Server vulnerability with publicly available exploit code; Shadowserver Foundation observed 21,000+ unpatched servers as of September 1
- LEAP AI Guardrail: Lasso Security's new product promises top-tier detection accuracy running on CPUs, designed to protect against AI-driven identity theft scams
- Supply Chain Attack via Coder: Threat actor compromised Coder's Cloudflare infrastructure to inject malicious IP addresses into the module registry, delivering credential stealer malware to a subset of users
Industry Insight
- The rise of token theft-based AitM attacks like Knight Office represents a fundamental shift in phishing strategy, rendering traditional MFA defenses insufficient and pushing organizations toward zero-trust architectures and continuous authentication monitoring
- The $30M funding for Lasso Security and Guardio's $1.1B valuation reflect surging investor confidence in AI-native security solutions, suggesting the market will increasingly favor AI-powered threat detection over traditional signature-based approaches
- The unpatched Exchange vulnerability affecting 21,000+ servers underscores the critical importance of automated patch management and vulnerability prioritization frameworks in enterprise environments
Disclaimer: The above content is generated by AI and is for reference only.