Microsoft Condemns "Uncoordinated" Zero Day Disclosures

2026-05-28T14:52:17Zfaa94ff950eb367971695e2b43d41c740dc77c8bfc1a62186b3cd1624b5510a2
android-ratbotnet-takedownbtmobcert-in-patching-deadline','ai-security-risksgithub-breachglasswormgrafanainfostealerjinx-0164kali365linux-kernel-ptracemacos-malwaremini-shai-huludnpm-supply-chainoauth-token-theftphishingregulatory-guidanceseo-poisoningssh-key-exposuresupply-chain-attacktanstackuncoordinated-zero-day-disclosuresvs-code-malicious-extensionvulnerability-disclosurezero-day

What happened

This collection of news highlights an elevated and broad cyber threat environment: Microsoft criticized uncoordinated disclosure of multiple unpatched zero‑days that increase customer risk, while Pwn2Own researchers found dozens of novel zero‑days. Active campaigns and actor developments include Jinx‑0164 targeting crypto developers on macOS with recruiter lures and malware, Kali365 phishing kit stealing Microsoft 365 OAuth tokens, widespread phishing/SEO‑poisoning and infostealer campaigns (including thousands of fake FIFA domains and fake AI/code sites), and malware families such as PureLogs

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
infosecurity_magazine
Record identifier
faa94ff950eb367971695e2b43d41c740dc77c8bfc1a62186b3cd1624b5510a2
Enrichment time
2026-05-28T14:52:17Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Microsoft Condemns "Uncoordinated" Zero Day Disclosures · Baitaphish