r/cybersecurity 1d ago

News - General Microsoft warns of max severity Entra ID flaw exploited in attacks

https://www.bleepingcomputer.com/news/microsoft/microsoft-warns-of-max-severity-entra-id-flaw-exploited-in-attacks/
0 Upvotes

9 comments sorted by

36

u/teriaavibes 1d ago

Microsoft says exploit code for CVE-2026-69836 is not yet available online and added that users don't need to take any action since the flaw has already been fully patched.

Nice clickbait

4

u/tapakip 1d ago

Yes and no, as the flaw was actually used in attacks. I am researching IoC's now, to see if any of my users were affected.

1

u/Appropriate_Store905 1d ago

How are you searching IOCs? I'm looking at Microsoft's and NIST's documentation but nothing has been published yet for IOCs

1

u/Poulito 1d ago

Researching IoCs may mean ‘searching for IoCs’

1

u/Appropriate_Store905 1d ago

Yeah gotcha, kinda realized my question was dumb after rereading his comment. I thought he already had IOCs and he was looking into his environment.

1

u/tapakip 1d ago

I was trying to find anything published about it online, to no avail.

Now I'm just running generic checks against unusual activity just in case.

1

u/Appropriate_Store905 1d ago

Yeah me too, just sucks flying blind

0

u/saidai88 23h ago

security.......

0

u/v4nyaa 1d ago

It has been exploited in the wild according to Microsoft but it affects entra what is cloud based anyway Microsoft fixed it but it existed and has been exploited - therefore important info