Microsoft Entra ID — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
43
occurrences
First Seen
November 27, 2025
Last Seen
July 24, 2026

Microsoft Entra ID is a technology platform tracked across 34 threat clusters and 43 intelligence report mentions on ThreatCluster. First observed November 27, 2025; most recent activity July 24, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Hackers hijack hotel Wi — Bleepingcomputer · July 24, 2026
  • HollowGraph malware uses Microsoft 365 calendar for command and control — Feeds.Feedburner · July 20, 2026
  • New HollowGraph malware uses Microsoft Graph for stealthy C2 comms — Bleepingcomputer · July 20, 2026
  • New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications — Infosecurity-Magazine · July 20, 2026
  • Microsoft Entra ID Makes Passkeys the Default Sign — Petri · July 14, 2026
  • Microsoft Entra ID to enforce passkeys and retire legacy MFA by 2027 — Feeds.4Sysops · July 14, 2026
  • Varonis launches 'Breach at the Beach' Entra ID training CTF — Feeds.Feedburner · July 13, 2026
  • Cybercriminals exploit OAuth client ID spoofing to bypass cloud security | brief — Scworld · July 13, 2026

CVSS v3.1 Breakdown