X
First-ever zero-click attack targets Microsoft 365 Copilot
Mark Anderson | Security | June 13, 2025

Euclid Security Newsletter

June 13, 2025 

First-ever zero-click attack targets Microsoft 365 Copilot

A single email can silently trigger Copilot to exfiltrate sensitive corporate data - no clicks, no warnings, no user action.

 

Security News

Google suffers cloud outage, causing disruptions for OpenAI, Shopify and other services

Google's cloud suffered significant global outages on Thursday, knocking down or disrupting a number of large internet services.

Password-spraying attacks target 80,000 Microsoft Entra ID accounts

Hackers have been using the TeamFiltration pentesting framework to target more than 80,000 Microsoft Entra ID accounts at hundreds of organizations worldwide.

New COPPA Rules to Take Effect Over Child Data Privacy Concerns

New regulations and compliance standards for the Children's Online Privacy Protection Act reflect how much technology has grown since the Federal Trade Commission last updated it in 2013.

44% of mobile users encounter scams every day

Nearly half of of mobile users encounter mobile scams daily, with people in the US and UK more likely to be targeted than those in other regions. Most users say it's hard to tell a scam from something real, and very few feel confident in spotting one.

Ransomware Gangs Exploit Unpatched SimpleHelp Flaws to Target Victims with Double Extortion

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday disclosed that ransomware actors are targeting unpatched SimpleHelp Remote Monitoring and Management (RMM) instances to compromise customers of an unnamed utility billing software provider.

OpenAI slams court order to save all ChatGPT logs, including deleted chats

OpenAI defends privacy of hundreds of millions of ChatGPT users. OpenAI is fighting a court order to preserve all ChatGPT user logs-including deleted chats and sensitive chats logged through its API business offering.

 

Important Updates & Patches

Anker recalls over a million power banks due to fire and burn hazards

Anker PowerCore 10000 power banks (Model: A1263) manufactured between January 1st, 2016, and October 30th, 2019, which were sold between June 1st, 2016, and December 31st, 2022, in the United States may pose a fire safety risk due to a potential issue with the lithium-ion battery. This issue can cause the battery to overheat, leading to melting of plastic components, smoke, and fire hazards.

Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws

Microsoft's June 2025 Patch Tuesday, which includes security updates for 66 flaws, including one actively exploited vulnerability and another that was publicly disclosed.

 

Dan's Corner

It's Friday the 13th, what can possibly go wrong?

If you suffer from friggatriskaidekaphobia, pretty much everything. Here is some history about this day. Good news, we only get one Friday the 13th this year. Next year we get 3!

 

An archive of Euclid Security Newsletters can be found on the support website.

Euclid Technology Solutions, LLC
540 Devall Drive, Suite 301
Auburn, AL 36832

P: 301-657-8089
E: support@euclidtechnology.com

New Comment ...

Sort by: