A moderate-severity vulnerability (CVE-2025-32016) in Microsoft Identity Web (versions 3.2.0 to 3.8.1) may expose sensitive client secrets and certificate information in service logs under certain conditions. Microsoft advises updating to versions 3.8.2 or 9.0.0 to mitigate risks, while highlighting the importance of secure logging practices for protecting sensitive authentication credentials.

U.S. DoJ Seizes 4 Domains Supporting Cybercrime Crypting Services in Global Operation
A multinational operation led by the U.S. Department of Justice (DoJ), in collaboration with Dutch and Finnish authorities, has dismantled a cybercrime syndicate selling malware-cloaking