[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fps-AvzBUo2XHZ15BnCruXzXdELJhTnJDetFvZ0FFXT4":3},{"article":4,"iocs":51},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":30,"category":31,"article_tags":35},"c3211e92-27e1-4f58-a179-c73390dbafb9","128 Seconds to disruption: Microsoft Defender stops ransomware at QNET","128-seconds-to-disruption-microsoft-defender-stops-ransomware-at-qnet-1fc8e9","Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET appeared first on Microsoft Security Blog.","Microsoft Defender successfully detected and isolated a compromised QNET endpoint within 128 seconds, preventing a multi-stage ransomware attack from executing its payload. This incident highlights the effectiveness of automated security solutions in rapidly responding to emerging threats.","Microsoft Defender stops ransomware attack at QNET in 128 seconds.","July 31 20 min read CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations such as hotels since May 2026 in order to deliver malware to travelers and steal credentials in an operation we call CaptiveCrunch.","https:\u002F\u002Fwww.microsoft.com\u002Fen-us\u002Fsecurity\u002Fblog\u002F2026\u002F08\u002F04\u002F129-seconds-disruption-microsoft-defender-stops-ransomware-qnet\u002F","https:\u002F\u002Fwww.microsoft.com\u002Fen-us\u002Fsecurity\u002Fblog\u002Fwp-content\u002Fuploads\u002F2026\u002F03\u002FMS_Actional-Insights_Firewall.jpg","2026-08-04T17:54:04+00:00","2026-08-04T20:00:21.492514+00:00",7,[18,21,24,27],{"name":19,"type":20},"Microsoft","vendor",{"name":22,"type":23},"Microsoft Defender","product",{"name":25,"type":26},"Midnight Blizzard","threat_actor",{"name":28,"type":29},"CaptiveCrunch","campaign","7d8b5ab8-ea0b-4ced-ae97-ec251b86993a",{"id":30,"icon":32,"name":33,"slug":34},null,"Ransomware","ransomware",[36,41,46],{"category":37},{"id":38,"icon":32,"name":39,"slug":40},"6cbdd207-aaa1-4176-9534-e156b125e917","Nation-state","nation-state",{"category":42},{"id":43,"icon":32,"name":44,"slug":45},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":47},{"id":48,"icon":32,"name":49,"slug":50},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[]]