Microsoft Security Response Center
@msrc
We are the Microsoft Security Response Center. To report security vulnerabilities or abuse in Microsoft products, visit
Security updates for August 2026 are now available. Details are here: msft.it/6018SZEg0
Thank you to everyone who joined us for the MSRC Researcher Celebration at Black Hat USA. We're incredibly grateful to the security research community for the partnership, trust, and collaboration that help protect customers around the world.
A record-breaking year for Microsoft's Bounty Programs! This year, Microsoft awarded more than $20 million to 562 security researchers, the highest total payout and largest number of researchers recognized in program history. Read the full blog: aka.ms/microsoft-bo...
Learn more and view the full leaderboard: www.microsoft.com/en-us/msrc/blog/2026/07/congratulations-to-the-top-msrc-2026-q2-security-researchers
Security updates for July 2026 are now available. Details are here: msft.it/6018SZEg0
Thank you to every researcher who partnered with us this year to help protect customers worldwide.
Security updates for June 2026 are now available. Details are here: msft.it/6018SZEg0 #PatchTuesday
BlueHat Asia is heading to Singapore on September 17–18! 👉Apply now for your chance to join us: aka.ms/bluehatreg Applications close July 17. #BlueHat
Security updates for May 2026 are now available. Details are here: msft.it/6018SZEg0
Day 2 is underway at BlueHat. Here’s a look back at Day 1. A strong start, with the security community coming together to connect, share insights, and tackle real-world challenges. Watch the highlights ⬇️ #BlueHat
Good morning, BlueHat, and welcome back to day 2 ☀️ We’ll start with opening remarks from Tom Gallagher, VP of Engineering, MSRC, followed by a keynote from Mark Russinovich, CTO, Deputy CISO, and Technical Fellow for Microsoft Azure. View the day 2 agenda: aka.ms/bh26agenda #BlueHat
At BlueHat 2026, Taesoo Kim, VP Security Research, Microsoft took the stage for the Day 1 keynote to discuss what’s next for security as AI systems begin to scale vulnerability discovery and remediation in ways we haven’t seen before. #BlueHat
Good morning, BlueHat! ☀️We’re excited to start Day 1 with you. Grab some breakfast and join us for opening remarks from Tom Gallagher, VP of Engineering, MSRC, followed by our keynote from Taesoo Kim, VP of Security Research at Microsoft. You can find the full agenda here: aka.ms/bh26agenda
Thank you to all of our BlueHat speakers who joined us for the welcome reception this evening. It was great to connect and kick off the event. We are looking forward to welcoming everyone to BlueHat tomorrow.
We’re excited to announce that Dr. Abhilasha Bhargav-Spantzel, Microsoft AI, and Jason Martin, Director, Adversarial Research, Hidden Layer, will be speaking at BlueHat with their session, “From Trusted Agents to Adversaries: Securing Agentic AI in the Age of Prompt Injection.”
🎤 BlueHat Redmond speaker announcement We’re excited to announce our next speaker, Matt Swann, VP & Distinguished Engineering at Microsoft.
We’ve updated the Microsoft 365 Insider Builds on Windows Bounty Program to better recognize impactful research and improve the submission experience for our community. Learn more: www.microsoft.com/en-us/msrc/b...
We’re thrilled to announce Taesoo Kim as the Day 1 BlueHat keynote speaker. Taesoo is Vice President of Security Research at Microsoft and a Professor at Georgia Tech in the School of Cybersecurity and Privacy and the School of Computer Science.
Thank you to everyone who joined us for the MSRC Researcher Celebration at Black Hat Asia. It was great to connect with so many in the community and spend time sharing ideas and conversations.
🎤 BlueHat Redmond speaker announcement We're excited to announce Varsha Chahal and Henrique Pereira Senior Security Engineers at Microsoft, will be speaking at BlueHat Redmond with their talk, “Gotta Catch’em All: Hunting Azure Anonymous Functions in the Wild.” #BlueHat
📣BlueHat Asia Call for Papers now open! 📣 We’re looking for talks on novel research that hasn’t been presented before, including vulnerability research, mitigations, emerging threats and techniques, and more! 📍Singapore | September 17–18 🗓️CFP deadline: June 15 Submit now: aka.ms/BlueHatAsiaCFP
Security updates for April 2026 are now available. Details are here: msft.it/6018SZEg0 #PatchTuesday
Through Zero Day Quest, Microsoft awarded $2.3 million to security researchers for eligible findings across cloud and AI services. Read how this collaboration is helping strengthen protections for customers in our blog post from Tom Gallagher, VP of Engineering, MSRC: msft.it/6017Q7p73
🗓️ Mark your calendars 🗓️ BlueHat is headed to Singapore, September 17–18. Call for Papers and registration announcements coming soon. 👀
Congratulations to all the researchers recognized in this quarter’s MSRC 2026 Q1 Security Researcher Leaderboard! Thanks to all the researchers who partnered with us for your hard work and continued dedication to securing our customers. Learn more in our blog post: lnkd.in/gRViAQ2U
🚨 New $100,000 RCE award added 🚨 We’ve introduced a new $100,000 Remote Code Execution (RCE) award to the Microsoft Hyper‑V bounty program, recognizing high‑impact guest escape research and rewarding high-quality submissions. Learn more and submit: msft.it/6019Q0oxB
🚨Still time to apply to BlueHat Redmond! 🚨 Due to high interest, we’ve extended the application deadline through April 6. Join the security research community in Redmond on May 5–6. Apply here: aka.ms/bluehatreg
🚨 Last chance for BlueHat Redmond Registration closes March 31 for one of the most unique security research events of the year. Join the security community on May 5-6 for two days of insights, collaboration, and cutting-edge discussions. 👉Register now: aka.ms/bluehatreg
We’re excited to welcome some of the world’s top security researchers to Zero Day Quest 2026. We’re grateful to every researcher who qualified and joined us in person, as well as those participating remotely. Their work and partnership with Microsoft help protect customers and the world.
Security updates for March 2026 are now available. Details are here: msft.it/6018SZEg0 #PatchTuesday