Microsoft’s Defender Security Research and Threat Intelligence teams have sounded the alarm on a massive, highly sophisticated...
AiTM
In the world of cyber espionage, discovering a new Command and Control (C2) framework is often a...
In a major technical disclosure, the UK National Cyber Security Centre (NCSC) has detailed a sophisticated campaign...
A new report from Unit 42 has exposed a highly targeted supply chain attack that turned one...
A powerful new cyber weapon has been discovered lurking in routers and edge devices, capable of monitoring...
A notorious cyber-espionage group has spent the last two years conducting a highly targeted surveillance campaign, hijacking...
A new investigation by The Socket Threat Research Team has uncovered a sophisticated spear-phishing operation that has...
The Mimecast Threat Research team, led by Samantha Clarke, has exposed an ongoing credential harvesting campaign (designated...
FIDO-based passkeys are widely regarded as one of the strongest defenses against phishing and account takeover (ATO)...
A new NVISO investigation has revealed the inner workings of PoisonSeed, a sophisticated threat actor whose tactics...
Proofpoint has revealed a persistent wave of adversary-in-the-middle (AiTM) phishing campaigns that exploit Microsoft OAuth applications to...
A covert cyberespionage operation by Russian state actor Secret Blizzard has been targeting foreign embassies in Moscow,...
Cyble Research and Intelligence Labs (CRIL) has uncovered an ongoing global phishing campaign that weaponizes QR codes...
Since September 2023, Trustwaveβs Threat Intelligence Team has been tracking a sophisticated phishing ecosystem operated by Storm-1575,...
Despite widespread adoption of multi-factor authentication (MFA) as a critical safeguard against unauthorized access, cybercriminals are once...
Security researchers at SlashNext have uncovered a disturbing new tool emerging in cybercrime networks: SessionShark O365 2FA/MFA....
Microsoft Threat Intelligence has identified a rising trend of phishing campaigns exploiting legitimate file hosting services like...
According to a new report from Volexity, in mid-2023, the Chinese group StormBamboo (aka Evasive Panda) infiltrated...