Cybersecurity professionals have long advised users to verify domain names before entering credentials. However, a newly observed phishing campaign is turning this fundamental advice...
A highly sophisticated Phishing-as-a-Service (PhaaS) platform, ARToken, is actively targeting Microsoft 365 users by chaining together Cloudflare Workers and lookalike SharePoint tenants to bypass...
A highly sophisticated Microsoft 365 phishing campaign leveraging the CodeStorm phishing kit. This multi-organization campaign uses a clever mix of rotating frontend infrastructure and...
Cybersecurity researchers have uncovered an active phishing campaign targeting corporate Microsoft 365 users by exploiting the OAuth 2.0 Device Authorization Grant flow.
Instead of...
Cybercriminals have launched a highly deceptive phishing campaign targeting Microsoft 365 users. This operation utilizes a sophisticated technique known as a Browser-in-the-Browser (BitB) attack...