Tag: microsoft

Browse our exclusive articles!

CodeStorm Phishing Kit Uses Tenant-Aware M365 Replay to Hijack Microsoft 365 Accounts

A highly sophisticated Microsoft 365 phishing campaign leveraging the CodeStorm phishing kit. This multi-organization campaign uses a clever mix of rotating frontend infrastructure and...

Microsoft 365 Users Targeted by Device Code Phishing Campaign Using OAuth 2.0 Flow

Cybersecurity researchers have uncovered an active phishing campaign targeting corporate Microsoft 365 users by exploiting the OAuth 2.0 Device Authorization Grant flow. Instead of...

New Browser-in-the-Browser Phishing Attack Targets Microsoft 365 Login Credentials

Cybercriminals have launched a highly deceptive phishing campaign targeting Microsoft 365 users. This operation utilizes a sophisticated technique known as a Browser-in-the-Browser (BitB) attack...

Suspicious Assistive Agent Behavior Detected Through Microsoft Entra Agent ID Logs

As organizations rapidly adopt AI-driven workflows like Microsoft Copilot, security teams face a new challenge: tracking the actions of autonomous and assistive agents. In...

Expiring Microsoft Secure Boot Keys Could Freeze DBX Updates

On June 27, 2026, a core piece of Microsoft’s Secure Boot trust chain quietly reaches end of life, the Microsoft Corporation KEK CA 2011....

Popular

Critical Zscaler Client Connector Vulnerability Allows Remote Code Execution Without Login

A critical vulnerability in its Client Connector endpoint application...

AI Agents Crack 85 Government Accounts and Steal 2,500+ Personnel Records

A suspected near-autonomous intrusion campaign that compromised government entities...

Linux Botnet Uses NVIDIA NIM to Turn Host Telemetry Into Actionable Attack Commands

ToxNetV2, an AArch64 Linux peer-to-peer botnet, has integrated an...

Hackers Access ASOS Customer Accounts Using Stolen Login Credentials

ASOS has notified affected U.S. customers that an unauthorized...

Subscribe

spot_imgspot_img