BigBear 2.0 uses Evilginx2 to steal Microsoft 365 credentials and session cookies, bypassing MFA through phishing.
First identified in June 2026, the operation targeted Microsoft 365 users and was reportedly still active during the ...
On 28 August 2026 the Home Office announced a series of significant changes to the Sponsor Management System (SMS) that will affect all UK ...
This edition of the weekly cybersecurity newsletter bulletin covers critical zero-day discoveries, nation-state router ...
Unico launches adaptive authentication as AI fraud and "DIY deepfakes" drive a surge in attacks, using behavioral signals and ...
Cybersecurity advice has been the same for two decades. Use a strong password. Turn on two-factor authentication. Change your ...
Huntress vCISO Muhammad Yahya Patel calls the lack of MFA an “indefensible gap” after a Lenovo ID flaw compromised 5,000 ...
The breach, which occurred between August 4 and August 21, allowed attackers to access Dropbox accounts by registering Lenovo ...
Attackers combined synthetic voice replicas of senior executives, adversary-in-the-middle credential harvesting proxies and meticulously ...
Vali Cyber ZeroLock 5 closes the two biggest gaps in hypervisor security: insider threats and stolen credentials on ESX and ...