Related Threat Clusters
-
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
A DNS poisoning campaign has compromised hotel and conference center Wi-Fi gateways to steal Microsoft 365 login credentials from corporate travelers. The campaign has been active since at least June 2026, affecting…
73 articles · Updated July 24, 2026 -
Global Takedown of Tycoon2FA Phishing Service Disrupts Major Cybercrime Operation
A coordinated international effort led by Microsoft and Europol has dismantled Tycoon2FA, a significant phishing-as-a-service platform responsible for bypassing multi-factor authentication and enabling large-scale…
59 articles · Updated March 5, 2026 -
New Cyber Extortion Groups Target Critical Infrastructure with Phishing Tactics
Two threat groups, Cordial Spider and Snarky Spider, affiliated with The Com, are targeting U.S. organizations across various critical infrastructure sectors for rapid data theft and extortion. Their operations,…
5 articles · Updated May 1, 2026 -
Vishing Campaigns Target Organizations via Microsoft Teams and New Operator Console
A vishing campaign, tracked as STAC4749, targeted North American organizations from February to June 2026, using Microsoft Teams to impersonate IT personnel and gain remote access. Attackers deployed a modular toolset,…
9 articles · Updated July 29, 2026 -
Phishing Campaign Exploits Microsoft Login for Corporate Account Compromise
A recent phishing campaign has targeted over 120 organizations by using Microsoft's legitimate sign-in screen to compromise Outlook, SharePoint, and OneDrive accounts. The attackers sent emails disguised as Microsoft…
4 articles · Updated July 30, 2026 -
Rebranded Vishing Group UNC6671 Targets M&A Firms with Extortion Tactics
The Google Threat Intelligence Group (GTIG) reported that the extortion group UNC6671, previously known as BlackFile, has rebranded to Redact and expanded its operations. Despite claiming to have retired in May 2026,…
10 articles · Updated August 7, 2026 -
AI-Driven Email Threats Surge in 2026, Barracuda Awarded for Security Solution
In 2026, email remains the primary entry point for cyberattacks, with MSPs facing increased threats from AI-generated phishing and business email compromise (BEC). Acronis highlights the inadequacy of native Microsoft…
2 articles · Updated August 18, 2026 -
Escalating Threats from AI-Generated Impersonation Scams
SentientX AI Innovators is expanding its Human Identity Bank initiative to combat the rise of synthetic media, which poses significant challenges in verifying authenticity. As voice cloning and deepfake technologies…
2 articles · Updated May 28, 2026 -
Ransomware Fuels Surge in Global Cyberattacks
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
1908 articles · Updated February 12, 2026 -
Majority of Ransomware Attacks Occur During Holidays and Weekends
A study by Semperis reveals that 52% of ransomware attacks target organizations during holidays and weekends, exploiting reduced cybersecurity staffing. The report surveyed 1,500 IT and security professionals across ten…
23 articles · Updated November 24, 2025
Recent Intelligence Reports
- CISA: Medusa ransomware hit over 500 critical infrastructure orgs — Bleepingcomputer · August 19, 2026
- Best email security solutions for MSPs in 2026: a buyer's guide — Acronis · August 18, 2026
- Targeted Campaign Us Law Firms — cloud.google.com · August 16, 2026
- Google Links Redact Extortion Group to BlackFile Rebrand — Infosecurity-Magazine · August 7, 2026
- ReliaQuest — reliaquest.com · August 5, 2026
- Teams — Infosecurity-Magazine · July 30, 2026
- Hackers Pose as IT Helpdesk on Microsoft Teams to Deploy Chaos Ransomware — Gbhackers · July 30, 2026
- Hotel Wi — Feeds.4Sysops · July 24, 2026