Azure AD is a technology platform tracked across 8 threat clusters and 9 intelligence report mentions on ThreatCluster. First observed February 6, 2026; most recent activity July 20, 2026.
Group-IB has identified HOLLOWGRAPH, a sophisticated Windows malware that abuses the Microsoft Graph API to covertly exfiltrate files and receive commands through compromised Microsoft 365 calendar events. The malware…
In March 2026, the EvilTokens phishing kit emerged as a significant threat, allowing cybercriminals to bypass multi-factor authentication (MFA) and compromise Microsoft 365 accounts. This Phishing-as-a-Service (PhaaS)…
In a recent cybersecurity incident, attackers exploited an exposed Spring Boot Actuator endpoint to harvest credentials from leaked configuration data. They utilized the OAuth2 Resource Owner Password Credentials (ROPC)…
Cybercriminals have discovered a method to exploit Microsoft's internal email system, specifically the [email protected] address, to send phishing emails that appear legitimate. This vulnerability…
Simply Data's Malaysia Cyber Threat Report 2025 reveals that Microsoft 365 was involved in 32% of escalated security incidents among Malaysian organizations. The report analyzed over 120.6 billion security logs,…
In 2026, the rise of agentic AI is transforming how businesses operate, particularly in the financial services sector. This new technology allows for autonomous decision-making, which increases the potential impact of…
Zafran has introduced a threat exposure management platform on AWS, emphasizing the need for continuous threat exposure management (CTEM) in vulnerability management. This platform leverages AI-powered approaches and…
Hackers are targeting Microsoft Entra accounts through a combination of device code phishing and voice phishing (vishing). Victims, primarily from technology, manufacturing, and financial sectors, are deceived into…