Related Threat Clusters
-
CISA Urges Endpoint Security Enhancements After Stryker Cyberattack
On March 11, 2026, medical technology firm Stryker experienced a significant cyberattack attributed to the Iran-linked hacking group Handala. The attack exploited vulnerabilities in Stryker's Microsoft Intune endpoint…
45 articles · Updated March 19, 2026 -
Critical Vulnerability in Microsoft Entra ID Allows Service Principal Hijacking
A critical scoping vulnerability was identified in Microsoft Entra ID's Agent Identity Platform, enabling users with the Agent ID Administrator role to hijack arbitrary service principals within an organization's…
9 articles · Updated April 25, 2026 -
OAuth Client ID Spoofing Threatens Microsoft Entra Security
Cybercriminals are increasingly using OAuth client ID spoofing to conduct account enumeration against Microsoft Entra, the identity management service. This method allows attackers to infer username and password…
12 articles · Updated July 13, 2026 -
Identity Threats and Rogue AI Exploits in Microsoft 365
Recent assessments reveal significant vulnerabilities in Microsoft 365 environments, with identity-based attacks accounting for 79% of critical incidents. A demonstration showed how a fictional user, 'Standard Steve,'…
4 articles · Updated June 30, 2026 -
Massive Azure Data Breach Exposes 3.6 Million Employee Records from Major Corporations
A threat actor known as 'TheHatman' has claimed responsibility for a significant data breach involving employee directories from nine major companies, including McDonald's, Vodafone, and Tata Consultancy Services (TCS).…
30 articles · Updated August 16, 2026 -
Amgen Data Breach Exposes Patient PHI via Third-Party Cloud Vendors
Amgen disclosed a data breach affecting patient protected health information (PHI) and proprietary data stored in third-party cloud environments. The breach was detected in July 2026, with attackers exploiting…
7 articles · Updated August 1, 2026 -
FIFA World Cup API Flaw Allows Unauthorized Broadcast Control
A security researcher, known as BobDaHacker, exploited a vulnerability in FIFA's backend API by registering as a player agent, which granted her unauthorized access to internal systems. This flaw allowed full control…
6 articles · Updated June 16, 2026 -
Zara Data Breach Exposes Information of 197,000 Customers
Zara experienced a data breach affecting over 197,000 customers, attributed to the ShinyHunters extortion group. The breach involved a compromise of the Anodot analytics platform, leading to the theft of unique email…
6 articles · Updated May 8, 2026 -
Misconfigured Server Exposes Evilginx Phishing Operations Targeting Microsoft 365
A misconfigured server in Budapest has exposed a phishing operation targeting Microsoft 365 users. The server was running a Python HTTP server with directory listing enabled, allowing access to phishing configurations…
5 articles · Updated July 13, 2026 -
Vishing Campaign Targets Microsoft 365 Passkey Enrollment Process
Since April 2026, a threat actor identified as O-UNC-066, also known as 'Pink', has been executing a vishing campaign aimed at Microsoft 365 users. The campaign exploits a new passkey enrollment feature introduced by…
13 articles · Updated July 8, 2026
Recent Intelligence Reports
- Crook hawks millions of records allegedly plundered from corporate Azure tenants — Theregister · August 17, 2026
- Amgen Patient PHI Stolen via Vendor Cloud: HIPAA and SEC Clocks Both Running — Techtimes · August 1, 2026
- Abbott Laboratories probes two cyber incidents amid extortion claims — Bleepingcomputer · July 17, 2026
- Opendir To Phishing Operator — blog.lexfo.fr · July 14, 2026
- Hackers find a new trick to collect Microsoft Entra user data without raising red flags — Cybersecuritydive · July 13, 2026
- Okta’s advisory — www.okta.com · July 11, 2026
- Entra passkey enrollment vishing targets Microsoft 365 users — Bleepingcomputer · July 8, 2026
- Securing Microsoft 365 against rogue AI agents and identity threats — Feeds.4Sysops · June 30, 2026