OpenID Connect — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
March 6, 2026
Last Seen
July 24, 2026

OpenID Connect is a technology platform tracked across 4 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed March 6, 2026; most recent activity July 24, 2026.

Related Threat Clusters

  • Critical SimpleHelp Vulnerability Exploited for Malware Delivery

    A maximum-severity vulnerability in SimpleHelp's RMM software, tracked as CVE-2026-48558, has been exploited to deliver two new malware families: TaskWeaver and Djinn Stealer. The flaw allows unauthenticated attackers…

    3 articles · Updated June 30, 2026
  • New CVSS 10.0 Vulnerability CVE-2026-29000 Discovered

    A new CVSS 10.0 vulnerability, CVE-2026-29000, was published on March 4, 2026, allowing attackers to bypass authentication in the pac4j-jwt library, enabling impersonation of any user, including administrators. This…

    2 articles · Updated March 6, 2026
  • Federation Outages Impacting Single Sign-On Systems

    Federation outages can lead to abrupt authentication failures, locking users out of applications relying on SAML and OAuth protocols. When identity providers (IdPs) fail, users lose access to all federated applications…

    2 articles · Updated July 24, 2026
  • Microsoft Entra ID Enhances MFA Options for Organizations

    Microsoft has announced the general availability of external multifactor authentication (MFA) for Microsoft Entra ID, allowing organizations to integrate third-party MFA solutions. This feature is designed to help…

    3 articles · Updated March 26, 2026

Recent Intelligence Reports

  • Federation and Single Sign-On: How SSO Works and When It Breaks — Feeds.Feedburner · July 24, 2026
  • Critical flaw in SimpleHelp exploited in attacks targeting sensitive credentials — Cybersecuritydive · June 30, 2026
  • Using OpenID Connect (OIDC) for external MFA in Entra ID — Feeds.4Sysops · March 26, 2026
  • Why CVSS 10 Vulnerabilities Are So Dangerous (Real Examples) — Codeant.Ai · March 6, 2026

CVSS v3.1 Breakdown