OpenID Connect is a technology platform tracked across 4 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed March 6, 2026; most recent activity July 24, 2026.
A maximum-severity vulnerability in SimpleHelp's RMM software, tracked as CVE-2026-48558, has been exploited to deliver two new malware families: TaskWeaver and Djinn Stealer. The flaw allows unauthenticated attackers…
A new CVSS 10.0 vulnerability, CVE-2026-29000, was published on March 4, 2026, allowing attackers to bypass authentication in the pac4j-jwt library, enabling impersonation of any user, including administrators. This…
Federation outages can lead to abrupt authentication failures, locking users out of applications relying on SAML and OAuth protocols. When identity providers (IdPs) fail, users lose access to all federated applications…
Microsoft has announced the general availability of external multifactor authentication (MFA) for Microsoft Entra ID, allowing organizations to integrate third-party MFA solutions. This feature is designed to help…