In March 2026, the EvilTokens phishing kit emerged as a significant threat, allowing cybercriminals to bypass multi-factor authentication (MFA) and compromise Microsoft 365 accounts. This Phishing-as-a-Service (PhaaS)…
In early 2026, a surge in phishing attacks utilizing Amazon Simple Email Service (SES) has been reported, exploiting exposed AWS Identity and Access Management (IAM) access keys. Attackers leverage this trusted email…
A new Python-based malware framework named TwinLoot has been discovered, utilizing Microsoft Azure and 365 services for command-and-control (C2) operations. Researchers from Ontinue Cyber Defense Center identified the…
In a recent cybersecurity incident, attackers exploited an exposed Spring Boot Actuator endpoint to harvest credentials from leaked configuration data. They utilized the OAuth2 Resource Owner Password Credentials (ROPC)…
Microsoft is enhancing its Purview Data Loss Prevention (DLP) controls to prevent the Microsoft 365 Copilot AI from processing sensitivity-labeled files across all storage locations, including local devices. Previously,…