The FBI has issued a warning regarding the Kali365 phishing kit, which is actively stealing Microsoft OAuth tokens and bypassing multi-factor authentication (MFA) protocols. First identified in April 2026, Kali365 is…
AI has significantly enhanced phishing tactics, making traditional blocklists obsolete. Attackers utilize AI to generate phishing pages from screenshots in mere minutes, leading to a rapid turnover of phishing domains.…
A sophisticated phishing campaign has been identified that routes victims through Google services, including Google Meet and Google Ads, before landing on a credential-harvesting page for Microsoft 365. This method…
Cavalier has introduced three new Threat Feed modules: C2 Data, ClickFix, and PhaaS, aimed at enhancing visibility into infostealer operations. The C2 Data module provides access to command-and-control (C2) servers…