Hackers Can Hijack Your MFA Enabled Email Accounts By Stealing Cookies
MFA enhances the security of email accounts by requiring users to provide additional verification beyond just their password.
Implementing MFA reduces the risk of unauthorized access which makes it a critical security measure for protecting...
Nintendo Warns Users on Phishing Attack Mimics Company’s Email
The gaming giant Nintendo has warned its users about a sophisticated phishing campaign that impersonates official Nintendo communications.
This latest cybersecurity threat comes as scammers deploy increasingly deceptive tactics to target the gaming community.
Cybercriminals are...
Hackers Exploiting Roundcube XSS Vulnerability To Steal Login Credentials
Security researchers have uncovered a new phishing campaign targeting users of the popular open-source Roundcube webmail software.
Unknown threat actors are exploiting a now-patched cross-site scripting (XSS) vulnerability to steal login credentials from unsuspecting...
Zendesk Email Spoofing Flaw Let Attackers Gain Access To Support Tickets
A severe vulnerability in Zendesk, a widely used customer service tool, has been exposed, allowing attackers to gain unauthorized access to sensitive support tickets of numerous Fortune 500 companies.
The flaw, discovered by a...
North Korean APT Hackers Exploiting DMARC Misconfigs For Phishing Attacks
DMARC is an email authentication protocol that helps domain owners protect against unauthorized use like "email spoofing" and "phishing attacks."
By leveraging existing protocols like "SPF" and "DKIM," DMARC enables domain owners to publish policies...
Beware of Work Email Security Alert that Steals Your Login Credentials
A new phishing scam is targeting employees by exploiting their sense of responsibility and concern for email security. The attack begins with an email purportedly from "The Office 365 Team," alerting the recipient of...
How Phishing Messages Break Through Email Filters – Report
Phishing remains a persistent danger. It's an email-based cyber threat through which threat actors target sensitive user credentials and distribute malware.
More than 963,000 attacks were discovered recently in the APWG's Phishing Activity Trends Report...
Microsoft 365 Flags Users Email Messages Having Images Flagged as Malware
Microsoft 365 has acknowledged an issue affecting its Exchange Online service, where some users' email messages containing images are being incorrectly flagged as malware and quarantined.
This problem, identified under Issue ID EX873252, has been...
Critical XSS Vulnerability In Roundcube Let Attackers Execute Arbitrary Code
Roundcube, a widely adopted open-source webmail application, is included by default in the popular cPanel web hosting control panel, leading to millions of installations worldwide.
The software is commonly used by universities and government agencies,...
Tricky OneDrive Phishing Campaign Tricks Users To Execute PowerShell Script
A sophisticated phishing campaign targets Microsoft OneDrive users, employing social engineering to trick victims into executing malicious PowerShell scripts.
The attack leverages a false sense of urgency by claiming a DNS issue prevents file access,...