Hackers Can Hijack Your MFA Enabled Email Accounts By Stealing Cookies

Hackers Can Hijack Your MFA Enabled Email Accounts By Stealing Cookies

MFA enhances the security of email accounts by requiring users to provide additional verification beyond just their password. Implementing MFA reduces the risk of unauthorized access which makes it a critical security measure for protecting...
Nintendo Warns Users About Sophisticated Phishing Campaign Mimicking Official Emails

Nintendo Warns Users on Phishing Attack Mimics Company’s Email

The gaming giant Nintendo has warned its users about a sophisticated phishing campaign that impersonates official Nintendo communications. This latest cybersecurity threat comes as scammers deploy increasingly deceptive tactics to target the gaming community. Cybercriminals are...
Hackers Exploiting Roundcube XSS Vulnerability To Steal Login Credentials

Hackers Exploiting Roundcube XSS Vulnerability To Steal Login Credentials

Security researchers have uncovered a new phishing campaign targeting users of the popular open-source Roundcube webmail software. Unknown threat actors are exploiting a now-patched cross-site scripting (XSS) vulnerability to steal login credentials from unsuspecting...
Zendesk Email Spoofing Vulnerability

Zendesk Email Spoofing Flaw Let Attackers Gain Access To Support Tickets

A severe vulnerability in Zendesk, a widely used customer service tool, has been exposed, allowing attackers to gain unauthorized access to sensitive support tickets of numerous Fortune 500 companies. The flaw, discovered by a...
North Korean APT Hackers Exploiting DMARC Misconfigs For Phishing Attacks

North Korean APT Hackers Exploiting DMARC Misconfigs For Phishing Attacks

DMARC is an email authentication protocol that helps domain owners protect against unauthorized use like "email spoofing" and "phishing attacks." By leveraging existing protocols like "SPF" and "DKIM," DMARC enables domain owners to publish policies...
Beware of Work Email Security Alert that Steals Your Login Credentials

Beware of Work Email Security Alert that Steals Your Login Credentials

A new phishing scam is targeting employees by exploiting their sense of responsibility and concern for email security. The attack begins with an email purportedly from "The Office 365 Team," alerting the recipient of...
How Phishing Messages Break Through Email Filters – Report

How Phishing Messages Break Through Email Filters – Report

Phishing remains a persistent danger. It's an email-based cyber threat through which threat actors target sensitive user credentials and distribute malware. More than 963,000 attacks were discovered recently in the APWG's Phishing Activity Trends Report...
Microsoft 365 Flags Images Malware

Microsoft 365 Flags Users Email Messages Having Images Flagged as Malware

Microsoft 365 has acknowledged an issue affecting its Exchange Online service, where some users' email messages containing images are being incorrectly flagged as malware and quarantined. This problem, identified under Issue ID EX873252, has been...
Critical XSS Vulnerability In Roundcube Let Attackers Execute Arbitrary Code

Critical XSS Vulnerability In Roundcube Let Attackers Execute Arbitrary Code

Roundcube, a widely adopted open-source webmail application, is included by default in the popular cPanel web hosting control panel, leading to millions of installations worldwide.  The software is commonly used by universities and government agencies,...
Tricky OneDrive Phishing Campaign Tricks Users To Execute PowerShell Script

Tricky OneDrive Phishing Campaign Tricks Users To Execute PowerShell Script

A sophisticated phishing campaign targets Microsoft OneDrive users, employing social engineering to trick victims into executing malicious PowerShell scripts.  The attack leverages a false sense of urgency by claiming a DNS issue prevents file access,...

Recent Posts

CyTwist Launches Advanced Security Solution to identify AI-Driven Cyber Threats in...

CyTwist, a leader in advanced next-generation threat detection solutions, has launched its patented detection engine to combat the insidious rise of AI-generated malware. The cybersecurity...