OAuth Client ID Spoofing Exploits Blind Spot in Microsoft Entra ID to Validate Stolen Credentials
Proofpoint has uncovered a novel evasion technique called OAuth client ID spoofing, exploited by at least two threat actors to validate stolen…
Proofpoint has uncovered a novel evasion technique called OAuth client ID spoofing, exploited by at least two threat actors to validate stolen…
UNK_pyreq2323 is a threat cluster that exploited OAuth client ID spoofing from January to March 2026, using over 700,000 spoofed client IDs…
A ransomware campaign that compromised over 250,000 MySQL databases by brute-forcing weak credentials, highlighting the risk of exposed databases.
The FortiBleed campaign is a global cyberattack targeting internet-accessible Fortinet FortiGate devices, compromising 86,644 devices as of June 19, 2026. The attack…
A Russian-speaking initial access broker (IAB) has been linked to a large-scale credential-harvesting operation dubbed FortiBleed, targeting over 430,000 FortiGate firewalls globally…