OAuth Client ID Spoofing Exploits Blind Spot in Microsoft Entra ID to Validate Stolen Credentials
Proofpoint has uncovered a novel evasion technique called OAuth client ID spoofing, exploited by at least two threat actors to validate stolen…
Proofpoint has uncovered a novel evasion technique called OAuth client ID spoofing, exploited by at least two threat actors to validate stolen…
UNK_pyreq2323 is a threat cluster that exploited OAuth client ID spoofing from January to March 2026, using over 700,000 spoofed client IDs…
A ransomware campaign that compromised over 250,000 MySQL databases by brute-forcing weak credentials, highlighting the risk of exposed databases.
The threat actor used AI for password cracking to compromise WordPress admin panels, successfully gaining access in some cases.
The FortiBleed campaign is a global cyberattack targeting internet-accessible Fortinet FortiGate devices, compromising 86,644 devices as of June 19, 2026. The attack…
A Russian-speaking initial access broker (IAB) has been linked to a large-scale credential-harvesting operation dubbed FortiBleed, targeting over 430,000 FortiGate firewalls globally…