Cybersecurity researchers have disclosed a new adversary-in-the-middle (AitM) phishing toolkit called NovaCookies, which is used as a proxy to redirect Microsoft 365…
NovaCookies is a subscription-based phishing-as-a-service (PhaaS) toolkit that uses adversary-in-the-middle (AitM) techniques to steal Microsoft 365 sessions. It is sold for $320…
Mirage2FA is a commercial phishing-as-a-service toolkit that targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication. Active from…
Cybersecurity researchers have uncovered new components in the Cavern (aka Cav3rn) command-and-control (C2) framework, used by Iranian nation-state hackers in attacks targeting…
A recent wave of cyber attacks targeting financial services, private equity, and professional services has been attributed to the data extortion group…
Cybersecurity researchers at Arctic Wolf Labs have uncovered a widespread email-driven phishing campaign that uses adversary-in-the-middle (AitM) techniques to compromise Microsoft 365…
AitM phishingArctic Wolf Labsbusiness email compromisecredential theft
Storm-2755 is a financially motivated threat cluster tracked by Microsoft, also known as Payroll Pirates. It hijacks employee accounts to reroute salary…
Storm-2657 is a threat actor tracked by Microsoft, associated with phishing campaigns targeting Microsoft 365 accounts. Documented since early 2025, it shares…