Google OAuth Abused in Phishing Attacks
Google OAuth is a legitimate authentication service that has been abused by Russian threat actors to steal authentication tokens and hijack accounts.…
Google OAuth is a legitimate authentication service that has been abused by Russian threat actors to steal authentication tokens and hijack accounts.…
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More Ravie LakshmananAug 20, 2026Hacking News / Cybersecurity News A…
A new Android malware family named Manic has been discovered by ThreatFabric, actively targeting Ukrainian banks, government and identity services, messaging apps,…
A set of 40 malicious Mozilla Firefox extensions has been discovered masquerading as popular Web3 products like OKX, Rabby Wallet, and TronLink…
Seven malicious Firefox extensions use threat actor-controlled Supabase projects to dynamically serve phishing or decoy content, abusing the platform's infrastructure.
Phishing has evolved from malicious content (Phishing 1.0) to malicious intent (Phishing 2.0) and now to AI-powered, multi-channel attacks (Phishing 3.0). In…
IRONSCALES is an email security company offering AI-driven products like Red Teaming Agent, Phishing SOC Agent, and Phishing Simulation Agent. Their Adaptive…
Osterman Research conducted a study commissioned by IRONSCALES, revealing that 88% of security leaders experienced incidents undermining trust in digital communications, and…
Microsoft 365 EOP is a cloud-based email filtering service. IRONSCALES analysis shows it misses 293 phishing messages per 100 mailboxes every 30…
This agent trains employees against reconnaissance-based attacks using personalized simulations based on real tactics, improving awareness and response.