UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data
A recent wave of cyber attacks targeting financial services, private equity, and professional services has been attributed to the data extortion group…
A recent wave of cyber attacks targeting financial services, private equity, and professional services has been attributed to the data extortion group…
Scattered LAPSUS$ Hunters (SLH) is a threat actor associated with shared phishing-kit infrastructure. Some vishing attempts have been linked to SLH tradecraft,…
Okta is a primary target for UNC6671's phishing kits and AitM attacks, with the group using fake Okta login pages to capture…
Storm-2657 is a threat actor tracked by Microsoft, associated with phishing campaigns targeting Microsoft 365 accounts. Documented since early 2025, it shares…
ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories Ravie LakshmananAug 06, 2026Hacking News / Cybersecurity News Apparently,…
Kali365, a device code phishing kit, is actively targeting US organizations by abusing Microsoft's legitimate authentication flow. According to ANY.RUN telemetry, the…
RingCentral, a legitimate communication platform, has been impersonated in phishing campaigns that exploit safe sender exclusions. Attackers send spoofed voicemail lures that…
The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has expanded its capabilities to include device code phishing, a technique that abuses the…
Cybersecurity researchers have uncovered an active, multi-wave campaign that uses social engineering lures themed around Adobe and Zoom updates, business document reviews,…
A Chinese-speaking threat actor has been observed running a campaign targeting Apple iOS devices by leveraging a publicly leaked version of the…