Articles

Practical cybersecurity intelligence for defenders.

🔴
CVE & Security Advisories
Latest vulnerability advisories from CISA, NVD, and security feeds →
Threat Intelligence

FBI Warns Kali365 PhaaS Platform Bypasses Microsoft 365 MFA Through OAuth Token Theft

According to the FBI advisory, Kali365 enables threat actors to bypass multi-factor authentication (MFA) protections without directly stealing user passwords. Instead, attackers abuse legitimate Microsoft authentication workflows to trick victims into authorizing attacker-controlled sessions.

Read Full Article
Threat Intelligence

Iranian Hackers Deploy MiniFast and MiniJunk V2 in Expanding Espionage Campaigns Using AI and SEO Poisoning

An Iranian state-sponsored cyber espionage group known as Nimbus Manticore has been linked to a new wave of highly targeted intrusion campaigns leveraging AI-assisted malware development, SEO poisoning, phishing operations, and trojanized enterprise software installers.

Read Full Article