Threat actors are increasingly turning legitimate software into part of their attack chains. Instead of deploying an obviously malicious executable, attackers can abuse trusted tools that already have ...
Mirage2FA uses AiTM phishing to steal Microsoft 365 credentials and authenticated sessions, bypassing conventional MFA and ...
There is no new OWASP list in 2026: the Top 10:2025 is the current standard. All 10 risks explained, what changed since 2021, ...
An advanced malware family brings back a trick from yesteryear — screen hijacking — for effective password theft, along with ...
A critical vulnerability in the Node.js sandboxing library, isolated-vm, has exposed a serious risk to AI agents, automation ...
Kaspersky researchers found 92,000 malicious attacks disguised as AI services in 2026, with fake ChatGPT, Claude and Gemini ...
Zuma’s retraction of vote-buying claims; ActionSA sues ANC’s Maepa over alleged AI-fake claims; And, son of Uganda's ...
For most defenders, a phishing alert ends with a forced password change. Mirage2FA is built to make that response useless.
Malware is abusing car infotainment updates to install proxy software, turning Android head units into nodes for the BADBOX ...
A phishing-as-a-service (PhaaS) toolkit tracked as Mirage2FA has been linked to the potential compromise of 4,532 Microsoft ...
Apple has started sending some users push notifications warning that they have been targeted with specific malware. No specific information about the threat Apple detected is available. While ...