Microsoft has resealed the seams of its patch of a 2020 Outlook vulnerability after a bypass was found, according to the researcher who found both the original vulnerability and its bypass.
The U.S. was the leading target of phishing attacks worldwide during the third quarter of 2021, as phishing attacks aimed at the country rose by 43% between the second and third quarters. The U.S. was also the primary hosting country for such attacks, according to a report from Outseer.
Secureworks researchers say threat actors either extort the victims for ransom or if the victim refused to pay, sell the corporate Instagram accounts on the dark web.
Stony Brook University and Palo Alto Networks researchers have discovered 1,220 phishing sites using man-in-the-middle phishing toolkits that could intercept and bypass two-factor authentication codes between March 2020 and March 2021, which was significantly higher than the nearly 200 active phishing sites with reverse proxies between late 2018 and 2019.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.