Cybernews reports that more than 200,000 law firms and legal teams around the world could have their sensitive client documents compromised through a phishing vulnerability in vLex's Vincent AI assistant, which could be exploited through concealed HTML code.
Cybernews reports that nearly 3,200 Check Point customers have been targeted with 9,394 phishing emails with the official Google domain crafted through Google Cloud automation tool exploitation over the past two weeks.
On this episode, Brian Long, CEO and Co-Founder of Adaptive Security, takes us through his journey from digital-marketing entrepreneur to building and funding a cybersecurity start-up.
This campaign utilizes a commodity loader that shares common features with other attack campaigns, suggesting a unified malware delivery framework used by multiple high-capability threat actors.
The Nigerian police's National Cybercrime Centre has arrested suspected RaccoonO365 phishing-as-a-service kit developer Okitipi Samuel and two others through information from the FBI, the U.S. Secret Service, and Microsoft, according to The Record, a news site by cybersecurity firm Recorded Future.
Threat actors have ramped up phishing campaigns harnessing Microsoft's OAuth device code authorization flow to compromise Microsoft 365 accounts since September, according to Infosecurity Magazine.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.