Email authentication
Split by 2 values across our cybersecurity reporting, including SPF and DKIM and DMARC, drawing on the 9 reports filed on it so far.

Former Air Force members sentenced for BEC
Two former US Air Force members stationed at Dover Air Force Base have been sentenced to a combined 189 months in prison for a business email...

Phishing Campaign Abuses Microsoft 365 Direct Send Feature
A phishing campaign exploiting Microsoft 365's Direct Send feature sent nearly 30,000 emails, primarily during US Eastern business hours, to bypass...

Stolen AI Session Tokens Bypass MFA in Infostealer Campaign
Threat actors are using stolen session tokens and API keys from infostealer logs to bypass multi-factor authentication and hijack AI service accounts...

MikroTik Routers Hijacked via Internet-Exposed SSH
Attackers are exploiting MikroTik routers with internet-exposed SSH services to gain full administrative control without authentication, according to...

Microsoft Warns of High-Volume Phishing Campaign Using
Microsoft has alerted of a phishing campaign using invisible Unicode tag characters to split financial keywords and evade email filters, with peak...

Critical JFrog Artifactory Flaw Exploited
Threat actors are exploiting CVE-2026-82329, a critical authentication bypass in JFrog Artifactory, to mint administrator tokens.

SVG Voicemail Phishing Campaign Hits 5,527
A two-month phishing campaign used SVG attachments disguised as voicemail files to deliver obfuscated JavaScript, bypassing email defenses.

Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts
Three suspected Russian cyber espionage threat clusters have been observed leveraging legitimate authentication flows to compromise personal accounts...

SharePoint Authentication Bypass Exploited After PoC Release
Threat actors are actively exploiting a critical SharePoint vulnerability (CVE-2026-55040) after a proof-of-concept exploit was publicly released...