
Defence
Stolen AI Session Tokens Bypass MFA in Infostealer Campaign
Threat actors are using stolen session tokens and API keys from infostealer logs to bypass multi-factor authentication and hijack AI service accounts.
Every Cybersecurity story tagged Multi-factor authentication and phishing resistance.

Threat actors are using stolen session tokens and API keys from infostealer logs to bypass multi-factor authentication and hijack AI service accounts.

A global phishing campaign using fake documents to deploy legitimate remote monitoring and management software has made the United States its primary target.

Attackers are exploiting MikroTik routers with internet-exposed SSH services to gain full administrative control without authentication.