Phishing
The latest Phishing coverage — news, analysis, and updates from the WindowsNews.AI desk.
Russian Cyber-Espionage Targets Ukrainian NGOs with OAuth Attacks on Microsoft 365
In the ever-evolving landscape of cyber warfare, a disturbing trend has emerged targeting Ukrainian non-governmental organizations (NGOs) through sophisticated OAuth attacks as part of Russian...
Windows Defender Falls Short in 2025: Third-Party Tools Still Required for Advanced Threats
In 2025, Windows Defender, Microsoft's built-in antivirus solution, continues to serve as the first line of defense for Windows users. While it offers essential protection, evaluating its adequacy in...
Russian State Hackers Weaponize Microsoft 365 OAuth Tokens in 2023 Campaigns
Introduction In 2023, cybersecurity researchers identified a series of sophisticated cyber attacks orchestrated by Russian state-sponsored actors targeting Microsoft 365 environments. These...
Russian Hackers Exploit OAuth to Target Ukraine NGOs via Microsoft 365
In a chilling reminder of the persistent dangers lurking in the digital realm, Russian threat actors have been reported to exploit OAuth vulnerabilities to compromise Microsoft 365 accounts,...
OAuth Phishing in Microsoft 365: A Growing Cybersecurity Threat for Windows Users
In the ever-evolving landscape of cybersecurity, a particularly insidious threat has emerged, targeting the trust users place in familiar platforms like Microsoft 365. Cybercriminals are increasingly...
Russian Hackers Target Microsoft 365: OAuth Exploits and Cybersecurity Threats
In the ever-evolving landscape of cybersecurity, a chilling new threat has emerged targeting Microsoft 365 users worldwide. Russian hackers, often linked to state-sponsored groups, have refined their...
EUC Security Trends 2025: AI Integration, Endpoint Management Convergence, and Advanced Email Threats
Introduction The landscape of End-User Computing (EUC) security is undergoing significant transformations as we progress through 2025. Key developments include the integration of Artificial...
Securing Microsoft 365: Combatting Social Engineering and OAuth Threats in 2023
In an era where digital transformation has become the backbone of business operations, Microsoft 365 stands as a cornerstone for millions of organizations worldwide, powering productivity through...
Arkose Labs and Microsoft Azure Partner to Redefine Enterprise Fraud Defense with AI
In an era where cyber threats loom larger than ever, the partnership between Arkose Labs and Microsoft Azure is stepping up to redefine fraud defense for enterprises worldwide. This expanded...
Arkose Labs and Microsoft Partner to Revolutionize AI-Driven Cybersecurity
In an era where cyber threats evolve at an unprecedented pace, a groundbreaking partnership between Arkose Labs and Microsoft is set to redefine the landscape of AI-driven cybersecurity. This...
AI-Driven Scams Targeting Windows Users via Quick Assist: How to Stay Safe
In an era where technology is both a lifeline and a potential trap, Windows users are increasingly finding themselves targeted by sophisticated AI-driven scams that exploit trust and familiarity. One...
From Low-Risk Flaw to Global Cyber Pandemic: The Rapid Exploitation of Windows Vulnerability CVE-2025-24054
Introduction In March 2025, Microsoft released a security update addressing CVE-2025-24054, a vulnerability in Windows NTLM authentication initially deemed "less likely" to be exploited. However,...