Phishing
The latest Phishing coverage — news, analysis, and updates from the WindowsNews.AI desk.
Rockstar 2FA phishing steals MFA tokens in real time to hijack Microsoft 365 accounts.
Microsoft 365 users are facing a sophisticated new phishing threat dubbed 'Rockstar 2FA' that bypasses traditional multi-factor authentication (MFA) protections. This advanced adversary-in-the-middle...
SmokeLoader Malware Exploits MS Office Vulnerabilities to Target Taiwan's Industries
SmokeLoader Malware: Targeting Taiwan's Industries with Office Exploits Recent cybersecurity reports have uncovered a sophisticated malware campaign targeting Taiwanese industries using SmokeLoader,...
Understanding the Rise of AiTM Cyberattacks Targeting Microsoft 365 Users
In recent months, a sophisticated wave of Adversary-in-the-Middle (AiTM) cyberattacks has been targeting Microsoft 365 users, posing significant threats to organizational security. These attacks...
Windows Resiliency Initiative: Quick Recovery & New Kernel Security
Microsoft's Windows Resiliency Initiative: Strengthening Digital Security In response to rising cybersecurity challenges and recent critical incidents affecting Windows systems worldwide, Microsoft...
Rockstar 2FA Bypasses MFA to Hijack Microsoft 365 Accounts
Microsoft 365 users are facing a sophisticated new phishing threat that bypasses traditional multi-factor authentication (MFA) protections. Dubbed 'Rockstar 2FA' by cybersecurity researchers, this...
Securing Microsoft 365: Defending Against Evolving Cyber Threats in the Cloud
In today's digitally driven workplace, Microsoft 365 has become the central nervous system for millions of organizations worldwide—a reality that cybercriminals exploit with increasingly...
Microsoft 365 Admins Face Surge in Phishing Attacks Stealing Login Credentials
Microsoft 365 users are facing a surge in sophisticated phishing attacks that cleverly impersonate the platform's Admin Portal. Cybersecurity researchers have identified a new wave of scams that...
USDA's Phishing-Resistant MFA Implementation: A Cybersecurity Success Story
The U.S. Department of Agriculture (USDA) has emerged as a leader in federal cybersecurity by successfully implementing phishing-resistant multi-factor authentication (MFA) across its vast network....
Microsoft 365 Vulnerability Exposed: How Sextortion Emails Bypass Security Protections
A concerning vulnerability in Microsoft 365's email filtering system is allowing sophisticated sextortion scams to bypass built-in security protections, putting millions of users at risk....
Scammers Exploit Stolen Microsoft 365 Logins in New Sextortion Wave
Beware: Sextorsion Emails Target Microsoft 365 Users A dangerous new wave of sextortion scams is targeting Microsoft 365 users, leveraging stolen credentials and psychological manipulation to extort...