Threat Intelligence
The latest Threat Intelligence coverage — news, analysis, and updates from the WindowsNews.AI desk.
The Evolution of Cloud Phishing: Microsoft OAuth Exploitation and AI-Driven Attacks
Phishing campaigns in the cloud era have undergone a fundamental evolution, leveraging both novel attack surfaces and the expanded reach of cloud identity management systems. Nowhere is this...
Microsoft Defender for Office 365 vs ICES Solutions: Comprehensive Email Security Comparison for 2025
In the evolving arms race of cybersecurity, email continues to stand as one of the most targeted entry points for attackers. With ever-more sophisticated phishing campaigns, malware-laden messages,...
2025 Cloud Security Crisis: Microsoft OAuth Phishing Bypasses MFA in Industrialized Cyberattacks
Cloud security defenders in 2025 face their most formidable challenge yet: a global surge of cyberattacks weaponizing Microsoft OAuth to reliably bypass multi-factor authentication (MFA). While...
2025 Microsoft OAuth Phishing Attacks: Evolving Threats Beyond MFA
Phishing campaigns continue to evolve at a staggering pace, keeping security professionals on perpetual alert. In 2025, the latest surge in Microsoft OAuth-centric phishing attacks illustrates just...
2025 Microsoft OAuth Phishing Campaigns: Evolving Threats, MFA Bypass, and Defense Strategies
Phishing campaigns have always evolved alongside enterprise security, but the current wave assaulting Microsoft OAuth in 2025 marks a concerning leap in both sophistication and scale. At a time when...
Microsoft 365 Security: Navigating OAuth Abuse, MFA Bypass, and Evolving Cyber Threats
The escalating arms race between cyber adversaries and defenders is perhaps nowhere more visible than in the evolving threat landscape targeting Microsoft 365. Once considered a relatively safe...
Secret Blizzard Cyber-Espionage Campaign Targets Moscow Embassies via ISP-Level Attacks
Foreign embassies stationed in Moscow are confronting a cyber-espionage campaign that is redefining the digital security landscape for diplomatic missions in authoritarian states. The operation,...
Proofpoint Uncovers AiTM Phishing That Bypasses MFA with Fake Microsoft Apps
Cybersecurity firm Proofpoint has issued an urgent warning about a new breed of phishing campaign that methodically dismantles a core enterprise safeguard: multi-factor authentication. Hackers are...
Secret Blizzard’s AiTM Cyber Espionage Campaign Targets Moscow Diplomatic Missions
Diplomatic missions in Moscow are now contending with a fresh and sophisticated cybersecurity threat: the rise of Secret Blizzard’s adversary-in-the-middle (AiTM) cyber espionage campaign. The...
Kremlin-Linked Hackers Hijack Moscow ISPs to Steal Diplomatic Data via Microsoft 365 OAuth Attacks
The web of Russian cyber-espionage has grown significantly more tangled and audacious over the past several years, evolving into a sophisticated set of campaigns that now target diplomats, NGOs,...
Understanding and Defending Against Multi-Layer Redirect Phishing Attacks on Microsoft 365
In a cybersecurity landscape that’s constantly evolving, Microsoft 365 stands at the epicenter of a digital tug-of-war, where innovation in collaboration tools is matched only by threat actors’...
Thorium: Revolutionizing Automated, Scalable File Analysis for Modern Security Operations
The accelerating landscape of cyber threats puts unprecedented pressure on today’s security operations centers (SOCs) and digital forensics teams. Organizations now face not just a heightened...