Spear Phishing
The latest Spear Phishing coverage — news, analysis, and updates from the WindowsNews.AI desk.
Russian APT29 Exploits Microsoft 365 Device Code Flow in Sophisticated Consent Phishing Attacks
The digital battleground has shifted once again, with cybersecurity researchers uncovering a sophisticated Russian state-sponsored campaign exploiting Microsoft 365's authentication infrastructure....
Mustang Panda APT Exploits Microsoft's Mavinject.exe to Bypass Antivirus Detection
The notorious Mustang Panda advanced persistent threat (APT) group has been caught weaponizing Microsoft's legitimate Mavinject.exe tool to bypass antivirus protections in sophisticated...
Safeguarding Microsoft 365: Russian Hackers Bypass MFA via Device Code Exploit
Russian state-sponsored threat actors have been exploiting Microsoft 365's device code authentication flow in sophisticated spear-phishing campaigns targeting government and corporate networks. This...
Microsoft 365 Device Code Phishing: How Storm-2372 Exploits Authentication
In a sophisticated evolution of cyber threats, security researchers have uncovered a spear-phishing campaign that weaponizes Microsoft's legitimate device code authentication process to compromise...
Star Blizzard's Latest Cyberattack: Spear-Phishing on WhatsApp and How Windows Users Can Stay Protected
The cybersecurity landscape has witnessed a new wave of sophisticated attacks, with the notorious hacking group Star Blizzard launching a spear-phishing campaign targeting WhatsApp users. This latest...
CISA Warns: Spear-Phishers Weaponize .RDP Files for Remote Access
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert about an ongoing spear-phishing campaign distributing malicious Remote Desktop Protocol (RDP) files. This...