Device code phishing enabled hackers to bypass multifactor authentication without credentials.
Related Articles
All CyberSecurityDive →Threat cluster launches extortion campaign using social engineering
Researchers said the hackers are compromising business process outsourcers and targeting help desk support. Source link
Canadian authorities warn of hacktivists targeting exposed ICS devices
Canadian authorities on Wednesday warned that hacktivist groups have breached critical infrastructure facilities in recent weeks, including water, energy and agricultural sites, by manipulating industrial…
Trump’s national cyber director nominee dodges criticism of funding cuts
Listen to the article 5 min This audio is auto-generated. Please let us know if you have feedback. President Donald Trump’s nominee for national cyber…
Victoria’s Secret shuts down website in response to security incident
Victoria’s Secret has shut down its website due to a security incident. The lingerie retailer has also paused some in-store services and has temporarily halted its…
Top lawmaker asks White House to address open-source software risks
Listen to the article 3 min This audio is auto-generated. Please let us know if you have feedback. A top Senate Republican is pressing the…
Google probes exploitation of critical Windows service CVE
Google Threat Intelligence Group is investigating a series of attacks linked to a hacker targeting a critical vulnerability in Windows Server Update Service, Cybersecurity Dive…

