Microsoft 365 OAuth attack incidents have surged in recent years, making the platform one of the major targets for cybercriminals. Microsoft’s 2024 Digital Defense Report states that over 600 million cyberattacks occur daily, covering threats such as ransomware, phishing, and identity-based attacks. Between July 2023 and June 2024, human-operated ransomware incidents increased by 275%, showing […]
Google Play Store removed apps that were secretly stealing user data, exposing millions of Android devices to security threats. These malicious apps contained KoSpy spyware, linked to North Korean hacking group APT37 (ScarCruft). They remained undetected for over two years, collecting sensitive information such as call logs, messages, and GPS locations. If any of these […]
The ClickFix attack is a sophisticated phishing campaign that impersonates Booking.com to deliver infostealers and Remote Access Trojans (RATs) to hospitality workers. This phishing attack specifically targets individuals in hospitality organizations in North America, Oceania, South and Southeast Asia, and Northern, Southern, Eastern, and Western Europe, who are most likely to work with Booking.com. Attackers […]