mitre-t1566
1469 articles with this tag
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
CRITICAL
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
LOW
CRITICAL
CRITICAL
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
MEDIUM
CRITICAL
CRITICAL
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
MEDIUM
HIGH
Microsoft Teams vishing attacks lead to Chaos ransomware attacks
Laundry Bear’s new Microsoft Exchange attack triggers on email open (CVE-2026-42897)
Teams-Themed Phishing Campaign Abused Legitimate Microsoft Login Pages
Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks
Flying Eagle Android RAT source code circulates on Telegram
Health-ISAC warns of ShinyHunters' increasing attacks on healthcare SSO accounts
'Flying Eagle' Full-Service Mobile RAT Builder Wings Across China
Apple accused of letting fake crypto app steal $1.8 million
Steam Malware situation so bad the FBI has a page for it!
LogoKit Phishing Kit Screenshots Victim Sites in Real Time
Nine-Year Fraud Campaign Clones Russian Company Sites to Steal Advance Payments
We found 120 fake Walmart stores trying to steal your credit card
We now have a better understanding how OpenAI hacked into Hugging Face
How AI is powering business email compromise at scale
Phishing Dominates as Initial Entry Method for Cyber-Attacks, as Hackers Hone Evasion Techniques
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
Chaos in Teams vishing
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
Mirage Kitten targets Middle East and Africa region with new malware
Call of Duty Mobile scam uses fake free points giveaway to hijack players’ accounts
Steam forums used for ClickFix cryptominer attacks
Phishing attacks on insurance companies evolve to real-time account hijacking
Sextortion scammers are exploiting ShinyHunters data leaks
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update
Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware
ChatGPT joins the most impersonated brands in phishing attacks
Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials
What the identity attack surface looks like when trust becomes the target
GitHub delays version updates so malware gets caught first
What Malware looks like in 2026
CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
UK issues alert over Russian zero-click email attacks
Illinois man sentenced to over six years for hacking Snapchat accounts and distributing CSAM
BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
Call of Duty Mobile scam uses fake free points to steal player accounts
NSA and Partners Alert Zimbra Collaboration Suite Users of a Russian State-Supported Phishing Campaign
ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link
The way AI voice phishing gets demonstrated is making people worse at spotting it
ChatGPT Among Top 10 Most Impersonated Brands in Phishing Attacks, Says Check Point
Tycoon2FA takedown reshapes the phishing landscape
The best-funded companies open the most phishing attachments
AgentForger proves AI agents can become persistent insider threats
Lampion banking malware continues to target Portuguese organizations
Hospital security compromised by social engineering and poor network practices
13M+ Emails Sent in Tech Support Scam Targeting Users, Organizations in Japan
Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
Russian hackers exploit Zimbra zero-click flaw for email theft
Year-long Russian attacks infect users as soon as they look at an email
Fake Edge Update
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite
OpenAI Fixes ChatGPT Agent Flaw That Could Let Attackers Forge an AI Insider
Chick-fil-A Accounts Get Fried in Credential Stuffing Attack
Russian Global Webmail Espionage
How attackers hosted a fake Claude download page on the claude.ai domain
Device Code Phishing: The Microsoft 365 Attack That Walks Past MFA
Swiss rail manufacturer Stadler refuses to pay $12.3 million ransom after cyberattack
Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness
Talking smack about a doctor got him access to private medical files
Brazilian Banking Trojan Actively Spreading in Portugal
German law enforcement claims to have ‘dismantled’ mega phishing-as-a-service group Kratos
North Korean hackers target South Korean software vendors
Chick-fil-A accounts compromised in credential stuffing attacks
Fake Bahrain Alert App Deploys Android Surveillance Malware
Device Code Phishing: Turning a Convenience Feature Into an MFA Bypass
Chick-fil-A loyalty accounts hijacked using stolen passwords
Police dismantle Kratos phishing platform behind 15,000 monthly campaigns
Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA
German authorities dismantle Kratos phishing-as-a-service infrastructure
FBI warns of scammers impersonating agency online
Kratos phishing-as-a-service kit loses its battle with international law enforcement
New ClickLock Stealer locks your Mac until you hand over your password
Clover Health Investments Discloses Data Breach
Attackers Combo Up Evasion Tactics for BEC Phishing
Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign
Abbott Laboratories investigates 2 separate cyber incidents
Odyssey piracy scams appear within hours of the movie’s release
Italy fines WINDTRE €1.7 million over security flaws behind two data breaches
New North Korean campaign uses fake coding interviews to steal developer credentials
ACR Stealer exploits user interaction to steal sensitive data
New Russian-speaking threat actor UAT-11795 targets US and Europe with novel malware
Over 1 million malicious emails found using text salting to fool AI scanners
OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials
Suspected Chinese snoops caught breaking into universities' Roundcube mailservers
Stolen identities cause 79% of ransomware attacks, says Sophos report
New macOS stealer uses social engineering and coercion
PhantomEnigma campaign hijacks Brazilian government websites for malware delivery
AI spam filters are getting suckered by old-school text salting
New North Korean campaign uses fake coding interviews to steal developer credentials
Scammers weaponize FaceTime to drain bank accounts
Fake TTF files deliver stealthy malware in global phishing campaign
CVE-2026-58643 Windows Admin Center Spoofing Vulnerability
New TELEPUZ malware spreads via ClickFix lures
23andMe agrees to $18 million settlement over data breach
1M+ Emails Use Hidden Text to Dupe AI Security Filters
OkoBot malware targets hardware wallet users with recovery phrase phishing
Australian regulator declines to find Qantas responsible for 5.67 million customer data exposure
Celine Dion concert comeback sparks ticket scam warning
Phishing campaign uses e-cards to trick users into installing remote management software