Exploits

Microsoft Warns OAuth Redirect Abuse Delivers Malware to Government Targets

Microsoft on Monday warned of phishing campaigns that employ phishing emails and OAuth URL redirection mechanisms to bypass conventional phishing defenses implemented in email...

Ransomware is now less about malware and more about impersonation

This audio is auto-generated. Please let us know if you have feedback. Dive Brief: Identity has replaced malware as the biggest threat vector opening the door...

DIY hackers are turning to ‘flat-pack’ malware components to speed up attacks and cut costs

(Image credit: Getty Images) Share this article Join the conversation Add us as a preferred source on Google Subscribe to our newsletter Cyber criminals are using “modular malware components”...

CISA Alerts On RESURGE Malware Targeting Ivanti Connect Secure Vulnerabilities

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about the RESURGE malware targeting Ivanti Connect 

SloppyLemming Targets Pakistan and Bangladesh Governments Using Dual Malware Chains

The threat activity cluster known as SloppyLemming has been attributed to a fresh set of attacks targeting government entities and critical infrastructure operators in...

Phish of the day: Microsoft OAuth scams abuse redirects for malware delivery

Microsoft has warned organizations about ongoing OAuth abuse scams that use phishing emails and URL redirects to infect victims' machines with malware and take...

OAuth redirection abuse enables phishing and malware delivery

Microsoft observed phishing-led exploitation of OAuth’s by-design redirection mechanisms. The activity targets government and public-sector organizations and uses silent OAuth authentication flows and intentionally...

Why encrypted backups may fail in an AI-driven ransomware era

Follow ZDNET: Add us as a preferred source on Google. ZDNET's key takeaways AI-driven ransomware now targets backups, too. Malware can dwell for weeks, mapping recovery systems. Your clean restore...

Chrome extension ‘QuickLens’ removed after stealing crypto and spreading malware

The malicious version 5.8 of QuickLens was pushed to approximately 7,000 users on February 17, 2026, after the extension changed ownership. 

Latest articles