Latest security news
- BigBear 2 PhaaS Campaign Steals 5000+ Microsoft Credentials
- Trezor Supply Chain Breach Now Impacts 81,000 Customers
- Mathspace breach exposes data on over a million students and parents
- Jellyfin 12.0 security fixes arrive alongside the removal of legacy client logins
- Product showcase: Doppler secures secrets for humans, pipelines, and AI agents
- Microsoft’s Project Zenith puts large AI models directly on developer PCs
- Hackers exploit RouterOS flaws to hijack MikroTik devices without authentication
- NCSC Warns Shadow AI Creates New Security Risks
- N-able Releases Hotfix for Critical Remote Code Execution Vulnerability
- Rhysida Publishes Berlin Government Data After €2m Extortion Demand Refused
- N-able patches critical N-central zero-day exploited in the wild (CVE-2026-86218)
- North Korea’s Lazarus Operates Through Six Distinct Cyber Clusters
- Attackers use rogue ScreenConnect clients to spread malware
- Multiple Class Action Lawsuits Filed Against IDScan
- OpenAI just hit a milestone on the road to self-improving AI
- Researcher Publishes CrowdStrike Privilege Escalation Zero Day
- OpenAI Pledges $1bn to Bring its AI Cybersecurity Tools to Essential Services
- G7 Urges Fast-Track on Quantum-Safe Cybersecurity Rules
- Pegasus Zero-Click Exploit Infects Serbian Student Activist's iPhone
- Outsider Phishing Kit Survives Takedown With 700 New Pages
- CREST Onboards First Cohort for AI-Enabled Pentesting Accreditation
- US and Canadian Court Records Breached Following Thomson Reuters Incident
- FBI Probes Possible Breach of 153 Million Driver’s Licenses
CloudSEK has uncovered BigBear 2.0, a new phishing-as-a-service operation targeting Microsoft 365
(C) Do-Know.com (http://do-know.com/). Do not copy without permission from info at do-know.com.