The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated backdoor ...
Russian hackers exploit CVE-2026-42897 in OWA to deploy OWAReaper, a browser implant that persists through credential ...
OWAReaper abuses CVE-2026-42897 to steal OAuth tokens, alter mailbox permissions, and persist inside Exchange accounts.
Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals ...
A Russian state-linked hacking group has been quietly raiding email accounts at NATO government agencies, defense contractors, and critical infrastructure operators since mid-2025 using a zero-click ...
OWAReaper malware, deployed by Russian state hackers Laundry Bear against US and European government agencies and ...
欢迎学员来参加小肩膀广东逆向安全百人聚会:广东安全逆向圈子 | 十年逆向教育二次聚会1.
ИИ-агенты играют всё большую роль для бизнеса, получают доступ к сайтам, API, файлам и запуску программ, создавая, возможно, критические уязвимости. В июне 2026 года Microsoft Security опубликовала ис ...
Amazon Threat Intelligence has tied a DPRK hacking group to four separate NPM package supply chain attacks, including axios. The company’s security teams have connected the axios, debug, chalk, and ...