BigBear Microsoft 365 Phishing Service Circumvents MFA at 258 Organizations
A phishing-as-a-service platform known as BigBear 2.0 has successfully circumvented multi-factor authentication (MFA) for 258 organizations, resulting in the theft of over 5,000 Microsoft 365 credentials. Researchers from the cybersecurity firm CloudSEK gained administrative access to the control panel and discovered that the service operated 42 VPS nodes, all specifically configured to target Microsoft 365…
Executives Targeted by Phony IT Calls in Microsoft 365 Data Theft and Extortion Schemes
Threat hunters have revealed information about a large-scale data theft and extortion threat group that is focusing on Microsoft 365 and other software-as-a-service (SaaS) platforms through IT help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins. This activity primarily targets directors, vice presidents, and other high-ranking officials, and is being monitored by Arctic Wolf…
Exploitation of Magento StyleSmuggler Zero-Day Leads to Linux Backdoor Deployment
A zero-day flaw known as “StyleSmuggler,” which impacts all versions of Magento and Adobe Commerce, is currently being exploited in attacks aimed at deploying a backdoor. The initial incident of exploitation was documented on September 4, targeting a system that had the latest security updates installed. According to e-commerce security firm Sansec, Adobe Enterprise Support…
Microsoft Exchange Online outage leads to email disruptions and authentication problems
Microsoft is currently looking into a significant service disruption that is resulting in authentication difficulties, connection issues, delays in email delivery, and various other complications for users of Microsoft 365. The company first acknowledged this situation (identified as EX1464935 in the admin center) at 5:30 PM UTC, following a surge of reports from users on…
Microsoft alerts about TerminalFix attacks utilizing reverse tunnels
A new variant of ClickFix, named TerminalFix, employs deceptive Cloudflare CAPTCHA prompts on compromised sites to deceive victims into running harmful PowerShell commands within Windows Terminal. In contrast to standard ClickFix attacks that frequently result in infostealer malware infections, this operation utilizes a multi-stage intrusion process that ultimately provides attackers with a reverse tunnel into…
Cronos blockchain resumes operations following $74 million Tectonic exploit
The Cronos blockchain network has restarted its trading activities after a price-manipulation incident involving the Tectonic cryptocurrency lending platform, which enabled an attacker to borrow $74 million. Recent reports indicate that the perpetrator artificially boosted the price of Tectonic’s TONIC token by a factor of 100, subsequently using it as collateral to secure real assets….
Microsoft: August updates disrupt printing and PDF export in WPF applications
Microsoft has acknowledged that updates to the .NET Framework issued during the August 2026 Patch Tuesday are causing issues with printing and PDF export in certain applications. According to a Windows release health alert reported by BleepingComputer, this known problem specifically impacts applications utilizing the Windows Presentation Foundation (WPF) UI framework, which is an open-source…
Microsoft Teams now allows admins to prevent external bots from joining meetings
Microsoft is introducing a new policy for Teams meetings that enables administrators to automatically prevent all recognized external bots from participating in Teams meetings. This feature enhances a previous Teams policy launched in June, which implemented more intelligent bot protection by ensuring that all identified bots are marked in the lobby and need organizer approval…
Weedhack Malware Spreads via Fake Minecraft Clients and SEO Poisoning
Cybersecurity experts have discovered that numerous websites continue to actively distribute a malware family called Weedhack to gamers by pretending to be Minecraft clients. According to McAfee Labs, over 6,300 attempts to access harmful sites were detected and blocked, with the researchers identifying imitation gaming websites crafted to resemble legitimate projects. These sites include similar…
Windows Server 2022 to End Mainstream Support in 60 Days
Microsoft has alerted IT administrators that the mainstream support for Windows Server 2022 is nearing its conclusion, set for October 2026, at which point it will enter extended support. Introduced in March 2021, Windows Server 2022 became widely available in September 2021 as part of the Long-Term Servicing Channel (LTSC) with a decade of support….
