BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations
Unlike pure patch reports, this article describes an ongoing phishing campaign specifically bypassing MFA for Microsoft 365, highlighting concrete risks to access security.
CTI status
As of:
Last pipeline run:
Source reliability
Information credibility
NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.
Unlike pure patch reports, this article describes an ongoing phishing campaign specifically bypassing MFA for Microsoft 365, highlighting concrete risks to access security.
Authenticated attackers can execute malicious code in user context via path-traversal in file transfer and virtual file-clipboard; updates to version 15.81.5 are available.
Attackers are actively exploiting a previously undocumented vulnerability in PaperCut NG/MF; administrators can initially only check for compromises using incomplete indicators of compromise.
BSI warns of multiple OpenSSL vulnerabilities with RCE, DoS, and information disclosure potential; UPDATE designation indicates patch availability.
PEEP demonstrates a novel post-compromise tactic that abuses legitimate browsers as a backdoor channel and bypasses Chromium security mechanisms without requiring user interaction.
The BSI bundles several kernel vulnerabilities without detailed CVE information in one advisory, underlining the need for a timely kernel update on affected Linux systems.