Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Phishing Research Analysis: 2.47M Simulated Attacks Prove Click Rates Alone Fail — Measuring Credential Leaks and Reporting for Real Defense
Introduction A new analysis of 2.47 million simulated phishing attacks, reported by SecurityWeek, is forcing a long-overdue reckoning in how...
AI-Assisted Secrets Harvesting: How Threat Groups Abused Claude to Extract Credentials from 1.8M Android Apps — Defense Playbook
AI Is Now a Force Multiplier for Secrets Harvesting — and Your Mobile Apps Are the Target Anthropic has disclosed that multiple threat group...
Storm-3121/Storm-3032 Passkey AiTM Phishing + AI-Driven PaperCut Exploitation: OTX Pulse Analysis — Identity & Credential Defense Pack
From The Dark Side: Threat Intelligence Briefing Threat Summary Two converging credential-theft operations dominate this reporting window, a...
Autonomous AI Agent Credential Harvesting Campaign: Defending Identity Against Machine-Speed Attacks (GTIG 2026)
The Threat Clock Just Compressed From Days to Hours Google Threat Intelligence Group (GTIG) has documented what many of us in IR have been b...
JSCeal Malware Bypasses Google Authentication via Stolen Session Cookies: Detection and Response Guide
Introduction Check Point Research has published an in-depth analysis of JSCeal, a sophisticated malware family built on compiled V8 JavaScri...
UNC6671 Multi-Brand Vishing Extortion: Okta-Themed AiTM Phishing Infrastructure — OTX Pulse Detection Pack
UNC6671 Multi-Brand Vishing Extortion: Okta-Themed AiTM Phishing Infrastructure — OTX Pulse Detection Pack Threat Summary Live OTX pulse dat...
MacSync Stealer ClickFix Campaign: Fake CAPTCHA Terminal Commands Deploy Crypto-Draining Mach-O Payloads — OTX Pulse Analysis & Detection Pack
Threat Summary A live OTX pulse authored by AlienVault documents an active macOS stealer campaign attributed to the MacSync malware family, ...
MacSync Stealer + ClickFix Fake CAPTCHA Campaign: OTX Pulse Analysis — macOS Credential & Crypto Wallet Detection Pack
Threat Summary A single AlienVault OTX pulse published 2026-09-05 documents an active macOS infostealer campaign distributing the MacSync st...
Knight Office AiTM Phishing Kit: M365 Session Token Theft Campaign — OTX Pulse Analysis & Detection Pack
Threat Summary A single but high-fidelity OTX pulse from AlienVault (TLP:WHITE, modified 2026-09-02) details Knight Office, a newly document...