Security Insights

Latest threat analysis, industry news, and security best practices from our expert team.

Has:
oauth-abuse9 articles
Jul 25, 2026

Cisco SD-WAN Zero-Day & GitHub Actions Abuse: Supply Chain Credential Theft

Intelligence Briefing: Multi-Vector Supply Chain & Credential Theft Campaign Threat Summary Recent OTX pulses indicate a coordinated surge i...

darkwebotx-pulsedarkweb-credentials
Darkweb CredentialsRead Now
Jul 22, 2026

Icarus Threat Group: Klue Supply Chain Attack & OAuth Token Theft — Detection Engineering

Threat Summary The Icarus threat group has launched a sophisticated supply chain attack targeting Klue, a market intelligence platform used ...

darkwebotx-pulsedarkweb-apt
Darkweb AptRead Now
Jul 22, 2026

Icarus Supply Chain Attack via Klue: OAuth Abuse & Salesforce CRM Data Exfiltration — OTX Pulse Analysis

Threat Summary A critical supply chain attack has been identified targeting enterprise CRM environments. On June 11, 2026, the Icarus threat...

darkwebotx-pulsedarkweb-credentials
Darkweb CredentialsRead Now
Jun 28, 2026

Klue-Salesforce Supply Chain Attack: Detecting and Containing Third-Party OAuth Abuse

Introduction A supply chain compromise involving Klue, a competitive intelligence platform, has resulted in unauthorized access to Salesforc...

mdrthreat-huntingendpoint-detection
SOC & MDRRead Now
Jun 20, 2026

Klue OAuth Breach: Detecting Icarus Group Salesforce Token Theft

Introduction Klue, a market intelligence platform, has confirmed a significant security incident involving the theft of OAuth tokens used to...

incident-responseransomwarebreach-response
Incident ResponseRead Now
Jun 18, 2026

Anatomy of the 2026 Attack Surface: Defending Against AI Abuse, NastyC2, and OAuth Device Codes

Introduction The internet didn't break this week; it simply functioned exactly as threat actors designed it to. The latest ThreatsDay Bullet...

sigma-rulekql-detectionthreat-hunting
Vulnerability ManagementRead Now
Jun 3, 2026

Supply Chain Assault & Credential Harvesting: ClickFix, LofyStealer, JINX-0164, Kali365, and Shai-Hulud Campaigns — Enterprise Detection Pack

Supply Chain Assault & Credential Harvesting: ClickFix, LofyStealer, JINX-0164, Kali365, and Shai-Hulud Campaigns Threat Summary Recent OTX ...

darkwebotx-pulsedarkweb-credentials
Darkweb CredentialsRead Now
Apr 21, 2026

Vercel Breach Analysis: Third-Party AI Supply Chain Attack via Compromised Context.ai

Introduction Vercel recently disclosed a security breach stemming from a compromised third-party AI tool, Context.ai. This incident highligh...

incident-responseransomwarebreach-response
Incident ResponseRead Now
Apr 6, 2026

AI-Enabled Device Code Phishing: Detecting Automated OAuth Abuse (April 2026 Campaign)

AI-Enabled Device Code Phishing: Detecting Automated OAuth Abuse On April 6, 2026, the Microsoft Security Blog published a critical analysis...

alert-fatiguetriagealertmonitor
SOC & MDRRead Now