Veille live
Veille CyberInfra — Veille cybersecurite : New Windows Defender zero-day blocks Microsoft antivirus updates Veille CyberInfra — Veille cybersecurite : WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session Veille CyberInfra — Veille cybersecurite : DORA Year Two: Can Your SOC Actually See the Attack? Veille CyberInfra — Veille cybersecurite : WordPress Click2Shell flaw lets hackers execute PHP on the server Veille CyberInfra — Veille cybersecurite : One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor Veille CyberInfra — Veille cybersecurite : SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE Veille CyberInfra — Veille cybersecurite : New Windows Defender zero-day blocks Microsoft antivirus updates Veille CyberInfra — Veille cybersecurite : WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session Veille CyberInfra — Veille cybersecurite : DORA Year Two: Can Your SOC Actually See the Attack? Veille CyberInfra — Veille cybersecurite : WordPress Click2Shell flaw lets hackers execute PHP on the server Veille CyberInfra — Veille cybersecurite : One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor Veille CyberInfra — Veille cybersecurite : SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE

Veille cybersecurite : Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

13/09/2026

Source : The Hacker News

Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments.

The first campaign, per the tech giant, involved sending over a million scam emails between August 3 and 5, 2026, by masquerading as chief executive officers

Lire l’article original


Vous vous demandez si votre entreprise est exposee a ce type de faille ? Reservez un appel decouverte gratuit.

← Retour au blog