Microsoft Alerts Users to IRS Phishing Campaign Targeting 29,000 Individuals

Microsoft has reported a significant phishing campaign exploiting the U.S. tax season, affecting approximately 29,000 users across various industries.

Microsoft has reported a significant phishing campaign exploiting the U.S. tax season, affecting approximately 29,000 users across various industries.

The FBI and CISA have reported a phishing campaign by Russian hackers aimed at compromising accounts on messaging platforms like Signal and WhatsApp, particularly targeting individuals of high intelligence value.

Microsoft has issued a warning regarding ongoing OAuth abuse scams that exploit phishing tactics to deliver malware, particularly targeting government and public-sector organizations.

Google's Threat Intelligence Group has attributed a previously undocumented hacking group, potentially linked to Russian intelligence, to a series of malware attacks against Ukrainian organizations using CANFAIL.

Recent cyber espionage campaigns have targeted Indian defense and government organizations using cross-platform remote access trojans (RATs).

A newly identified malicious add-in for Microsoft Outlook has been found to steal user credentials through a phishing scheme, affecting thousands of users.

A joint advisory from Germany's BfV and BSI highlights a phishing campaign exploiting the Signal messaging app, aimed at politicians, military personnel, and journalists.

Substack has revealed that an unauthorized party accessed user contact information months before detection, impacting email addresses and phone numbers.

A new cyber campaign, codenamed RedKitten, has emerged, targeting NGOs and individuals documenting human rights abuses in Iran. This operation is linked to a Farsi-speaking threat actor aligned with Iranian state interests.

This week's cybersecurity updates highlight significant incidents and vulnerabilities affecting various platforms and services.