Password Spraying Attacks Rise As Attackers Target Microsoft Azure MFA Gaps
Huntress has reported a 155x increase in password spraying attacks during 2026, with attackers exploiting Azure CLI access and gaps in MFA protection.
Huntress has reported a 155x increase in password spraying attacks during 2026, with attackers exploiting Azure CLI access and gaps in MFA protection.
Huntress researchers have uncovered an intrusion involving a suspected AI generated PowerShell script used to map Active Directory environments, highlighting the growing role of artificial intelligence in cyberattacks.
Huntress has identified a large scale password spray campaign targeting Azure CLI, with more than 81 million login attempts compromising at least 78 Microsoft accounts across 64 organizations.
Cybersecurity researchers have disclosed an unpatched Windows Search URI vulnerability that could expose NTLMv2 hashes, allowing attackers to conduct relay attacks and gain deeper network access.
Huntress identifies a sophisticated attack chain leveraging SonicWall VPN and VMware ESXi zero-day vulnerabilities, enabling VM escape and persistent hypervisor access through VSOCK communication.