Russian Cyber Espionage Group Uses Claude To Evade Malware Detection
Anthropic says it disrupted a Russian linked cyber espionage campaign that used Claude to automate malware rebuilding, phishing operations, and infrastructure management.
Anthropic says it disrupted a Russian linked cyber espionage campaign that used Claude to automate malware rebuilding, phishing operations, and infrastructure management.
Researchers warn that the Kali365 phishing kit abuses Microsoft device authentication to steal access tokens, putting Microsoft 365 accounts, business data, and cloud resources at risk.
German, US, and Indonesian authorities dismantled the Kratos phishing infrastructure used to steal Microsoft 365 sessions, bypass MFA, and target victims across more than 30 countries.
Microsoft has warned of active ACR Stealer campaigns using ClickFix lures to steal browser credentials, authentication tokens, Microsoft 365 files, and sensitive enterprise data through fileless and disk based attack chains.
Researchers have identified the DEBULL phishing platform abusing Microsoft device code authentication to compromise Microsoft 365 accounts through legitimate OAuth workflows and advanced phishing techniques.
A new cybersecurity bulletin details major security developments including browser threats, curl vulnerabilities, phishing campaigns, smart TV proxyware, AI driven cybercrime, ransomware activity, and software security updates.
Cybersecurity incidents intensify globally as phishing kits, supply chain compromises, MFA bypass methods, ransomware, and FIFA themed scams expose growing risks for businesses and individuals.
Researchers reveal phishing attacks abusing Google Cloud’s email feature to steal Microsoft 365 credentials, using multi-stage redirection and trusted cloud infrastructure to evade detection.