In a shocking turn of events, a new wave of phishing scams has emerged that specifically targets Microsoft users. Cybercriminals are now exploiting vulnerabilities in the Microsoft 365 Admin Portal, allowing them to send deceptive emails that appear to come directly from official Microsoft...
In an increasingly digital world, where the threats of cybercrime loom larger every day, the need for robust security measures has never been more pressing. On November 20, 2024, the Cybersecurity and Infrastructure Security Agency (CISA) alongside the U.S. Department of Agriculture (USDA)...
As Windows users navigate through the digital landscape, they've likely encountered headlines warning them about the latest ransomware attacks, phishing schemes, and other cyber threats. While you might think you’re well-informed, here are five startling cybersecurity facts that could change...
In the ever-evolving landscape of cybersecurity, even the seemingly fortified walls of Microsoft 365 are showing vulnerabilities. Recent reports have revealed that scammers have found a way to bypass Microsoft 365's scam protections, leveraging the platform's own admin portal to infiltrate...
In an alarming trend that's sending shivers down the spine of Microsoft 365 users, threatening emails are surfacing within the ecosystem. These emails, delivering a chilling message through the official Microsoft 365 Admin Portal's Message Center, have sparked concern among users. If you’ve...
In a significant cybersecurity development, Microsoft has addressed a serious zero-day vulnerability exploited by suspected Russian attackers in their operations against Ukrainian entities. This newly patched flaw, designated as CVE-2024-43451, pertains to an NTLM (NT LAN Manager) hash...
In a troubling revelation for users of Microsoft Bookings, a newly discovered vulnerability has opened the door to impersonation attacks, potentially allowing malicious actors to spoof identities, purchase illicit TLS certificates, execute domain name transfers, and even capture user accounts...
In a landscape where phishing attacks are as prevalent as coffee breaks, Microsoft Excel users are now on high alert due to a recently discovered phishing campaign that's spreading a dangerous fileless malware variant known as Remcos. This clever scheme, brought to our attention by Fortinet's...
In a burgeoning threat landscape, Microsoft Windows users are facing an escalating risk of complete device takeovers from a cunningly disguised malicious variant of the Remcos Remote Access Tool (RAT). This alarming development is part of a sustained campaign exploiting a known Remote Code...
In an alarming trend that underscores the evolving tactics of cybercriminals, hackers are increasingly weaponizing Excel documents to deliver malicious software, particularly the notorious Remcos Remote Access Trojan (RAT). This shift comes in light of Microsoft’s new security measures that...
The digital landscape is becoming increasingly treacherous as threat actors evolve their tactics. One of the most prominent players in this game, the Russian hacking group known as Midnight Blizzard (also referred to as NOBELIUM), has recently embarked on a large-scale spear-phishing campaign...
A recent and highly sophisticated phishing campaign has been uncovered, aimed specifically at government agencies, military units, and industrial enterprises in Ukraine, with indications it could extend to other nations as well. The urgency is stirred by an alert issued by the Computer Emergency...
Recently disclosed on October 17, 2024, CVE-2024-43580 is a significant spoofing vulnerability affecting the Microsoft Edge browser built on the Chromium platform. This revelation underlines the continuous need for vigilance among users and system administrators concerning software security...
It’s time to take out the tin foil hats and sharpen those cybersecurity instincts because a new threat is lurking in the shadows of your screen. McAfee’s latest revelations have sent Windows 10 and Windows 11 users into a frenzy of paranoia and vigilance, as a particularly insidious malware...
The Microsoft Security Response Center (MSRC) has recently updated publicly disclosed information regarding CVE-2024-38200, a significant spoofing vulnerability within Microsoft Office. This vulnerability has raised concerns among users and IT administrators alike, calling for immediate...
As I age, I"m a couple of weeks short of 86 now, I get inundated with scam emails.
Now I'm not just getting ones that say they are from Amazon, my bank, UPS, other retailers, and payment services they are claiming to be from the Social Security!
The first thing I do is look at the address...
I just received a message saying it was from Social Security. I looked at the sender's address, and it said...
SocialSecurity.gov, followed by [email protected]
I searched for [email protected]
And I got several hits, but none of them had anything to do with Social Security.
The message...
Well, today I got an email message supposedly from FedEx saying that they had my package and there is a problem with my address, with a big button to click to contact them and confirm my address.
This is the first time I've gotten one that was supposed to be from FedEx, UPS, or the Post Office...
Here is another real phishing email. This one purporting to be from PayPal.
Lets dig in...
(Orange) we have typos and grammatical errors
(1) Again we have a weird email address from @paypap-us.com. This is highly unlikely owned by PayPal.
(2) This email is probably BCC'd to a bunch of users...
Hi everyone.
I received an email from Comcast today, it says that my service will be suspended unless I update my payment information.
It said that the credit card company failed to authorize the payment.
This message really looks official, when I clicked on My Account in the message, I...