ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
Threat actors linked to ShinyHunters and Helix use passkey-themed social engineering to compromise corporate Microsoft 365 accounts. Attackers impersonate IT help desks, directing victims to AiTM phishing sites or device-code flows to capture credentials and session tokens.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
BigBear phishing stole 5,137 Microsoft 365 credentials