Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > Phishing
#Phishing

N0va Phishing Kit Hijacks Real Microsoft Logins to Steal Session Tokens

10 September 2026  |  dark6  |  Phishing

A new phishing kit called N0va abuses legitimate device-code authentication flows for Microsoft, Google, and other trusted services to steal access and refresh tokens rather than passwords. The...

>> read more

Phishing Campaign Chains Google Services to Conceal Credential Theft

8 September 2026  |  dark6  |  Phishing

A phishing operation is routing victims through legitimate Google services before sending them to personalized credential traps or unauthorized ScreenConnect installers. The technique weakens domain-reputation defenses and hides...

>> read more

Microsoft 365 Session Hijacking Campaigns Hide Behind Trusted Remote-Support Tools

3 September 2026  |  dark6  |  Phishing

Campaigns spanning the United States and Europe are combining adversary-in-the-middle phishing with legitimate remote-management software. Stolen session cookies can outlive password resets, forcing defenders to revoke tokens and...

>> read more

New Outlook Flaw Lets Attackers Run Malicious Code Through a Single Booby-Trapped Email Attachment

14 August 2026  |  dark6  |  Vulnerability

Microsoft has patched a high-severity remote code execution flaw in Outlook, tracked as CVE-2026-70329, that can be triggered when a victim opens a specially crafted Office file. The...

>> read more

Hackers Are Turning Plain CSS Into Keyloggers Hidden Inside Everyday Emails

10 August 2026  |  dark6  |  Phishing

Security researcher Gareth Heyes has demonstrated that ordinary CSS styling code, not JavaScript or malware, can be weaponized to hijack webmail interfaces and capture passwords keystroke by keystroke....

>> read more

Greatness Phishing Service Lets Attackers Slide Past MFA Into Microsoft 365 Inboxes

6 August 2026  |  dark6  |  Phishing

A phishing-as-a-service platform called Greatness is stealing live authentication tokens rather than passwords, letting attackers walk past multi-factor authentication and into Microsoft 365 mailboxes. A recent campaign hid...

>> read more

LokiBot Returns: Multi-Stage JScript Campaign Uses Process Injection to Steal Credentials

29 June 2026  |  dark6  |  Malware

LokiBot, the decade-old credential stealer, has resurfaced with a sophisticated multi-stage attack chain: a JScript email dropper, in-memory .NET injection, and process hollowing inside aspnet_compiler.exe to silently harvest...

>> read more

AWS AiTM Phishing Kit Bypasses MFA to Hijack Cloud Console Sessions in Real Time

29 June 2026  |  dark6  |  Phishing

A real-time adversary-in-the-middle phishing kit has been targeting AWS engineers, stealing credentials and MFA codes simultaneously to hijack cloud sessions before they expire. Standard MFA provides zero protection...

>> read more