17 Apr, 2025

Tycoon2FA phishing kit targets Microsoft 365 with new tricks

Phishing-as-a-service (PhaaS) platform Tycoon2FA, known for bypassing multi-factor authentication on Microsoft 365 and Gmail accounts, has received updates that improve its stealth and evasion capabilities. Tycoon2FA was discovered in October 2023 by Sekoia researchers, who later reported significant updates on the phishing kit that increased its sophistication and effectiveness. Trustwave now reports that the Tycoon 2FA threat actors […]

3 mins read

AI-hallucinated code dependencies become new supply chain risk

A new class of supply chain attacks named ‘slopsquatting’ has emerged from the increased use of generative AI tools for coding and the model’s tendency to “hallucinate” non-existent package names. The term slopsquatting was coined by security researcher Seth Larson as a spin on typosquatting, an attack method that tricks developers into installing malicious packages by using […]

2 mins read

Microsoft Defender will isolate undiscovered endpoints to block attacks

Microsoft is testing a new Defender for Endpoint capability that will block traffic to and from undiscovered endpoints to thwart attackers’ lateral network movement attempts. As the company revealed earlier this week, this is achieved by containing the IP addresses of devices that have yet to be discovered or onboarded to Defender for Endpoint. Redmond says […]

2 mins read

Microsoft starts final Windows Recall testing before rollout

Microsoft is gradually rolling out the AI-powered Windows Recall feature to Insiders in the Release Preview channel before making it generally available to all Windows users with Copilot+ PCs. Recall is an opt-in Windows feature that screenshots active windows every few seconds, analyzes them, and allows Windows 11 users to search text within the snapshots using […]

2 mins read

Western Sydney University discloses security breaches, data leak

Western Sydney University (WSU) announced two security incidents that exposed personal information belonging to members of its community. WSU is a prominent Australian institution offering various undergraduate, postgraduate, and research programs across multiple disciplines. It serves a student body of 47,000 and employs over 4,500 permanent and seasonal staff, operating with an annual budget of […]

2 mins read

Fortinet: Hackers retain access to patched FortiGate VPNs using symlinks

Fortinet warns that threat actors use a post-exploitation technique that helps them maintain read-only access to previously compromised FortiGate VPN devices even after the original attack vector was patched. Earlier this week, Fortinet began sending emails to customers warning that their FortiGate/FortiOS devices were compromised based on telemetry received from FortiGuard devices. These emails were […]

3 mins read

Microsoft: Windows ‘inetpub’ folder created by security fix, don’t delete

Microsoft has now confirmed that an April 2025 Windows security update is creating a new empty “inetpub” folder and warned users not to delete it. This folder is typically used by Microsoft’s Internet Information Services (IIS), a web server platform that can be enabled via the Windows Features dialog to host websites and web apps. […]

3 mins read

Google’s AI video generator Veo 2 is rolling out on AI Studio

Google’s AI video generator tool Veo 2, which is the company’s take on OpenAI’s Sora, is now rolling out to some users in the United States. At the Cloud Next event, Google confirmed that Veo 2 is production-ready and will begin rolling out to users soon. Today, GeekFeed noticed that some users have started receiving early access to the Veo […]

1 min read

US lab testing provider exposed health data of 1.6 million people

Laboratory Services Cooperative (LSC) has released a statement informing it suffered a data breach where hackers stole sensitive information of roughly 1.6 million people from its systems. LSC is a Seattle-based nonprofit organization that provides centralized laboratory services to its member affiliates, including select Planned Parenthood centers. It plays a crucial role within its niche, supporting […]

2 mins read

Microsoft says Edge browser is now 9% faster after optimizations

Microsoft claims its Chromium-based Microsoft Edge has seen up to 9% performance improvements following the release of version 134. In a blog post, Microsoft noted that it truly cares about delivering better performance with Edge and recently made several changes to the underlying engine in the browser. Thanks to these changes, Edge 134 is now up […]

2 mins read