CISTCK GROUP
  • Home
  • About Us
  • Our Clients
  • Services
    • MSSP
  • Products
    • Smart City Solutions
  • Contact Us
  • BLOG
Select Page
Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows

Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows

by admin | Aug 25, 2026 | Uncategorized

Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication. According to ANY.RUN research,...
24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages

24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages

by admin | Aug 25, 2026 | Uncategorized

Cybersecurity researchers have disclosed details of a new campaign that uses a cluster of 24 npm packages as free phishing infrastructure for redirecting to ClickFix-style fake CAPTCHA pages. “While the malware is simply a single HTML page inside the npm...
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

by admin | Aug 25, 2026 | Uncategorized

Cybersecurity researchers are calling attention to a new campaign that employs FTP banners as dead drop resolvers (DDRs) to deliver two previously unreported remote access trojans (RATs) tracked as E4del and PINHOLE. While threat actors are known to abuse legitimate...
Frontier AI: Vulnerability Management’s Systemic Revolution

Frontier AI: Vulnerability Management’s Systemic Revolution

by admin | Aug 25, 2026 | Uncategorized

Vulnerability management has been a staple of security programs since the dawn of the cybersecurity discipline. The symbiotic relationship between vulnerability and patch management teams has also existed for that time and has gone through waves of contention and...
Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access

Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access

by admin | Aug 25, 2026 | Uncategorized

Bad actors are attempting to exploit two severe unauthenticated authentication bypasses in the Xecurify miniOrange SAML 2.0 Single Sign On plugin that make it possible for an attacker to sign in as any WordPress user, including administrators. The vulnerabilities, as...
« Older Entries
Next Entries »

Recent Posts

  • Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells
  • Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens
  • KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens
  • Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists
  • BambooToken Malware Uses MQTT to Control Windows and Linux Systems

Recent Comments

No comments to show.

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • November 2021
  • October 2021
  • April 2021
  • March 2021

Categories

  • Analysis
  • App
  • Cryptocurrency
  • Healthcare
  • Mobile
  • Technology
  • Uncategorized

Categories

  • Analysis
  • App
  • Cryptocurrency
  • Healthcare
  • Mobile
  • Technology
  • Uncategorized

Tags

Analytics Automation CSS Customer Data Edge Computing Healthcare Industry Marketing ransomware ransomware attack ransomware protection Sports Technology Warehouse
CISTCK Group

About Us

CISTCK Group is the most trusted partner for some of the world’s leading enterprises, innovators, SMEs and technopreneurs. We help businesses levitate their excellence through custom software development, UI/UX design, MVPs, Software Testing, and consultancy services.

  • Testing & QA
  • Custom Software Development
  • Website Development
  • IT Support Services
  • Software Support & Maintenance
  • E-Learning – LMS

Smart everything, connect and control remotely from your mobile device.

  • About us
  • FAQ
  • Our History
  • Facebook
  • X
  • Instagram
  • RSS

Designed by Elegant Themes | Powered by WordPress