Tycoon2FA Phishing Service Resumes Activity Post-Takedown
Tycoon2FA phishing platform resumes activity post-takedown, leveraging AITM techniques to bypass MFA
Articles mapped to MITRE ATT&CK techniques. Select a technique to view matching articles.
116 articles found
Tycoon2FA phishing platform resumes activity post-takedown, leveraging AITM techniques to bypass MFA
Some of these campaigns are linked to Darcula, a Chinese-language phishing-as-a-service platform
A new law enforcement operation against phishing and ransomware operators led to the takedown of 45,000 malicious IP addresses
Law enforcers and industry partners have taken down notorious phishing-as-a-service platform Tycoon2FA
2025 saw 32M phishing emails, with identity threats surpassing vulnerabilities
FortiGuard Labs provides a technical breakdown of a multi-stage Agent Tesla campaign, from phishing and encrypted scripts to in-memory execution, process hol...
Phishing attack mimicking Bitpanda targets users, harvesting credentials and personal information
FortiGuard Labs analyzes Winos 4.
FortiGuard Labs details a new XWorm RAT campaign using multi-language phishing emails, Excel exploits (CVE-2018-0802), HTA execution, and fileless .
Introduction Mandiant has identified an expansion in threat activity that uses tactics, techniques, and procedures (TTPs) consistent with prior ShinyHunters-...
Introduction Mandiant is tracking a significant expansion and escalation in the operations of threat clusters associated with ShinyHunters-branded extortion.
FortiGuard Labs analyzes a phishing campaign delivering a fileless Remcos RAT via malicious Word templates, CVE-2017-11882 exploitation, and in-memory execut...
Identity is effectively the new network boundary. It must be protected at all costs.
Google Threat Intelligence Group (GTIG) is tracking a cluster of financially motivated threat actors operating from Vietnam that leverages fake job postings ...
Cybercriminals have tricked X’s AI chatbot into promoting phishing scams in a technique that has been nicknamed “Grokking”. Here’s what to know about it.
Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.