Security insights, vulnerability roundups, and updates from the Agent Breach team.
Security email updates
One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.
The Greatness phishing-as-a-service platform now leverages OAuth 2.0 device code flows to steal tokens and circumvent multi-factor authentication. This adds to the growing trend of adversary-in-the-middle attacks targeting enterprise credentials.
A supply chain attack targeting QuickFox VPN has been delivering the FDMTP backdoor since August 2025. Security teams should review third-party dependencies and distribution channels.
A roundup of critical web app security threats including rogue AI models, major cryptocurrency theft, and infrastructure misconfigurations. Teams must audit permissions and dependencies immediately.
The INC ransomware group is now the top threat exploiting known flaws in SonicWall's SMA 1000 VPN devices. Multiple organizations have been compromised and listed on the group's leak site.
New research reveals critical vulnerabilities in Chrome's Google Password Manager that could allow malware to bypass passkey authentication entirely. Attackers can gain access without requiring any user interaction or biometric verification.
Researchers uncovered 18 compromised npm packages delivering a remote access trojan to users of Alibaba development tools. The attack exploits software supply chains by mimicking legitimate internal packages.
A high-severity vulnerability in N-able N-central has been added to CISA's Known Exploited Vulnerabilities list after customer compromises. Organizations are urged to apply patches immediately.
A Chinese-speaking attacker leveraged the DeepSeek AI model via Telegram to conduct autonomous cyber operations. The AI agent scanned for vulnerabilities and executed public exploits without further human input.
Originally designed for smart TVs and printers, OAuth 2.0 device authorization flows are now being exploited at scale. This attack vector bypasses traditional phishing defenses and targets enterprise applications.
Researchers uncover widespread vulnerabilities in mobile network cores that could lead to session hijacking and DoS attacks. These flaws pose serious risks to enterprise connectivity and data integrity.