⤷ Title: “CL Suite” Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Feb 2026 00:07:00 +0000
════════════════════════
⌗ Tags: #Malware #2FA Theft #Account Takeover #CL Suite #Cyber Security #Facebook Business #Instagram Business #Malicious Chrome Extension #Meta Business Suite #Socket Threat Research #TOTP Seeds
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Feb 2026 00:07:00 +0000
════════════════════════
⌗ Tags: #Malware #2FA Theft #Account Takeover #CL Suite #Cyber Security #Facebook Business #Instagram Business #Malicious Chrome Extension #Meta Business Suite #Socket Threat Research #TOTP Seeds
Daily CyberSecurity
"CL Suite" Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data
"CL Suite" Chrome extension steals Meta Business 2FA seeds & data. Attackers bypass security even after uninstall. Reset 2FA immediately.
⤷ Title: Authorities Shut Down Tycoon 2FA Phishing Platform Used to Bypass MFA
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 12:53:20 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Phishing Scam #Security #2FA #Cybersecurity #Europol #Fraud #MFA #Phishing #Scam #Tycoon 2FA
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 12:53:20 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Phishing Scam #Security #2FA #Cybersecurity #Europol #Fraud #MFA #Phishing #Scam #Tycoon 2FA
Hackread
Authorities Shut Down Tycoon 2FA Phishing Platform Used to Bypass MFA
Follow us on all social media platforms @Hackread
⤷ Title: How I Bypassed OTP Rate Limits and Earned $303 in a Bug Bounty Hunt
════════════════════════
𐀪 Author: Lokesh Soni
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 09:01:09 GMT
════════════════════════
⌗ Tags: #2fa #ethicle_hacking #web_security_testing #hacking #2fa_bypass
════════════════════════
𐀪 Author: Lokesh Soni
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 09:01:09 GMT
════════════════════════
⌗ Tags: #2fa #ethicle_hacking #web_security_testing #hacking #2fa_bypass
Medium
How I Bypassed OTP Rate Limits and Earned $303 in a Bug Bounty Hunt
hello gyussssss
⤷ Title: Inside the Master Panel: How an Unprotected Server Exposed a Massive X Hijacking Operation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 09:47:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2FA #BOTNET #Breakglass Intelligence #credential stuffing #cybersecurity #data breach #Infosec #Turkish Hackers #twitter #X
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Apr 2026 09:47:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2FA #BOTNET #Breakglass Intelligence #credential stuffing #cybersecurity #data breach #Infosec #Turkish Hackers #twitter #X
Penetration Testing Tools
Inside the Master Panel: How an Unprotected Server Exposed a Massive X Hijacking Operation
An exposed administrative console, accessible without even the most rudimentary password, has transformed a clandestine operation into a
⤷ Title: Scotland Man Pleads Guilty in Massive $8 Million Crypto-Heist and Phishing Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 04:00:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2FA bypass #Aggravated Identity Theft #Cryptocurrency Theft #Cybercrime #Department of Justice #Dundee #fbi #Scotland #SIM Swapping #SMS phishing #Tyler Robert Buchanan #Wire Fraud
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 04:00:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2FA bypass #Aggravated Identity Theft #Cryptocurrency Theft #Cybercrime #Department of Justice #Dundee #fbi #Scotland #SIM Swapping #SMS phishing #Tyler Robert Buchanan #Wire Fraud
Daily CyberSecurity
Scotland Man Pleads Guilty in Massive $8 Million Crypto-Heist and Phishing Campaign
Tyler Buchanan pleads guilty in US court for an $8M cyber heist. Discover how SMS phishing and SIM swapping bypassed 2FA to drain corporate & crypto assets.
⤷ Title: Sentry’s 9.1 CVSS SSO Flaw Lets Attackers “Link” Their Way Into Your Account
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:45:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA #Account Takeover #CVE_2026_42354 #CVSS 9.1 #cybersecurity #Identity Linking #infosec #SAML SSO #Self_Hosted Sentry #sentry #SSO Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 12:45:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA #Account Takeover #CVE_2026_42354 #CVSS 9.1 #cybersecurity #Identity Linking #infosec #SAML SSO #Self_Hosted Sentry #sentry #SSO Bypass
Daily CyberSecurity
Sentry’s 9.1 CVSS SSO Flaw Lets Attackers "Link" Their Way Into Your Account
Sentry reveals a critical 9.1 CVSS flaw (CVE-2026-42354) in SAML SSO. Multi-org instances are at risk of account takeover via identity linking. Patch now!
⤷ Title: New “Pheno” Malware Hijacks Microsoft Phone Link to Steal SMS and OTPs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 06:22:26 +0000
════════════════════════
⌗ Tags: #Malware #2FA bypass #Cisco Talos #CloudZ RAT #cybersecurity #infosec #Microsoft Phone Link #mobile security #OTP Theft #Pheno Plugin #SMS interception #Windows malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 06:22:26 +0000
════════════════════════
⌗ Tags: #Malware #2FA bypass #Cisco Talos #CloudZ RAT #cybersecurity #infosec #Microsoft Phone Link #mobile security #OTP Theft #Pheno Plugin #SMS interception #Windows malware
Daily CyberSecurity
New "Pheno" Malware Hijacks Microsoft Phone Link to Steal SMS and OTPs
Cisco Talos exposes Pheno, a malware plugin that hijacks Microsoft Phone Link to steal SMS and 2FA codes without touching your phone. Secure your PC today!
⤷ Title: How I Bypassed 2FA by Mutating My Profile Phone Number in Graphql Request
════════════════════════
𐀪 Author: Mohamed Elmorsy
════════════════════════
ⴵ Time: Tue, 19 May 2026 16:30:03 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty #hacking #2fa_bypass
════════════════════════
𐀪 Author: Mohamed Elmorsy
════════════════════════
ⴵ Time: Tue, 19 May 2026 16:30:03 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #cybersecurity #bug_bounty #hacking #2fa_bypass
Medium
How I Bypassed 2FA by Mutating My Profile Phone Number in Graphql Request
How a simple phone number update in Graphql request compeletly bypassed 2fa protection and gave full account control.
⤷ Title: UNC1151 ‘Ghostwriter’ Phishing Campaign Hijacks Gmail Accounts and 2FA Codes
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 19 Jun 2026 09:04:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2FA phishing #CERT Polska #Ghostwriter #Gmail phishing campaign #Storm_0257 #UNC1151 #UNC1151 Gmail phishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 19 Jun 2026 09:04:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #2FA phishing #CERT Polska #Ghostwriter #Gmail phishing campaign #Storm_0257 #UNC1151 #UNC1151 Gmail phishing
Daily CyberSecurity
UNC1151 'Ghostwriter' Phishing Campaign Hijacks Gmail Accounts and 2FA Codes
The UNC1151 Gmail phishing campaign by Ghostwriter steals passwords and 2FA codes from Polish targets via fake Google login pages. Stay alert.
⤷ Title: 2FA Bypass via Switching Between Email OTP and TOTP During Authentication
════════════════════════
𐀪 Author: Mahmoud Magdy
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 20:29:33 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty_writeup #otp_bypass #2fa_bypass #2fa_authentication
════════════════════════
𐀪 Author: Mahmoud Magdy
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 20:29:33 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #bug_bounty_writeup #otp_bypass #2fa_bypass #2fa_authentication
Medium
2FA Bypass via Switching Between Email OTP and TOTP During Authentication
Hello Hackers 👋