⤷ Title: Hackers Weaponize npm to Hunt Critical Infrastructure Sales Teams
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 00:19:34 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adril7123 #AiTM #Critical Infrastructure #evilginx #Interpack #K_Fair #Manufacturing Security #MicroSecure #Microsoft 365 #npm #phishing #Socket #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 00:19:34 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adril7123 #AiTM #Critical Infrastructure #evilginx #Interpack #K_Fair #Manufacturing Security #MicroSecure #Microsoft 365 #npm #phishing #Socket #supply chain attack
Daily CyberSecurity
Hackers Weaponize npm to Hunt Critical Infrastructure Sales Teams
A new investigation by The Socket Threat Research Team has uncovered a sophisticated spear-phishing operation that has abused the npm registry for at least five months to target critical infrastru…
⤷ Title: The Insider Threat: How Tycoon 2FA Bypasses Microsoft 365 MFA via Spoofing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 10:21:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #BEC #Cybersecurity 2026 #Domain Spoofing #MFA Bypass #Microsoft 365 #Microsoft Threat Intelligence #MX Records #phishing #Tycoon 2FA
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 10 Jan 2026 10:21:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #BEC #Cybersecurity 2026 #Domain Spoofing #MFA Bypass #Microsoft 365 #Microsoft Threat Intelligence #MX Records #phishing #Tycoon 2FA
Information Security News
The Insider Threat: How Tycoon 2FA Bypasses Microsoft 365 MFA via Spoofing
Occasionally, the most perilous phishing missives appear as though they were dispatched by a colleague in the adjacent office. This is precisely the strategy currently favored by adversaries who h…
⤷ Title: MFA Under Siege: Microsoft Unveils Stealthy AiTM Attacks Striking the Energy Sector
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:58:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #BEC #Energy Sector #InfoSec 2026 #MFA Bypass #Microsoft #Microsoft Defender #phishing #Session Hijacking #SharePoint
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:58:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #BEC #Energy Sector #InfoSec 2026 #MFA Bypass #Microsoft #Microsoft Defender #phishing #Session Hijacking #SharePoint
Penetration Testing Tools
MFA Under Siege: Microsoft Unveils Stealthy AiTM Attacks Striking the Energy Sector
Microsoft has disclosed a sophisticated sequence of multi-stage incursions leveraging Adversary-in-the-Middle (AiTM) session hijacking in tandem with Business
⤷ Title: The “All-in-One” Spy: DKnife Malware Hijacks Routers to Swap Downloads
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:38:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AiTM #Chinese Threat Actors #Cisco Talos #DarkNimbus #DKnife #Edge Devices #Malware Analysis #router security #ShadowPad #Traffic Manipulation #yitiji
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:38:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AiTM #Chinese Threat Actors #Cisco Talos #DarkNimbus #DKnife #Edge Devices #Malware Analysis #router security #ShadowPad #Traffic Manipulation #yitiji
Daily CyberSecurity
The "All-in-One" Spy: DKnife Malware Hijacks Routers to Swap Downloads
Cisco Talos exposes DKnife, a router malware that inspects traffic and swaps legitimate downloads for ShadowPad backdoors. Active since 2019.
⤷ Title: Shattering the Edge: Cisco Talos Unmasks “DKnife,” the 7-Module Framework Hijacking Your Router
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 04:19:48 +0000
════════════════════════
⌗ Tags: #Malware #AitM attack #China_nexus APT #Cisco Talos #DarkNimbus #DKnife #edge device security #Linux malware #network infrastructure #router malware #ShadowPad #Tech News 2026 #WizardNet
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 04:19:48 +0000
════════════════════════
⌗ Tags: #Malware #AitM attack #China_nexus APT #Cisco Talos #DarkNimbus #DKnife #edge device security #Linux malware #network infrastructure #router malware #ShadowPad #Tech News 2026 #WizardNet
Penetration Testing Tools
Shattering the Edge: Cisco Talos Unmasks "DKnife," the 7-Module Framework Hijacking Your Router
Security analysts at Cisco Talos have unmasked a clandestine offensive platform that has operated surreptitiously within network infrastructure
⤷ Title: China-Linked DKnife Spyware Hijacking Internet Routers Since 2019
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 10:46:18 +0000
════════════════════════
⌗ Tags: #Security #Malware #AitM #China #Cisco Talos #Cyber Attack #Cybersecurity #DKnife #Signal #WeChat
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 10:46:18 +0000
════════════════════════
⌗ Tags: #Security #Malware #AitM #China #Cisco Talos #Cyber Attack #Cybersecurity #DKnife #Signal #WeChat
Hackread
China-Linked DKnife Spyware Hijacking Internet Routers Since 2019
DKnife, a China-nexus framework is targeting routers and edge devices using stealthy implants to hijack data and deliver malware via AitM attacks.
⤷ Title: Trusted Tool Weaponized: Lotus Blossom Hijacks Notepad++ Updates
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Feb 2026 00:00:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AiTM #Chrysalis Backdoor #Cobalt Strike #cybersecurity #DLL side_loading #infosec #Lotus Blossom #notepad++ #Patch Alert #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Feb 2026 00:00:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AiTM #Chrysalis Backdoor #Cobalt Strike #cybersecurity #DLL side_loading #infosec #Lotus Blossom #notepad++ #Patch Alert #supply chain attack
Daily CyberSecurity
Trusted Tool Weaponized: Lotus Blossom Hijacks Notepad++ Updates
Lotus Blossom hijacked Notepad++ updates to target admins. The supply chain attack deployed Chrysalis backdoor. Update to v8.9.1 immediately.
⤷ Title: Global Coalition Dismantles Tycoon 2FA’s Phishing Empire
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 03:42:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AitM Phishing #cybersecurity #Europol #infosec #MFA Bypass #Microsoft Security #PhaaS #Phishing_as_a_Service #threat intelligence #Tycoon 2FA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 03:42:17 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AitM Phishing #cybersecurity #Europol #infosec #MFA Bypass #Microsoft Security #PhaaS #Phishing_as_a_Service #threat intelligence #Tycoon 2FA
Daily CyberSecurity
Global Coalition Dismantles Tycoon 2FA’s Phishing Empire
Microsoft and Europol lead a global coalition to dismantle Tycoon 2FA, a massive AiTM phishing platform that bypassed MFA for over 500,000 organizations.
⤷ Title: AWS Console Alert: Real-Time “AiTM” Phishing Campaign Bypasses MFA with Rapid Precision
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 10:25:57 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adversary_in_the_middle #AiTM Attack #AWS Phishing #Cloud Security #Credential Harvesting #cybersecurity #Datadog Security Research #infosec #MFA Bypass #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 10:25:57 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adversary_in_the_middle #AiTM Attack #AWS Phishing #Cloud Security #Credential Harvesting #cybersecurity #Datadog Security Research #infosec #MFA Bypass #threat intelligence
Daily CyberSecurity
AWS Console Alert: Real-Time "AiTM" Phishing Campaign Bypasses MFA with Rapid Precision
Datadog Security Research uncovers a sophisticated AiTM phishing campaign using real-time proxies to steal AWS Console credentials and bypass MFA in minutes.
⤷ Title: APT28 Hijacks Home Routers to Steal Corporate Credentials
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 08 Apr 2026 02:20:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #APT28 #CVE_2023_50224 #cybersecurity #DNS hijacking #Fancy Bear #GRU #MikroTik #NCSC #OAuth Theft #router security #TP_Link
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 08 Apr 2026 02:20:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #APT28 #CVE_2023_50224 #cybersecurity #DNS hijacking #Fancy Bear #GRU #MikroTik #NCSC #OAuth Theft #router security #TP_Link
Daily CyberSecurity
APT28 Hijacks Home Routers to Steal Corporate Credentials
NCSC unmasks APT28’s "digital funnel" using router DNS hijacking to steal OAuth tokens and passwords. Protect your remote workforce—patch your routers now.