⤷ Title: PoisonSeed’s MFA-Resistant Phishing Kit Exposed: A Deep Dive into Precision-Validated Credential Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 13 Aug 2025 00:30:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adversary_in_the_middle #AiTM #Credential Theft #CryptoChameleon #Cryptocurrency Fraud #cybersecurity #MFA Bypass #NVISO #phishing #PoisonSeed #Scattered Spider
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 13 Aug 2025 00:30:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adversary_in_the_middle #AiTM #Credential Theft #CryptoChameleon #Cryptocurrency Fraud #cybersecurity #MFA Bypass #NVISO #phishing #PoisonSeed #Scattered Spider
Daily CyberSecurity
PoisonSeed’s MFA-Resistant Phishing Kit Exposed: A Deep Dive into Precision-Validated Credential Theft
A new advanced phishing kit, PoisonSeed, bypasses MFA with AitM techniques to steal credentials and launch cryptocurrency scams. NVISO uncovers the tactics.
⤷ Title: Zero-Day PoC Published: Privilege Escalation Flaw in VMware Tools Used by Chinese APT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 30 Sep 2025 02:28:52 +0000
════════════════════════
⌗ Tags: #Vulnerability #Chinese APT #cybersecurity #NVISO #privilege escalation #root access #UNC5174 #vmware #VMware Tools #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 30 Sep 2025 02:28:52 +0000
════════════════════════
⌗ Tags: #Vulnerability #Chinese APT #cybersecurity #NVISO #privilege escalation #root access #UNC5174 #vmware #VMware Tools #zero_day
Daily CyberSecurity
Zero-Day PoC Published: Privilege Escalation Flaw in VMware Tools Used by Chinese APT
A zero-day flaw in VMware Tools (CVE-2025-41244) allows local attackers to gain root privileges. NVISO confirmed exploitation by a Chinese APT. A public PoC is now available.
⤷ Title: Russian-Speaking Lunar Spider Group Launches New Ransomware Wave with Latrodectus V2 Loader
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:05:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #DLL Sideloading #FakeCaptcha #IcedID #Latrodectus V2 #LUNAR SPIDER #NVISO #ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:05:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #DLL Sideloading #FakeCaptcha #IcedID #Latrodectus V2 #LUNAR SPIDER #NVISO #ransomware
Daily CyberSecurity
Russian-Speaking Lunar Spider Group Launches New Ransomware Wave with Latrodectus V2 Loader
Russian-speaking Lunar Spider group is using the sophisticated Latrodectus V2 loader and a FakeCaptcha lure to gain initial access for ransomware operations.
⤷ Title: The “Fix” is a Trap: ConsentFix Phishing Bypasses MFA via Azure CLI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 02 Feb 2026 00:42:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AuthCodeFix #Azure CLI #Conditional Access #ConsentFix #MFA Bypass #Microsoft Entra ID #NVISO #OAuth Abuse #phishing #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 02 Feb 2026 00:42:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AuthCodeFix #Azure CLI #Conditional Access #ConsentFix #MFA Bypass #Microsoft Entra ID #NVISO #OAuth Abuse #phishing #social engineering
Daily CyberSecurity
The "Fix" is a Trap: ConsentFix Phishing Bypasses MFA via Azure CLI
"ConsentFix" phishing tricks users into pasting OAuth codes from Azure CLI, bypassing MFA and Conditional Access. Detect this "fix" scam now.