Tycoon2FA: The Advanced Phishing Kit Hijacking Microsoft 365 Accounts by Bypassing MFA
A sophisticated phishing-as-a-service kit known as Tycoon2FA is being used to bypass Microsoft 365 multi-factor authentication, with device-code…
Cybersecurity news, threat intelligence, and guidance for UK businesses.
A sophisticated phishing-as-a-service kit known as Tycoon2FA is being used to bypass Microsoft 365 multi-factor authentication, with device-code…
Microsoft is rolling out a new Windows feature called Cloud-Initiated Driver Recovery that automatically detects and rolls back…
Microsoft has disclosed a zero-day vulnerability in Exchange Server, tracked as CVE-2026-42897, that is being actively exploited in…
A critical CVSS 10.0 zero-day vulnerability in Cisco’s Catalyst SD-WAN products is being actively exploited, allowing unauthenticated attackers…
Microsoft’s May 2026 Patch Tuesday has arrived, addressing a substantial 120 security vulnerabilities across its product portfolio —…
NordPass research shows the average number of passwords people manage has fallen for the first time since 2020…
The traditional helpdesk role is transforming into the Digital Support Engineer — focused on cloud, AI maintenance, and…
From AI-powered phishing and ransomware double-extortion to state-sponsored attacks and supply chain compromise — a practical overview of…
Two threat actors — CORDIAL SPIDER and SNARKY SPIDER — have been running high-speed SaaS intrusion campaigns since…
Former GCHQ Director Robert Hannigan warns that Iranian-aligned cyber actors have significantly expanded their operations since early 2026,…