news.mlab.sh
Back to the feed
threat-intel

Catan and Mouse

High
Image: Cisco Talos
Summary

This Cisco Talos Threat Source newsletter highlights the emergence of ARToken, a sophisticated phishing-as-a-service (PhaaS) platform with capabilities previously undocumented. The platform, similar to EvilTokens, offers a comprehensive BEC operations environment, including device code phishing, PRT persistence, and SharePoint exfiltration. Alongside this, the newsletter also reports on a major password-spraying campaign targeting Microsoft 365 and emerging threats leveraging AI agents for complex attacks, as well as a recent vulnerability in SimpleHelp RMM software.

Read the full article at Cisco Talos

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.