CyberNotableConfirmedDeveloping
6.5
New SynkLoader malware identified in Microsoft Teams phishing campaign
BleepingComputer·US·3 days ago
The iAuthFlow V2 phishing toolkit introduces a mechanism to register attacker-controlled passkeys, bypassing standard security measures like password resets and session revocation. This development marks a significant evolution in credential harvesting, as it allows for persistent unauthorized access even after defensive remediation steps are taken.