The Thunderbird team has officially released Thunderbird 156, bringing another round of new features, security improvements, ...
Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites ...
The campaign reportedly targeted visitors through Brevo’s embedded tracker, chat widget, hosted forms, and unsubscribe pages.
Thunderbird 156 adds custom OAuth support for POP3, new enterprise policies, and fixes for IMAP, POP3, attachments, OpenPGP, and calendars.
Sentire's Threat Response Unit (TRU) has uncovered a previously undocumented device-code phishing kit, dubbed "GhostCode," that abuses Microsoft's OAuth 2.0 device authorization grant flow to hijack ...
JWR phishing kit targets victims via SMS links, stealing card details, passwords, and OTPs through live fraud sessions.