Tag

#Proofpoint

6 stories taggedProofpoint.

A security operations center where analysts are tracking millions of spoofed login attempts on large dashboard displays, threat intelligence feeds scrolling acr
Identity & Access

Four Million Fake App IDs, One Blind Spot: How Hackers Are Slipping Past Microsoft Login Defences

Two criminal campaigns sent over four million spoofed application identities at Microsoft's sign-in system and barely triggered an alert. Here is what happened, who is at risk, and what security teams can do.

5 min read
An email inbox showing a phishing message with COLDCARD hardware wallet branding, an installation dialog in the background, and subtle indicators of the ScreenC
Threat Intelligence

Fake COLDCARD 'Security Audit' Emails Push Remote Access Tool After $88M Bitcoin Theft

A phishing campaign impersonates the hardware wallet maker, tricks owners into installing ScreenConnect, and hands attackers full control of the victim's PC.

4 min read
A computer monitor displaying an email interface with a subtle, barely-visible code injection overlaid on the message list, representing a hidden backdoor plant
Threat Intelligence

Russian hackers used an Outlook Web Access flaw to plant hidden backdoor in mailboxes

Proofpoint says Laundry Bear, tracked as TA488, exploited a zero-day in Microsoft's webmail to install OWAReaper, a stealthy tool that survives password resets and credential rotations.

4 min read
An inbox overflowing with official-looking income tax notification emails, with a malware payload invisibly embedded in one highlighted message
Threat Intelligence

Cruciferra: The Malware-Hiding Service Fuelling Attacks on Indian Taxpayers

A China-linked group is paying for a tool called Cruciferra to smuggle remote-access malware onto Windows machines, with fake income tax emails as the entry point.

3 min read
Illustration: A dimly lit university physics laboratory at night, empty of people
Threat Intelligence

China-linked hackers hit university email servers to spy on physics and defence researchers

Proofpoint says a group it calls UNK_MassTraction is chaining two Roundcube flaws at U.S. and Canadian universities to steal logins and plant backdoors.

4 min read
Illustration: a busy international airport terminal, shot from above at dusk
Threat Intelligence

TA558 Is Back, Targeting Hotels and Airlines With Fake Booking Emails

A criminal group that has quietly stolen travel-industry data since 2018 has dramatically ramped up its fake-reservation campaigns, now using compressed file tricks to sneak spying software onto victims' computers.

3 min read
© 2026 Threat Vectr