// 4 CVE · 3 EXPLOIT · 1 ADVISORY IN THE LAST 24H
phishing

M365 Phishing: How Kali365 and EvilTokens Bypass MFA Without Passwords

Two emerging Phishing-as-a-Service (PhaaS) platforms are leveraging device code phishing and OAuth consent abuse to hijack Microsoft 3…

May 22, 2026views - 270

CYBERSECZERO-DAY

TrendAI Fixes Actively Exploited Apex One Zero-Day; CISA Sets June 4 Patch Deadline

TrendAI has issued critical patches for CVE-2026-34926, a directory traversal vulnerability in Apex One on-premises installations curr…

May 22, 2026views - 17