logo

Attackers found a new way around MFA.

ID: bcf1d3c9-1268-5e4c-99d1-6fd053c1fa00

STIX ID: report--bcf1d3c9-1268-5e4c-99d1-6fd053c1fa00

Feed Name: The CyberWire

Threat Score
80/100

Date Published: 2026-05-26

Date Updated: 2026-05-27

...
...

## Executive Summary The CyberWire Daily roundup highlights multiple active and emerging cyber threats: an FBI warning about the Kali365 phishing service targeting Microsoft 365 accounts, Iran-linked phishing and SEO poisoning campaigns aimed at US aviation, discovery of thousands of potential OSS vulnerabilities, a large-scale GitHub backdoor/supply-chain campaign (Megalodon) affecting many repositories, exploitation of a KnowledgeDeliver zero-day to deploy web shells, and arrests tied to bulletproof hosting used by Russian-aligned actors. These items indicate ongoing phishing, supply-chain compromise, zero-day exploitation, and criminal hosting infrastructure activity that pose cross-sector risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.