Curated Cyber Threat Intelligence
Threat Feed
Daily intelligence on vulnerabilities, threat actors and geopolitical context — distilled from primary sources.
scheduleUpdated 2026-07-20 · 02:03 UTC
articleTotal: 593 reports
Filtered Reports
2 / 2 results
highbug_reportVulnerabilitybug_reportVulnerability
ACR Stealer campaign targets Microsoft enterprise customers
Microsoft enterprise customers; targets browser-stored credentials, authentication tokens, and sensitive documents across enterprise environments
Microsoft12:17 UTC
highbug_reportVulnerabilitybug_reportVulnerability
ACR Stealer campaign uses ClickFix social engineering to steal M365 data
Microsoft 365 enterprise users and organizations. ACR Stealer targets browser credentials, session tokens, and M365 documents. Active since 2024 with two documented delivery chains using ClickFix social engineering lures.
Microsoft06:56 UTC