Posts 2026 09 08 Daily Hunt Feed - 2026-09-08
Post
Cancel

Daily Hunt Feed - 2026-09-08

Threat Hunt Feed (2026-09-08)

Hacker News: Best

BleepingComputer

  • BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations — Mon, 07 Sep 2026 11:39:51 -0400
    • Matched TTPs: Adversary-in-the-Middle (T1557), Sharepoint (T1213.002), JavaScript (T1059.007), Malware (T1588.001), Hardware (T1592.001), Control Panel (T1218.002), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Multi-Factor Authentication (T1556.006), Software (T1592.002), Credentials (T1589.001), Conditional Access Policies (T1556.009), At (T1053.002)
  • Trezor data breach impact now reaches 81,000 customers — Mon, 07 Sep 2026 08:16:32 -0400
    • Matched TTPs: Malware (T1588.001), Hardware (T1592.001), Email Addresses (T1589.002), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Credentials (T1589.001), At (T1053.002)
  • ChatGPT can now connect to your personal apps to mimic writing style — Mon, 07 Sep 2026 06:36:37 -0400
    • Matched TTPs: Artificial Intelligence (T1588.007), Malware (T1588.001), Hardware (T1592.001), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Credentials (T1589.001), At (T1053.002)
  • Hackers exploit new MikroTik RouterOS flaws to hijack routers — Mon, 07 Sep 2026 06:32:40 -0400
    • Matched TTPs: Malware (T1588.001), Hardware (T1592.001), Vulnerabilities (T1588.006), SSH (T1021.004), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Credentials (T1589.001), At (T1053.002)

The Hacker News

  • Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks — Mon, 07 Sep 2026 21:21:56 +0530
    • Matched TTPs: Adversary-in-the-Middle (T1557), Sharepoint (T1213.002), IP Addresses (T1590.005), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Domains (T1584.001), Proxy (T1090), Phishing (T1566), Multi-Factor Authentication (T1556.006), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), Conditional Access Policies (T1556.009), At (T1053.002)
  • ⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More — Mon, 07 Sep 2026 20:06:07 +0530
    • Matched TTPs: Scheduled Task (T1053.005), VNC (T1021.005), Adversary-in-the-Middle (T1557), Artificial Intelligence (T1588.007), IP Addresses (T1590.005), JavaScript (T1059.007), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Domains (T1584.001), Web Shell (T1505.003), Server (T1584.004), Proxy (T1090), Phishing (T1566), Multi-Factor Authentication (T1556.006), Software (T1592.002), Input Capture (T1056), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts — Mon, 07 Sep 2026 17:06:39 +0530
    • Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Server (T1584.004), PowerShell (T1059.001), Phishing (T1566), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), Visual Basic (T1059.005), At (T1053.002)
  • Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released — Mon, 07 Sep 2026 16:50:14 +0530
    • Matched TTPs: Vulnerabilities (T1588.006), SSH (T1021.004), DLL (T1574.001), Web Shell (T1505.003), Server (T1584.004), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies — Mon, 07 Sep 2026 13:23:04 +0530
    • Matched TTPs: JavaScript (T1059.007), Malvertising (T1583.008), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Proxy (T1090), PowerShell (T1059.001), Phishing (T1566), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)

데일리시큐 - 최근인기기사

This post is licensed under CC BY 4.0 by the author.