#device


Identity Alone Isn’t Enough: Why Device Security Has to Share the Load

May 20, 2026 // 17:16

Identity has long been the load-bearing wall of cybersecurity. The logic was simple: verify the employee, secure the access. But as professionalized threat actors weaponize […]

GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800+ Internal Repos

May 20, 2026 // 13:41

GitHub on Tuesday said it’s investigating unauthorized access to its internal repositories after the notorious threat actor known as TeamPCP listed the platform’s source code […]

Canada arrests three for operating “SMS blaster” device in Toronto

Apr 27, 2026 // 23:37

Canadian authorities have arrested three men for operating an “SMS blaster” device that pretends to be a cellular tower to send phishing texts to nearby […]

FIRESTARTER Backdoor Hit Federal Cisco Firepower Device, Survives Security Patches

Apr 24, 2026 // 20:09

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed federal civilian agency’s Cisco Firepower device running Adaptive Security Appliance (ASA) software […]

Device code phishing explodes, up 37x! New kits fuel widespread attacks.

Apr 4, 2026 // 17:37

Account takeovers via device code phishing, exploiting the OAuth 2.0 Device Authorization Grant process, have seen a staggering increase of over 37 times this year. […]

EvilTokens service aids Microsoft phishing; device code attacks rise.

Apr 1, 2026 // 23:37

A new harmful tool called EvilTokens uses device code phishing, letting hackers take over Microsoft accounts and offering sophisticated capabilities for business email hacking. This […]

OAuth abuse enables device code phishing attacks, impacting over 340 Microsoft 365 organizations across five countries.

Mar 25, 2026 // 14:43

Cybersecurity experts are raising awareness about an ongoing phishing scheme using device codes to compromise Microsoft 365 accounts in over 340 organizations across the U.S., […]

DarkSword: iOS Exploit Kit Leverages 6 Vulnerabilities, Including 3 Zero-Days, for Complete Device Control.

Mar 19, 2026 // 12:23

Reports from Google Threat Intelligence Group (GTIG), iVerify, and Lookout indicate that a new exploit toolkit targeting Apple iOS, designed for data theft, has been […]

A cyberattack targeting Stryker, a medical technology company, caused widespread device failures affecting tens of thousands of units. The incident did not involve any malicious software.

Mar 17, 2026 // 21:14

The recent cyberattack on Stryker, a large medical device company, affected only its internal Microsoft systems and remotely erased data from tens of thousands of […]