The Browser-in-the-Middle (BitM) cyberattack technique allows hackers to steal user sessions and bypass multi-factor authentication (MFA) rapidly, posing significant threats to organizations. By routing victim interactions through an attacker-controlled browser, they capture session tokens without needing credentials. Mitigation strategies include using hardware-based MFA, client certificates, behavioral monitoring, and security awareness training to combat these sophisticated threats.

DocSwap Malware as Security Document Viewer Attacking Android Users Worldwide
The “DocSwap” malware campaign targets Android users by masquerading as a legitimate document viewer. Utilizing social engineering, it infects devices through phishing, exfiltrates sensitive data,