Security firm Fortra reports a sophisticated phishing campaign targeting Microsoft Office 365 users. Tactics include layering and numbering techniques, using financial terms to create urgency, and launching a fake Adobe-branded page to collect credentials. In another threat, Fortra reveals that phishing-as-service platforms like SheByte have emerged, offering cybercriminals tools to carry out attacks, including real-time monitoring of phishing victims. Digital risk protection company Memcyco also reported phishing sites mimicking China’s DeepSeek AI model.

Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day – Help Net Security
Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day Help Net Security


