SecurityBrief UK - Technology news for CISOs & cybersecurity decision-makers

OAuth stories

Flux result e138c2c7 10d5 44b8 b5f2 1566c9a08fa9

Proofpoint flags mailbox rule abuse in Microsoft 365

2 days ago
#
edutech
#
mfa
#
cloud security
Proofpoint says mailbox rule abuse is becoming a routine Microsoft 365 takeover tactic, helping attackers hide alerts, hijack threads and drive fraud.
Flux result 12f8aff4 dbb2 4670 b3c6 a89d32ca8e99

Microsoft 365 EvilToken campaign hits hundreds daily

Last week
#
mfa
#
cloud security
#
phishing
Microsoft warns that 10 to 15 EvilToken phishing runs are launched daily, compromising hundreds of organisations through OAuth token abuse.
Flux result bcae5981 62c1 418e 84bb 0a21eaa40e50

OpenID Foundation names Kantara as authorised auditor

Last month
#
fintech
#
iam
#
risk & compliance
OpenID Foundation appoints Kantara Initiative to oversee testing service applicants as it expands independent assurance for digital identity standards.
Flux result 110baaa4 c6d3 4b1c a508 287d019f2a12

Vorlon launches tools for AI agent security response

Last month
#
data protection
#
cloud security
#
socs
Vorlon unveils AI Agent Flight Recorder and Action Centre to help security teams trace activity across SaaS apps and coordinate responses.
Editorial ciso studying cloud saas dashboards ai security warning symbols incidents

Vorlon survey finds SaaS AI security gaps among CISOs

Last month
#
data protection
#
cloud security
#
application security
Vorlon survey reveals nearly all CISOs suffered SaaS and AI security incidents in 2025, despite high confidence in existing controls.
Secure enterprise datacenter ai agents locked data cloud shield

CData boosts Connect AI with secure MCP agent tools

Last month
#
virtualisation
#
devops
#
data analytics
CData upgrades Connect AI with managed MCP tools, tightening data access, identity controls and live connectivity for enterprise agents.
Story 300075

OpenClaw AI assistant surge sparks major security fears

Fri, 27th Feb 2026
#
malware
#
phishing
#
application security
A rapid surge in OpenClaw AI assistant use has left tens of thousands of exposed systems and a trail of hijacked tools and malicious add-ons.
Ai cyber attack hourglass binary lock cloud night office scene

AI-fuelled cyber attacks now steal data in 72 minutes

Fri, 27th Feb 2026
#
firewalls
#
pam
#
cloud security
AI-driven hackers can now steal data in just 72 minutes, as faster, multi-surface attacks overwhelm complex, over-trusting enterprises.
Cinematic soc night ai alert dashboards hidden apps control

Okta unveils tools to detect & govern shadow AI risks

Fri, 13th Feb 2026
#
pam
#
cloud security
#
application security
Okta launches Agent Discovery to uncover and rein in shadow AI agents, mapping risky app access and tightening identity-based controls.
Moody office worker on call mfa login screen red warning shield

Okta users warned as ShinyHunters expand vishing wave

Wed, 4th Feb 2026
#
ddos
#
ransomware
#
mfa
Okta users face rising vishing attacks as ShinyHunters expand real-time MFA phishing, prompting fresh SaaS and identity security warnings.
Office staff cat ai unmanaged laptop security analyst red alerts

Shadow AI assistant Clawdbot raises workplace risks

Thu, 29th Jan 2026
#
uc
#
firewalls
#
data protection
Shadow AI tool Clawdbot quietly spreads across workplaces, alarming security teams as staff grant it broad access on unmanaged devices.
Hooded binary figure ai cyber threats glowing locked data shield

Experts warn AI era demands tougher data protection

Fri, 23rd Jan 2026
#
data protection
#
digital transformation
#
pam
Experts say AI-driven attacks and rampant data leaks mean organisations must verify outputs, curb collection and harden identity controls.
Cloud server cluster hooks into laptop symbolizing mass phishing

Kubernetes accelerates large-scale phishing operations

Tue, 13th Jan 2026
#
virtualisation
#
mfa
#
cloud security
Criminals are using Kubernetes and cloud-native tools to rapidly scale phishing-as-a-service, targeting Gmail, Facebook and Microsoft O365.
Office worker phishing qr code lock icon cloud account attack

Proofpoint warns of surge in Microsoft device code phishing

Thu, 8th Jan 2026
#
edutech
#
mfa
#
cloud security
Proofpoint flags a sharp rise in Microsoft 365 account takeovers via device code phishing, hitting firms from finance to government.
Ai shield protecting app icon cloud from shadowy cyber attack

SaaS attacks surge as boards turn to AI for defence

Thu, 25th Dec 2025
#
saas
#
crm
#
firewalls
Cyber attacks on SaaS platforms are soaring, pushing boards to make AI‑driven security a core strategy as misconfigurations fuel mass breaches.
Interconnected data streams business software icons central ai symbol integration

CData, Microsoft unlock broad MCP data connectivity

Fri, 21st Nov 2025
#
data analytics
#
martech
#
ai security
CData's Connect AI now enables Microsoft Copilot Studio agents to access and act on live data from 350+ enterprise systems, boosting AI-driven business insights.
Locked server digital circuit ai agents secure access enterprise environment

Delinea unveils open-source MCP Server to secure AI agent access

Wed, 24th Sep 2025
#
physical security
#
rpa
#
llms
Delinea has launched its open-source MCP Server, enabling secure, policy-driven access for AI agents to manage credentials and workflows efficiently.
Illustration computer screen padlocks shields digital browser windows cybersecurity

SquareX launches open-source toolkits to defend browsers

Fri, 8th Aug 2025
#
firewalls
#
network security
#
advanced persistent threat protection
SquareX launches two open-source toolkits to help security teams simulate and defend against browser-based attacks that evade traditional enterprise defences.
Secure server room norwegian flags medical icons digital padlocks healthcare data

Norway adopts FAPI 2.0 to secure national healthcare data

Thu, 26th Jun 2025
#
data protection
#
fintech
#
breach prevention
Norway mandates FAPI 2.0 security protocol across its national healthcare network to enhance protection of patient data with banking-level safeguards.
Digital illustration secure cloud environment with ai agents protecting data

Okta launches Cross App Access to boost AI security in firms

Tue, 24th Jun 2025
#
firewalls
#
digital transformation
#
network security
Okta has launched Cross App Access to enhance enterprise AI security by giving IT teams central control and visibility over AI agent interactions with apps.