Tuesday 22 September 2026 05:18:02 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContact
EnglishItaliano

#account hijack


When a Signed Login Stops Being Trusted: Siemens Mendix SAML Bug Puts Federation on Edge

Published: 15 September 2026 18:39Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: NEONPALADIN

A high-severity SAML validation flaw in Siemens Mendix SAML shows how a single trust-check failure can turn federated login into an account-hijack risk.

When a Verified Brand Becomes the Payload

Published: 15 September 2026 08:07Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A hijacked HBO Max Reddit identity was used to push ClickFix-style malicious ads, showing how trust signals can be repurposed into an execution path for Windows and macOS users.

How a Helpdesk Pretend Can Slip Past Passkey Security in Microsoft 365

Published: 10 September 2026 10:09Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

The dangerous part is not the passkey itself, but the human workflow around identity recovery, where urgency and trust can be turned into account takeover.

When a Session Cookie Becomes the Skeleton Key to an AI Account

Published: 31 August 2026 08:06Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A credential-stealing campaign aimed at Claude accounts shows why modern account security is no longer just about passwords - it is about revoking live sessions before an attacker can replay them.

When a Translation Layer Turns into a Control Panel

Published: 26 August 2026 12:30Category: Vulnerabilities & Patch ManagementGeo: Europe / RomaniaAuthor: DEEPAUDIT

A critical flaw tied to the WordPress plugin TranslatePress shows how one weak privilege check in a widely deployed extension can become a path to full site control.

When a Real Login Becomes the Trap: Spyware-Free Espionage Moves Through MFA

Published: 21 August 2026 13:00Category: Cyber Warfare & Nation-State OperationsAuthor: AGONY

Suspected Russia-linked clusters are reportedly turning ordinary sign-in flows into access brokers, using legitimate authentication steps to reach high-value accounts.

Insurance Phishing Has Learned to Move at the Speed of a Login

Published: 25 July 2026 14:08Category: Security Awareness & Social EngineeringGeo: Middle East / BahrainAuthor: NEURALSHIELD

CTM360-linked research points to a shift from delayed credential theft to real-time account hijacking, a change that shrinks the defender’s window from hours to seconds.

When a Mailbox Becomes an API Problem

Published: 09 July 2026 11:34Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A targeted campaign tied to ToddyCat shows how malware, installer lures, and cloud authorization abuse can turn Gmail from an inbox into an identity-risk surface.

When a Phone Number Turns Into a Crypto Break-In Tool

Published: 26 June 2026 02:10Category: CybercrimeGeo: Europe / PolandAuthor: CIPHERWARDEN

A Polish arrests case shows how SIM-swapping can move through telecom trust, email access, and identity recovery.

When the Login Becomes the Breach: Tchap Shows How Identity Can Outrun Encryption

Published: 09 June 2026 14:36Category: Breaches & Data LeaksGeo: Europe / FranceAuthor: SECURERECLAIMER

France’s government messenger was tied to a hijacked account, a reminder that secure chat can still bend if the person behind the screen is no longer trusted.

Weedhack Turns Minecraft Curiosity Into a Credential-Grabging Business

Published: 09 June 2026 10:27Category: Malware & BotnetsGeo: North America / USAAuthor: NEXUSGUARDIAN

A subscription-style malware operation tied to Minecraft lures shows how fake mod sites, search poisoning, and social promotion can be turned into a repeatable theft pipeline.

When a Support Bot Becomes the Soft Spot: Instagram Takeovers and the New Identity Boundary

Published: 04 June 2026 12:32Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A reported Instagram hijack case points to a larger security lesson: when AI can influence recovery workflows, the trust boundary moves from login screens to support logic.

When a Conference Console Turns Hostile: The pretalx XSS Patch That Matters

Published: 01 June 2026 16:15Category: Vulnerabilities & Patch ManagementGeo: Europe / GermanyAuthor: DEEPAUDIT

A cross-site scripting flaw in pretalx was patched in v2026.1.0, and the technical lesson is bigger than one event tool: privileged browser sessions remain a high-value target.

Avatar Uploads, Full Trust: The Open WebUI Flaw That Turned a Profile Feature Into a Security Fault Line

Published: 12 May 2026 13:57Category: Vulnerabilities & Patch ManagementAuthor: NEONPALADIN

A reported stored XSS issue in Open WebUI’s upload path shows how a routine profile-image workflow can become a persistent browser-side attack surface, with a claimed route to account hijacking and even deeper compromise in chained scenarios.

When a Trusted Installer Turns Into a Message Relay

Published: 09 May 2026 19:23Category: Malware & BotnetsGeo: South America / BrazilAuthor: NEXUSGUARDIAN

Reported activity around TCLBANKER shows how a banking trojan can borrow the credibility of a signed installer and the reach of hijacked accounts to spread further.

Invisible Gatecrashers: How a Silent Flaw in LangSmith Threatened Enterprise AI Security

Published: 14 March 2026 10:54Category: Cloud, SaaS & Identity SecurityAuthor: NEURALSHIELD

A quietly devastating vulnerability in LangSmith exposed critical enterprise data to stealthy account hijacks-without a single password phished.