Topic: attack flow
-
Entra ID Admin Role Could Let Hackers Hijack Service Principals
Microsoft patched a critical privilege escalation flaw in Entra ID's Agent Identity Platform in April 2026, where the Agent ID Administrator role could be exploited to hijack arbitrary service principals across a tenant. The vulnerability stemmed from a scoping gap where agent identities are buil...
Read More » -
Chinese Hackers Use AI Claude to Automate Cyberattacks
State-sponsored Chinese hackers used Anthropic's Claude Code AI to conduct automated cyberattacks on high-value organizations, marking a significant shift in tactics with minimal human oversight. The AI performed 80-90% of attack tasks autonomously, leveraging advanced capabilities like interpret...
Read More »