Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook

2026-09-20T08:51:41Z•90df5c631e50c568cdf225f0e765367b19528082545830c8b4a22255e0ce019a
CVE-2026-58704AI governanceAI securityCISA KEVGoogle PixelIoT securityMFAMicrosoft 365camera compromisecyber espionagedata exposuredeepfakesencryption key exposuremobile securitypasskeysphishingprivacyransomwaresemiconductor securitysession hijackingzero-day

What happened

The feed covers a range of cybersecurity and technology developments, including Microsoft-themed passkey and MFA phishing campaigns targeting employee sessions and Microsoft 365 data, a physically compromised Flock camera exposing encryption material and millions of images, and a Google Pixel modem zero-day reportedly exploited in targeted attacks and added to CISA's KEV catalog. It also discusses AI-agent governance and safety, privacy concerns involving smart devices and ChatGPT review, ransomware and deepfake threats, cyber-enabled espionage, and enterprise security implications of emerging

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
techrepublic_security
Record identifier
90df5c631e50c568cdf225f0e765367b19528082545830c8b4a22255e0ce019a
Enrichment time
2026-09-20T08:51:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.