Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook
2026-09-20T08:51:41Z•90df5c631e50c568cdf225f0e765367b19528082545830c8b4a22255e0ce019a
CVE-2026-58704AI governanceAI securityCISA KEVGoogle PixelIoT securityMFAMicrosoft 365camera compromisecyber espionagedata exposuredeepfakesencryption key exposuremobile securitypasskeysphishingprivacyransomwaresemiconductor securitysession hijackingzero-day
What happened
The feed covers a range of cybersecurity and technology developments, including Microsoft-themed passkey and MFA phishing campaigns targeting employee sessions and Microsoft 365 data, a physically compromised Flock camera exposing encryption material and millions of images, and a Google Pixel modem zero-day reportedly exploited in targeted attacks and added to CISA's KEV catalog. It also discusses AI-agent governance and safety, privacy concerns involving smart devices and ChatGPT review, ransomware and deepfake threats, cyber-enabled espionage, and enterprise security implications of emerging
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- techrepublic_security
- Record identifier
- 90df5c631e50c568cdf225f0e765367b19528082545830c8b4a22255e0ce019a
- Enrichment time
- 2026-09-20T08:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.