AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile Evasion
2026-03-27T13:24:05Z•35be74c3ad74672f59b05c24930c433147e3a2a399dd0c679e57e5dc103bfb93
AitManthropic_claudebackdoorcheckmarxcloudflare_turnstilecsp_bypassdevice_code_phishinggenielocker_bearlyfyglasswormkicslangchainlanggraphlitellmoauth_abusephishingransomwaresecrets_exposuresolana_dead_dropssupply_chain_attackteampcptiktok_for_businesstrivywebrtc_data_channelwebsocket_webrtc_skimmerzero_click_xss
What happened
A broad set of active threats and disclosed vulnerabilities affecting enterprise and consumer ecosystems was reported. Key items include AitM phishing targeting TikTok for Business using Cloudflare Turnstile evasion; device-code/OAuth phishing campaigns hitting 340+ Microsoft 365 orgs; TeamPCP supply-chain compromises (Trivy/KICS) that backdoored Python package litellm and abused GitHub Actions (Checkmarx); LangChain and LangGraph flaws exposing filesystem data and secrets; a zero-click XSS/prompt-injection flaw in Anthropic’s Claude Chrome extension; new ransomware (GenieLocker) used by Bearl
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 35be74c3ad74672f59b05c24930c433147e3a2a399dd0c679e57e5dc103bfb93
- Enrichment time
- 2026-03-27T13:24:05Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.