CyberHoot
The Sophisticated Malware-as-a-Service Ecosystem of EncryptHub
EncryptHub malware is a sophisticated cyber threat enabling data theft, remote access, and system compromise.
HowTo: How to Add Users via Google Workspace Sync
CyberHoot supports 3 forms of multi-factor authentication: Email, SMS, and Authenticator applications. This article explains how to set each up and provides a video overview of how to setup an authenticator application.
HowTo: Add a New Client to CyberHoot’s Power Platform
Adding customers is easy with the 5 step wizard. This article goes into the basic details of adding your customers into CyberHoot.
HowTo: Reauthorize Entra ID – Client Secret
Microsoft GCC Azure Sync requires an Enterprise Application currently within CyberHoot. This article explains how to set this up.
Advisory: Critical Microsoft Outlook Vulnerability
Critical Microsoft Outlook vulnerability allows attackers to bypass security using the 'Moniker Link' exploit.
Hackers Exploit CAPTCHA Trick on Webflow to Deliver Phishing Attacks
Cybercriminals are exploiting Webflow’s trusted infrastructure using fake CAPTCHA screens to deliver phishing attacks.
HowTo: Allow-List by X-Header in Exchange 2013, 2016, or Microsoft 365
Allow-Listing X-Headers is necessary in order for CyberHoot to send simulated phishing emails to bypass your mail filter. We recommend whitelisting by IP address or hostname but depending on your ...
CyberHoot Newsletter – February 2025
This newsletter summarizes cybersecurity news from January, and boy there are some big events that happened.
USPS Text Scam: Cybercriminals Hiding Malicious PDFs
Beware of a new USPS text scam using malicious PDF links to bypass security filters. Learn how cybercriminals exploit trusted platforms and how to protect yourself from phishing attacks
U.S Navy Limits DeepSeek AI Over Cybersecurity Concerns
Discover why the U.S. Navy is restricting DeepSeek AI due to cybersecurity concerns, including data security risks, misinformation, and adversarial exploitation.