GafryerDocsCybersecurity
Related
How Cybercriminals Exploited Checkmarx and Bitwarden: A Step-by-Step Breakdown of the Supply-Chain AttackCredential-Stealing Malware Infects SAP-Focused npm Packages in Targeted Supply Chain AttackVietnamese Hackers Exploit Google AppSheet to Breach 30,000 Facebook AccountsBrazilian DDoS Mitigation Firm's Infrastructure Hijacked in Widespread ISP AttacksUncovering a Decade-Old Kernel Vulnerability: AEAD Socket Bug Allows Page Cache WritesNew CLI Tool ThreatLens Revolutionizes Log Triage After Event Viewer Failure10 Critical Facts About the Shai-Hulud Malware Attack on PyTorch LightningHow a Brazilian DDoS Protection Company Became the Source of the Attacks It Was Meant to Stop

The Rising Threat of Vishing and SSO Exploitation in SaaS Extortion: Q&A with Experts

Last updated: 2026-05-02 19:58:03 · Cybersecurity
The Rising Threat of Vishing and SSO Exploitation in SaaS Extortion: Q&A with Experts
Source: feeds.feedburner.com

In the rapidly evolving landscape of cybersecurity, two distinct cybercrime groups have emerged as a formidable threat, targeting Software-as-a-Service (SaaS) environments with alarming speed and precision. Known as Cordial Spider (also tracked as BlackFile, CL-CRI-1116, O-UNC-045, and UNC6671) and Snarky Spider (alias O-UNC-025 and UNC6661), these clusters are notorious for executing rapid, high-impact extortion attacks using a combination of vishing (voice phishing) and Single Sign-On (SSO) abuse. Their operations leave minimal forensic traces, making detection and response exceptionally challenging. This Q&A explores the tactics, risks, and defenses against these advanced threats.

The Rising Threat of Vishing and SSO Exploitation in SaaS Extortion: Q&A with Experts
Source: feeds.feedburner.com