SecurityBrief New Zealand - Technology news for CISOs & cybersecurity decision-makers

OAuth stories

Story 300075

OpenClaw AI assistant surge sparks major security fears

Last week
#
malware
#
phishing
#
application security
A rapid surge in OpenClaw AI assistant use has left tens of thousands of exposed systems and a trail of hijacked tools and malicious add-ons.
Ai cyber attack hourglass binary lock cloud night office scene

AI-fuelled cyber attacks now steal data in 72 minutes

Last week
#
firewalls
#
pam
#
cloud security
AI-driven hackers can now steal data in just 72 minutes, as faster, multi-surface attacks overwhelm complex, over-trusting enterprises.
Cinematic soc night ai alert dashboards hidden apps control

Okta unveils tools to detect & govern shadow AI risks

Last month
#
pam
#
cloud security
#
application security
Okta launches Agent Discovery to uncover and rein in shadow AI agents, mapping risky app access and tightening identity-based controls.
Moody office worker on call mfa login screen red warning shield

Okta users warned as ShinyHunters expand vishing wave

Last month
#
ddos
#
ransomware
#
mfa
Okta users face rising vishing attacks as ShinyHunters expand real-time MFA phishing, prompting fresh SaaS and identity security warnings.
Office staff cat ai unmanaged laptop security analyst red alerts

Shadow AI assistant Clawdbot raises workplace risks

Thu, 29th Jan 2026
#
uc
#
firewalls
#
data protection
Shadow AI tool Clawdbot quietly spreads across workplaces, alarming security teams as staff grant it broad access on unmanaged devices.
Hooded binary figure ai cyber threats glowing locked data shield

Experts warn AI era demands tougher data protection

Fri, 23rd Jan 2026
#
data protection
#
digital transformation
#
pam
Experts say AI-driven attacks and rampant data leaks mean organisations must verify outputs, curb collection and harden identity controls.
Cloud server cluster hooks into laptop symbolizing mass phishing

Kubernetes accelerates large-scale phishing operations

Tue, 13th Jan 2026
#
virtualisation
#
mfa
#
cloud security
Criminals are using Kubernetes and cloud-native tools to rapidly scale phishing-as-a-service, targeting Gmail, Facebook and Microsoft O365.
Office worker phishing qr code lock icon cloud account attack

Proofpoint warns of surge in Microsoft device code phishing

Thu, 8th Jan 2026
#
edutech
#
mfa
#
cloud security
Proofpoint flags a sharp rise in Microsoft 365 account takeovers via device code phishing, hitting firms from finance to government.
Ai shield protecting app icon cloud from shadowy cyber attack

SaaS attacks surge as boards turn to AI for defence

Thu, 25th Dec 2025
#
saas
#
crm
#
firewalls
Cyber attacks on SaaS platforms are soaring, pushing boards to make AI‑driven security a core strategy as misconfigurations fuel mass breaches.
Interconnected data streams business software icons central ai symbol integration

CData, Microsoft unlock broad MCP data connectivity

Fri, 21st Nov 2025
#
data analytics
#
martech
#
ai security
CData's Connect AI now enables Microsoft Copilot Studio agents to access and act on live data from 350+ enterprise systems, boosting AI-driven business insights.
Worried it professional chaotic unapproved cloud apps security risk

Google Workspace isn't built to handle shadow SaaS

Thu, 2nd Oct 2025
#
cloud security
#
casb
#
iam
Google Workspace's native tools struggle to manage unapproved SaaS apps, exposing firms to data risks amid rising shadow IT use.
Realistic hacker at computer with digital symbols login screens microsoft 365 credential theft

Barracuda warns of surge in advanced OAuth phishing

Thu, 25th Sep 2025
#
firewalls
#
mfa
#
phishing
Barracuda warns of a surge in advanced OAuth phishing attacks exploiting Microsoft 365 and other platforms to steal access tokens and bypass multifactor authentication.
Locked server digital circuit ai agents secure access enterprise environment

Delinea unveils open-source MCP Server to secure AI agent access

Wed, 24th Sep 2025
#
physical security
#
rpa
#
llms
Delinea has launched its open-source MCP Server, enabling secure, policy-driven access for AI agents to manage credentials and workflows efficiently.
Illustration computer screen padlocks shields digital browser windows cybersecurity

SquareX launches open-source toolkits to defend browsers

Fri, 8th Aug 2025
#
firewalls
#
network security
#
advanced persistent threat protection
SquareX launches two open-source toolkits to help security teams simulate and defend against browser-based attacks that evade traditional enterprise defences.
Digital illustration secure cloud environment with ai agents protecting data

Okta launches Cross App Access to boost AI security in firms

Tue, 24th Jun 2025
#
firewalls
#
digital transformation
#
network security
Okta has launched Cross App Access to enhance enterprise AI security by giving IT teams central control and visibility over AI agent interactions with apps.
Digital security shield protecting interconnected app icons data streams

Outpost24 identifies key OAuth risks & best practice solutions

Sat, 21st Jun 2025
#
application security
#
iam
#
breach prevention
Outpost24 reveals seven common OAuth risks and offers best practices to help organisations prevent unauthorised access and data breaches through better token security.
Vector illustration cloud symbol with locked unlocked padlocks compromised accounts

Over 80,000 Microsoft Entra ID accounts hit by major takeover campaign

Thu, 12th Jun 2025
#
malware
#
uc
#
devops
Over 80,000 Microsoft Entra ID accounts have been targeted in the UNK_SneakyStrike takeover campaign exploiting the TeamFiltration penetration testing tool.
Software engineer at desk with secure code and automation icons speed security

Harness launches IDP 2.0 to boost developer speed & security

Thu, 12th Jun 2025
#
cybersecurity
#
software development
#
software engineering
Harness unveils IDP 2.0, enhancing developer speed and security with granular RBAC, real-time Git sync, and enterprise-scale usability.
Businesswoman computer interacting digital gears network icons ai business growth

Pax8 launches AI initiatives & rewards to boost MSP growth

Wed, 11th Jun 2025
#
data analytics
#
supply chain
#
ai
Pax8 launches new AI initiatives, including a research report, learning programme, marketplace upgrades, and rewards to accelerate MSP growth in SMB transformation.
Techday f a85bdf80c45e6df2d026

Cloudflare & Anthropic team up to power secure AI app links

Fri, 2nd May 2025
#
saas
#
firewalls
#
digital transformation
Cloudflare partners with Anthropic to enable secure, real-time AI integrations with SaaS giants like Atlassian, Stripe, and PayPal using its new MCP toolkit.