phishing

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack 2026-08-25 at 12:24 By Sinisa Markovic Cybersecurity company ReliaQuest has confirmed that one of its own employees fell for a social engineering attack, handing attackers a password and a brief window into the company’s identity system. The admission came after the extortion group […]

ShinyHunters taunts ReliaQuest after its own employee falls for social engineering attack Read More »

ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited

ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited 2026-08-24 at 20:38 By Eduard Kovacs A ReliaQuest employee fell victim to a phishing attack and the hackers gained access to a dashboard. The post ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited Read More »

Fake bank websites play dead to evade security scanners

Fake bank websites play dead to evade security scanners 2026-08-24 at 08:00 By Sinisa Markovic A phishing method, named Chameleon SEO Poisoning, that uses manipulated search results and cloaked fake banking websites to steal credentials while evading security scanners has been discovered by Fortra. The company’s threat intelligence unit, Fortra Intelligence and Research Experts (FIRE),

Fake bank websites play dead to evade security scanners Read More »

New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets

New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets 2026-08-21 at 17:22 By Kevin Townsend Researchers say iAuthFlow V2 can register an attacker-controlled passkey, enabling persistent access even after passwords are changed and active sessions revoked. The post New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets appeared first on SecurityWeek.

New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets Read More »

Brand Impersonation Takedown: From Whack-a-Mole to Managed Response

Brand Impersonation Takedown: From Whack-a-Mole to Managed Response 2026-08-18 at 05:23 By Mihir Bagwe Manual brand impersonation takedowns fail because attackers move faster than ticket-based abuse reports can resolve — phishing pages and fake executive profiles often do their damage within hours of going live, while manual removal can take days. A managed takedown program

Brand Impersonation Takedown: From Whack-a-Mole to Managed Response Read More »

SafePal breach affects 39,798 customers, data allegedly for sale

SafePal breach affects 39,798 customers, data allegedly for sale 2026-08-17 at 13:29 By Sinisa Markovic Cryptocurrency wallet maker SafePal disclosed a data breach that exposed order information for 39,798 customers, including names, email addresses, shipping addresses, phone numbers and purchase details. The company traced the exposure to an authorization flaw in a plug-in used for

SafePal breach affects 39,798 customers, data allegedly for sale Read More »

Lazarus hackers pair fake job offers with Windows zero-day exploit

Lazarus hackers pair fake job offers with Windows zero-day exploit 2026-08-12 at 14:48 By Sinisa Markovic The North Korea-linked Lazarus group is using fake job offers, trojanized PDF software and a Windows zero-day in attacks aimed primarily at the defense sector, Check Point researchers have found. The activity is part of Operation Dream Job, a

Lazarus hackers pair fake job offers with Windows zero-day exploit Read More »

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove 2026-08-05 at 11:43 By Zeljka Zorz A phishing campaign impersonating Bank of America (BoA) is underway, trying to trick Windows users into installing ScreenConnect remote access software and then making it difficult to uninstall it. Different traps for Mac and Windows users By

Bank of America impersonators weaponize ScreenConnect, then make it hard to remove Read More »

Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware

Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware 2026-08-04 at 13:45 By Sinisa Markovic Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at places like hotels and conference centers, according to new findings from Microsoft

Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware Read More »

Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking

Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking 2026-08-03 at 12:17 By Ionut Arghire Midnight Blizzard has been stealing Microsoft account credentials via compromised Wi-Fi networks at hospitality organizations. The post Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking Read More »

Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks

Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks 2026-07-30 at 14:22 By Sinisa Markovic Attackers are moving away from fake Microsoft login pages in favor of abusing Microsoft’s own authentication system, letting phishing campaigns slip past the warning signs employees are trained to spot, according to Check Point. Between June 25 and

Attackers are using Microsoft’s legitimate login system to camouflage phishing attacks Read More »

Call of Duty Mobile scam uses fake free points giveaway to hijack players’ accounts

Call of Duty Mobile scam uses fake free points giveaway to hijack players’ accounts 2026-07-28 at 07:30 By Sinisa Markovic Call of Duty Mobile players should watch out for a phishing campaign disguised as a free Call of Duty Points giveaway, Malwarebytes researchers have warned. Victims are asked to log in with their email address

Call of Duty Mobile scam uses fake free points giveaway to hijack players’ accounts Read More »

ChatGPT joins the most impersonated brands in phishing attacks

ChatGPT joins the most impersonated brands in phishing attacks 2026-07-27 at 14:08 By Anamarija Pogorelec Microsoft continued to be the most impersonated brand in Q2 2026, accounting for 23% of all brand phishing attempts. LinkedIn, Google, Apple, and Amazon followed, with the five brands together making up more than half of all brand phishing attempts

ChatGPT joins the most impersonated brands in phishing attacks Read More »

Russian hackers exploit unpatched Zimbra servers to steal emails

Russian hackers exploit unpatched Zimbra servers to steal emails 2026-07-24 at 15:09 By Sinisa Markovic Russian state-backed hacker group Laundry Bear has been breaking into government and commercial networks for at least a year by exploiting a vulnerability in the Zimbra Collaboration Suite (ZCS) webmail platform. Laundry Bear (also known as Void Blizzard, CL-STA-1114, and

Russian hackers exploit unpatched Zimbra servers to steal emails Read More »

Police dismantle Kratos phishing platform behind 15,000 monthly campaigns

Police dismantle Kratos phishing platform behind 15,000 monthly campaigns 2026-07-22 at 11:02 By Sinisa Markovic German and US law enforcement have dismantled the infrastructure behind Kratos, a notorious phishing-as-a-service (PhaaS) platform. Its alleged developer and administrator was arrested in Indonesia by local police. Seizure banner (Source: BKA) The takedown was led by the Frankfurt public

Police dismantle Kratos phishing platform behind 15,000 monthly campaigns Read More »

The script, not the voice, is what makes AI voice phishing work

The script, not the voice, is what makes AI voice phishing work 2026-07-17 at 10:31 By Sinisa Markovic The call comes in at 4:40 on a Friday. The voice belongs to a senior manager, or sounds close enough, and she needs a password reset before a flight. She is polite, she is in a hurry,

The script, not the voice, is what makes AI voice phishing work Read More »

Finance phishing works because it sounds boringly normal

Finance phishing works because it sounds boringly normal 2026-07-16 at 06:53 By Anamarija Pogorelec Finance departments process a constant stream of invoices, contracts, payment notices, and procurement emails, making email one of the most common initial access vectors for threat actors. According to Cofense, attackers exploit those workflows with phishing emails that resemble legitimate business

Finance phishing works because it sounds boringly normal Read More »

Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers

Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers 2026-07-10 at 14:06 By Ionut Arghire The attackers call victims to direct them to phishing websites mirroring Microsoft Entra ID login pages. The post Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers Read More »

Thousands of malicious AI skills found capable of stealing data, running malware

Thousands of malicious AI skills found capable of stealing data, running malware 2026-07-08 at 12:00 By Anamarija Pogorelec AI agents can browse the web, use external tools, execute commands, and perform tasks on behalf of users. Many rely on skills that define how they interact with services and data. Malicious skills can abuse those capabilities

Thousands of malicious AI skills found capable of stealing data, running malware Read More »

The ARToken phishing panel targets Microsoft 365 accounts

The ARToken phishing panel targets Microsoft 365 accounts 2026-07-01 at 13:00 By Sinisa Markovic Accounts-payable staff at U.S. companies keep receiving invoice emails that look like they come from vendors they already work with. One landed at a life-sciences company in April 2026, addressed to the person who handles payments and written in the voice

The ARToken phishing panel targets Microsoft 365 accounts Read More »

Scroll to Top