Email Security
Barracuda has observed a large-scale OpenAI impersonation campaign whose goal is to phish for ChatGPT credentials.
Hi, what are you looking for?
Microsoft flags a new Kremlin hacking team buying stolen usernames and passwords from infostealer markets for use in cyberespionage attacks.
Barracuda has observed a large-scale OpenAI impersonation campaign whose goal is to phish for ChatGPT credentials.
AWS announced the seizure of domains used by Russian hacker group APT29 in phishing attacks targeting Ukraine and other countries.
The targeting of Diehl Defence is significant because the company specializes in the production of missiles and ammunition.
Threat actors are abusing the Microsoft Sway service to host phishing pages leveraged in QR phishing attacks targeting Office 365 users.
New phishing attacks target iOS and Android users with Progressive Web Applications and WebAPKs to steal banking information.
Multiple Russian, Belarusian, and Western entities perceived as Russia’s enemies have been targeted in two recent spear-phishing campaigns.
SecurityWeek spoke with Mike Britton, CISO at Abnormal Security, to understand what the company has learned about current social engineering and phishing attacks.
Threat actors have exploited Proofpoint’s email protection service to deliver millions of spoofed phishing emails.
A threat actor sent over 35,000 phishing emails after hacking into Ethereum Foundation's account on a mailing list platform.
Employees of the Any.Run malware analysis service were recently targeted in a phishing attack that was part of a BEC campaign.
Verizon’s 2024 DBIR shows that vulnerability exploitation increased three times and confirmed data breaches doubled compared to the previous year.
A new phishing campaign abuses compromised email accounts and targets corporate users with PDF files hosted on Autodesk Drive.
KnowBe4 boasts that the merger will create “the largest, advanced AI-driven cybersecurity platform for managing human risk.”
LabHost, a major phishing-as-a-service platform, has been shut down as part of a major law enforcement operation.
Chrome’s standard Safe Browsing protections now provide real-time malicious site detection and Password Checkup on iOS now flags weak passwords.
Advanced phishing kit employs novel tactics in attack targeting cryptocurrency platforms and FCC employees.
European discount retailer Pepco has lost €15.5 million as a result of what it described as a phishing attack.
Microsoft warns of critical spoofing and remote code execution bugs in the Windows MSHTML Platform and Microsoft Power Platform Connector.
Okta expands scope of October breach, saying hackers stole names and email addresses of all its customer support system users.
The Rise of AI in Phishing: Will future phishing attacks that leverage artificial intelligence be more dangerous?