phishing ISC Stormcast For Thursday, August 6th, 2026 https://isc.sans.edu/podcastdetail/10040, (Thu, Aug 6th) The ISC Stormcast highlighted a significant increase in BEC (Business Email Compromise) attacks targeting the legal sector, driven by a sophisticated phishing campaign leveraging leaked LinkedIn data. Attackers are impersonating legal professionals to trick clients into transferring funds to fraudulent accounts. The ca… SANS Internet Storm Center · Aug 6, 2026 High becphishingwire transfer
phishing Phishing Campaigns Targeting AI Solutions Providers, (Sat, Aug 1st) A sophisticated phishing campaign is targeting users of AI solutions, particularly those utilizing services like ChatGPT. The attackers are exploiting anxieties about losing access to these valuable tools, leveraging tim… SANS Internet Storm Center · Aug 1, 2026 Medium phishingaibilling
phishing Invited to a “job interview” with Netflix or OpenAI? Beware! Your Google password could be at risk A sophisticated phishing campaign mimicking legitimate job offers from companies like Netflix, OpenAI, and Adobe is targeting Google account users. Attackers are using realistic email addresses and LinkedIn research to i… Graham Cluley · Jul 9, 2026 High phishingrecruitmentgoogle
phishing Webinar Today: Why Email Security Keeps Failing The article highlights a persistent and evolving phishing campaign that continues to successfully target organizations despite existing email security measures. The campaign demonstrates a significant gap in current defe… SecurityWeek · Jul 8, 2026 Medium email securityphishingcybersecurity
phishing Big Brand Jobs Scam Targets Marketing Pros' Google Accounts A sophisticated phishing campaign is targeting marketing professionals by impersonating major brands like Coca-Cola, Louis Vuitton, and McKinsey & Company to steal their Google credentials. The campaign utilizes nested r… Dark Reading · Jul 7, 2026 Medium USphishingcredential theftnested redirects
phishing ISC Stormcast For Thursday, July 2nd, 2026 https://isc.sans.edu/podcastdetail/9992, (Thu, Jul 2nd) The SANS Internet Storm Center's July 2nd, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing and malicious email campaigns. The broadcast highlighted several emerging trends and… SANS Internet Storm Center · Jul 2, 2026 Medium phishingemailthreat-intelligence
phishing Crafty Phishing Campaigns Auto-Adapt to Victim's Device, OS This article details a concerning trend in phishing attacks where threat actors are leveraging user-agent data to dynamically adapt their campaigns to the specific device and operating system of the victim. Attackers are… Dark Reading · Jul 1, 2026 High USphishinguser-agentmalware
phishing Why Ask Credentials If There Are Secret Codes?, (Wed, Jul 1st) This morning, an interesting phishing email hit my mailbox. It targets Metamask[ 1 ], a cryptocurrency wallet, available as a browser extension and a mobile app, that lets users store, send, and receive crypto money. It'… SANS Internet Storm Center · Jul 1, 2026 Medium
phishing ISC Stormcast For Wednesday, July 1st, 2026 https://isc.sans.edu/podcastdetail/9990, (Wed, Jul 1st) The SANS Internet Storm Center's July 1st, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing campaigns and malicious email activity. The broadcast highlighted several emerging tr… SANS Internet Storm Center · Jul 1, 2026 Medium phishingemailbotnet
phishing Scammers race to cash in on Venezuelan earthquake disaster Following a devastating earthquake in Venezuela, a surge of newly registered domain names emerged, many referencing aid and rescue efforts. Researchers discovered that a significant portion of these domains lacked identi… Graham Cluley · Jun 30, 2026 Medium VEdisasterfraudscams
phishing ISC Stormcast For Monday, June 29th, 2026 https://isc.sans.edu/podcastdetail/9986, (Mon, Jun 29th) The SANS Internet Storm Center's June 29th, 2026 Stormcast reported a heightened level of online threats, primarily focusing on phishing campaigns and malicious email activity. The report highlighted an increase in obser… SANS Internet Storm Center · Jun 29, 2026 Medium phishingemailthreat intelligence
phishing Cybersecurity firms targeted by fraudulent OpenAI organization invites Cybersecurity firms are being targeted by a sophisticated phishing campaign where attackers create fraudulent OpenAI organizations, mimicking legitimate companies and inviting employees to join them. These invitations, a… BleepingComputer · Jun 26, 2026 Medium phishingopenaicredential_harvesting
phishing Russian Intelligence Services Continue to Target Commercial Messaging Applications The Cybersecurity and Infrastructure Security Agency (CISA) and the FBI have issued a new PSA highlighting ongoing cyberattacks by Russian Intelligence Services (RIS) targeting commercial messaging applications. These at… CISA Advisories · Jun 26, 2026 Medium RUphishingcredential theftrussian intelligence
phishing Order-tracking app Shop abused to push callback phishing attacks Threat actors are increasingly abusing Shop, the order-tracking app from Shopify, by adding fake purchase receipts in users' order histories to trick them into providing sensitive data or installing remote access softwar… BleepingComputer · Jun 25, 2026 Medium
phishing Bluekit phishing kit adopts browser-in-the-middle for login theft Bluekit, a phishing-as-a-service platform, has evolved by incorporating browser-in-the-middle (BitM) capabilities, allowing it to steal login credentials more effectively. The platform utilizes the rrweb JavaScript libra… BleepingComputer · Jun 25, 2026 High USphishingbitmbrowser-in-the-middle
phishing Webinar: Why email security teams are drowning in alerts Phishing, BEC, and account takeover attacks continue to overwhelm security teams with alerts and investigations. This webinar explores how behavioral AI can help automate detection and response workflows, reducing alert… BleepingComputer · Jun 23, 2026 Medium
phishing WhatsApp phishing attack uses fake business docs to hack PCs An ongoing malware campaign is targeting WhatsApp users in multiple countries with deceptive messages that push VBScript files, leading to remote system access. BleepingComputer · Jun 22, 2026 Medium
phishing ISC Stormcast For Monday, June 22nd, 2026 https://isc.sans.edu/podcastdetail/9980, (Mon, Jun 22nd) The SANS Internet Storm Center's June 22nd, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing campaigns and malicious email activity. The report highlighted an increase in observ… SANS Internet Storm Center · Jun 22, 2026 Medium phishingemailthreat
phishing Imposter scams cost Americans $3.5 billion in 2025 – and it’s getting worse Imposter scams have surged in the United States, resulting in a staggering $3.5 billion in financial losses for consumers in 2025. These scams typically involve fraudulent impersonations of trusted entities like banks an… Graham Cluley · Jun 19, 2026 High USscamsfraudidentity theft
phishing Webinar: How attackers bypass MFA and how defenders can respond The article discusses a growing trend in cyberattacks where attackers bypass multi-factor authentication (MFA) through sophisticated phishing techniques, specifically Device Code phishing. These attacks exploit legitimat… BleepingComputer · Jun 19, 2026 High phishingmfaaccount takeover