threat-intel Unpacking SMB cyber-readiness – and what makes or breaks it A recent ESET report, alongside Verizon's DBIR, highlights a significant disconnect between SMBs' confidence in their cyber resilience and their actual preparedness. Despite a high percentage (75%) believing they can abs… WeLiveSecurity · Jun 10, 2026 High cybersecurityrisk managementincident response
threat-intel ISC Stormcast For Wednesday, June 10th, 2026 https://isc.sans.edu/podcastdetail/9966, (Wed, Jun 10th) The SANS Internet Storm Center's Stormcast for June 10th, 2026 highlighted several emerging threats and ongoing activity across the internet landscape. The broadcast detailed observed trends in malicious campaigns, vulne… SANS Internet Storm Center · Jun 10, 2026 Medium stormcastthreat-intelligencephishing
threat-intel OpenClaw AI agent found falling for phishing attacks, spills user data An OpenClaw AI agent, designed to monitor email and perform automated tasks, was successfully tricked by phishing attacks, highlighting vulnerabilities in AI systems’ ability to discern malicious intent. Researchers at V… BleepingComputer · Jun 9, 2026 High aiphishingcredentials
threat-intel Microsoft Exchange Flaw Lets Attackers Spoof Any Email Address This article details a vulnerability in Microsoft Exchange, dubbed "Ghost-Sender," that allows attackers to spoof any email address by exploiting misconfigurations in Exchange Online and on-premises hybrid environments u… Dark Reading · Jun 9, 2026 High email spoofingexchangephishing
threat-intel Cybercriminals: the 'auditors' you never hired This article explores the psychological phenomenon of ‘normalcy bias’ – our tendency to underestimate risk and assume things will always go as they have in the past – and how it contributes to a persistent rise in cybera… WeLiveSecurity · Jun 9, 2026 High UKIRcognitive biasnormalcy biascybersecurity
phishing ISC Stormcast For Tuesday, June 9th, 2026 https://isc.sans.edu/podcastdetail/9964, (Tue, Jun 9th) The SANS Internet Storm Center's June 9th, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing campaigns and malicious email activity. The broadcast highlighted several emerging tr… SANS Internet Storm Center · Jun 9, 2026 Medium phishingbotnetemail
malware NFCShare Android malware spreads via fake banking app updates on GitHub A new variant of the NFCShare Android malware is spreading through fake updates for banking apps hosted on GitHub, targeting financial institutions across Europe. The malware leverages NFC technology to steal payment car… BleepingComputer · Jun 8, 2026 High ITSPGEnfcandroidbanking
threat-intel AI Phishing Is Crushing SOCs with Alert Volume: How to Reduce Tier 1 Overload This article discusses the increasing challenge of AI-powered phishing attacks overwhelming Security Operations Centers (SOCs). Attackers are leveraging AI to create more convincing and varied phishing campaigns, leading… The Hacker News · Jun 8, 2026 High USphishingaisoc
phishing ISC Stormcast For Monday, June 8th, 2026 https://isc.sans.edu/podcastdetail/9962, (Mon, Jun 8th) The SANS Internet Storm Center's June 8th, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing campaigns and malicious email activity. The report highlighted an increase in observe… SANS Internet Storm Center · Jun 8, 2026 Medium phishingemailthreat-intelligence
threat-intel Silent Ransom Group targets law firms with fake IT support calls The Silent Ransom Group is aggressively targeting U.S. law firms through sophisticated social engineering attacks, primarily involving fake IT support calls. These attacks begin with phishing emails and escalate to remot… BleepingComputer · Jun 7, 2026 High USsocial engineeringphishingremote access
threat-intel Suspicious Polyfill login prompts pop up on Toshiba, Muji websites Toshiba and Muji websites were temporarily affected by malicious login prompts generated by the polyfill[.]io service, which injected malicious code into their scripts. The issue stemmed from the domain being acquired by… BleepingComputer · Jun 5, 2026 Medium JACHcdnjavascriptlogin
threat-intel What 2026 DBIR Confirms: Attacks Are Living in the Browser The 2026 Verizon DBIR highlights a significant shift in cyberattacks, with a growing reliance on browser-based activities, particularly the unauthorized use of AI tools like ChatGPT and Gemini. Employees are increasingly… BleepingComputer · Jun 5, 2026 High USbrowseraicredential theft
threat-intel FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins A wave of fraudulent activity targeting FIFA World Cup 2026 fans is underway, involving fake websites, banking malware, and stolen login credentials. The operation, spearheaded by the Chinese-speaking group ‘GHOST STADIU… The Hacker News · Jun 5, 2026 High USCAMXfraudphishingmalware
malware The Evil MSI Background is Back!, (Fri, Jun 5th) This report details a recent cyberattack utilizing a classic MSI-branded JPEG payload, a technique previously documented by the SANS Internet Storm Center. The attack began with a phishing email containing a WeTransfer l… SANS Internet Storm Center · Jun 5, 2026 High USphishingmalwarepowershell
phishing ISC Stormcast For Friday, June 5th, 2026 https://isc.sans.edu/podcastdetail/9960, (Fri, Jun 5th) The SANS Internet Storm Center's June 5th, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing and malicious email campaigns. The report highlighted several emerging trends in cybe… SANS Internet Storm Center · Jun 5, 2026 Medium phishingbotnetddos
threat-intel China's TA4922 Expands Cybercrime Attacks Globally China's TA4922 cybercrime group has significantly expanded its operations globally, targeting a diverse range of countries and employing a wider array of tactics and techniques than previously observed. Initially focused… Dark Reading · Jun 4, 2026 High CHJATAphishingratmalware
threat-intel Reporting from Vegas: Networking, AI, and good boys This Cisco Talos Threat Source newsletter highlights the ongoing challenges of managing data at scale in an AI-driven world, particularly during large technology conferences like Cisco Live. It details Talos’ expansion o… Cisco Talos · Jun 4, 2026 High USRUaithreat huntingc2
threat-intel China-Linked TA4922 Expands Phishing Attacks to UK, Germany, Italy, and South Africa A China-linked cybercrime group, TA4922, has broadened its phishing attacks to include organizations in the UK, Germany, Italy, and South Africa. The group utilizes a constantly evolving arsenal of malware, including Val… The Hacker News · Jun 4, 2026 Medium UKGEITphishingratcredential theft
phishing Hacking Meta’s AI Chatbot Meta's AI chatbot, the Meta AI Support Assistant, was exploited by hackers to gain unauthorized access to Instagram accounts. The attackers leveraged the chatbot's ability to generate verification codes and reset passwor… Schneier on Security · Jun 4, 2026 High aichatbotphishing
phishing ISC Stormcast For Thursday, June 4th, 2026 https://isc.sans.edu/podcastdetail/9958, (Thu, Jun 4th) The SANS Internet Storm Center's June 4th, 2026 Stormcast reported a heightened level of online threats, primarily focused on phishing and malicious email campaigns. The broadcast highlighted several emerging trends and… SANS Internet Storm Center · Jun 4, 2026 Medium phishingcredential stuffingemail security