threat-intel CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking A new investigation by CTM360 reveals a significant evolution in insurance phishing attacks, moving beyond simple credential harvesting to real-time account hijacking. Attackers now synchronize their activity with victims during legitimate insurance portal logins, intercepting OTPs and completing authentication in real… The Hacker News · Jul 25, 2026 High SAUNINphishingaccount hijackinginsurance
threat-intel He Thought He Was Secure; His Phone Number Got Stolen Anyway This article details a real-world incident where cybersecurity expert Torsten George was targeted by a SIM swap attack, highlighting the vulnerability of relying solely on one-time passwords (OTPs) for security. The atta… Dark Reading · Jun 22, 2026 High USUKAUsim swapotpsocial engineering
malware Fake Android Apps Commit Carrier Billing Fraud for Premium Svcs. A coordinated campaign targeting Android users in Malaysia, Thailand, Romania, and Croatia has been identified, utilizing fake apps disguised as popular services to commit carrier billing fraud. The malware, employing te… Dark Reading · May 20, 2026 High MYTHROandroidcarrier billingfraud
threat-intel CloudZ RAT potentially steals OTP messages using Pheno plugin Cisco Talos identified an intrusion campaign initiated in January 2026 involving the deployment of the CloudZ remote access tool (RAT) alongside a new plugin called ‘Pheno.’ This campaign leveraged the Microsoft Phone Li… Cisco Talos · May 5, 2026 High USotpphone linkcredential theft