Tag

#phishing

139 stories taggedphishing · page 3 of 10.

Photoreal news-editorial 16:9 image: a dimly lit server room with a single glowing bait trap device on a rack shelf, blue and amber status lights casting soft r
Identity & Access

Fake Spotify Payment Emails Are Stealing Card Details From Real Subscribers

Criminals are sending convincing payment-failure notices that lead Spotify users to copycat websites designed to harvest login credentials and credit card numbers.

3 min read
Full frame, photoreal news-editorial image of a laptop screen showing a generic corporate sign-in code entry page in a dimly lit office, with a smartphone besid
Identity & Access

SSO Is the New Skeleton Key. Criminals Have Noticed.

One stolen single sign-on password can hand attackers the run of a company. Here's how the break-ins work and what actually stops them.

4 min read
Extreme close-up of a server rack's blinking status lights in a darkened data centre, rows of ethernet cables in cool blue and amber tones, shallow depth of fie
Identity & Access

Changing Your Password No Longer Kicks Hackers Out

A growing wave of attacks steals not passwords but the digital passes that keep you logged in, meaning a password reset leaves the intruder sitting comfortably inside your account.

4 min read
16:9 editorial photograph, full-frame edge-to-edge, of a hotel front-desk computer monitor glowing in a dimly lit reception area at night, the screen displaying
Threat Intelligence

Fake Microsoft Teams Update Pushes Remote-Control Tools onto Victims' PCs

A phishing run tracked as Operation BlueDash uses a bogus 'secure document' lure and a counterfeit Microsoft Store page to install legitimate remote-access software on target machines.

4 min read
Photoreal news-editorial overhead shot of a darkened open-plan European office at night, glowing monitors showing abstract email interfaces and red alert indica
Threat Intelligence

Cruciferra: The Malware-Hiding Service Fuelling Attacks on Indian Taxpayers

A China-linked group is using a paid tool called Cruciferra to smuggle remote-access malware onto Windows machines, with tax-themed phishing emails as the way in.

4 min read
Photoreal news-editorial image of an empty modern football stadium at dusk, floodlights on, viewed from an upper tier, with a faint blue data-grid overlay sugge
Threat Intelligence

Insurance phishing gets faster: attackers now hijack accounts in real time

Researchers say fake insurance login pages are being run live, with criminals stepping in the moment a victim types their password.

4 min read
Full-frame photoreal news-editorial image of a dimly lit security operations centre at night, rows of large curved monitors glowing blue and amber with abstract
Threat Intelligence

Hotel Wi-Fi hijack campaign quietly harvests Microsoft 365 logins from business travellers

A cluster with overlaps to Russia-linked APT28 activity is tampering with DNS on hotel and conference Wi-Fi gateways to funnel guests into fake Microsoft login pages, ReliaQuest reports.

4 min read
Full-frame overhead view of a cluttered developer's desk at night, glowing keyboard, open laptop showing abstract package manager output as coloured bars, small
Threat Intelligence

North Korean Hackers Run Fake Zoom and Teams Sites to Rob Crypto Wallets

BlueNoroff's phishing kit screens visitors' crypto wallets before deciding who gets the malware, researchers say.

4 min read
Close-up overhead shot of a plain laptop keyboard in a dimly lit office, the screen glowing pale blue, an inbox interface faintly reflected on the desk surface,
AI Security

AegisAI Raises $36 Million to Fight AI-Generated Phishing Emails

A startup built by former Google security engineers says criminals now use artificial intelligence to craft personalised fake emails at scale. Its answer is an AI system that reads those emails back.

3 min read
Full-frame edge-to-edge photoreal close-up of a smartphone on a dark wooden desk displaying an abstract blue messaging app settings screen, a small printed pape
Threat Intelligence

Illinois man gets 76 months for phishing 750 women's Snapchat accounts

Kyle Svara, 26, tricked victims into handing over login codes by posing as Snap staff, then stole nude photos and traded them online.

4 min read
A depiction of a digital shark attacking a cloud of GitHub repositories
Threat Intelligence

Golden Chickens Malware Crew Returns With Four New Tools

The criminal group behind a long-running 'malware-as-a-service' operation has rolled out fresh code, including a stripped-down loader and a browser password stealer.

3 min read
Full-frame edge-to-edge overhead photoreal shot of a dimly lit desk with an open laptop showing a generic email inbox interface, scattered printed invoices, a c
Threat Intelligence

After Tycoon2FA Was Shut Down, Phishing Criminals Went Looking for New Tricks

Microsoft's Q2 2026 email threat report shows that busting a major phishing-for-hire service slashed attack volume by 92%, but criminals quickly pivoted to Microsoft Teams chats and automated email campaigns that hit tens of thousands of organisations in hours.

4 min read
Photoreal editorial shot of an empty modern negotiation room with a single laptop open on a long dark table, a lock icon glowing faintly on the screen, harsh ov
Ransomware

Chaos ransomware crew hides its remote control tool inside your own browser

A new backdoor called msaRAT launches Chrome or Edge in the background and pipes attacker commands through it, so no direct link to the criminal server ever appears on the network.

4 min read
Photoreal news-editorial shot of an empty stadium tunnel at dusk leading toward a brightly lit pitch, shallow depth of field, slight haze, cool teal and warm so
Threat Intelligence

A Six-Year-Old Brazilian Bank Fraud Tool Is Still Emptying Portuguese Accounts

The Lampion banking trojan has barely changed since 2019. It doesn't need to. Portugal keeps falling for it.

4 min read
Photoreal news-editorial style, 16:9 framing
Threat Intelligence

What is social engineering? A plain-English guide

Social engineering is the art of manipulating people, not machines, to hand over access, money, or data. Here is how it works and how to stop it.

4 min read
© 2026 Threat Vectr