#phishing
137 stories taggedphishing · page 4 of 10.

What is ransomware and how does an attack actually unfold?
Ransomware locks your files or systems until you pay criminals to restore access. Here is exactly how that happens, step by step.

Brisbane Medical Clinic Took Three Months to Tell Patients Their Emails Were Read by Hackers
GO2 Health notified the regulator in May but did not warn affected patients until July, raising questions about Australia's 30-day disclosure rules and whether they go far enough.

German Police Shut Down Kratos Phishing Network, But Experts Say the Pause Will Be Brief
Authorities seized more than 200 servers and arrested a developer in Indonesia. Security researchers say the 1,800 customers who used the service are already shopping for a replacement.

StrongestLayer Raises $4.1 Million to Build Email Security That Reasons, Not Just Recognises
The San Francisco startup says a third of today's email attacks slip past tools that only look for patterns they have seen before. Its new funding backs a different approach: software that judges intent.

AI-Powered Attackers Are Running Past Traditional Defences, CrowdStrike Data Suggests
With roughly four in five intrusions now leaving no malware behind, security teams are being forced to rethink what a break-in even looks like.

AI Is Compressing the Cybersecurity Timeline. Security Teams Are Racing to Keep Up.
Artificial intelligence is speeding up both attack and defence at the same time. The organisations that survive the shift may not be the best-defended. They may simply be the fastest to act.

Police shut down Kratos, the phishing kit built to hijack Microsoft 365 logins
German and US investigators dismantled the kit's servers, and Indonesian police arrested its alleged creator, ending a service that helped criminals slip past two-factor login checks.

German and US police pull the plug on Kratos, a phishing kit rented to 1,800 crooks
Investigators seized more than 200 servers and arrested the developer in Indonesia, ending a service that ran roughly 15,000 fake Microsoft login campaigns every month.

Fake X Login Alerts Are Being Used to Steal Your Password
Criminals are sending convincing 'new device login' emails to X users, hoping to harvest account credentials for follow-on fraud including crypto scams and phishing attacks.

Fake Font Files Are Hiding Malware That Steals Passwords and Takes Over Windows PCs
A phishing campaign spotted since late March disguises malicious code as font files and runs it entirely in memory, making it nearly invisible to standard antivirus tools. FedEx and other familiar brands are being impersonated to get victims to open the door.

Careless malware crew leaves 1,048-file toolkit exposed on the open web
Rapid7 researchers grabbed the lot after the operators forgot to lock their delivery server. Inside: AI-written lures, dropper experiments and a live infostealer campaign hitting Windows users in Mexico.

Malware Disguised as Font Files Targets Windows Users
A global phishing campaign uses fake font files to deploy credential-stealing malware.

Over a Million Phishing Emails Used Hidden Text to Fool AI Security Filters
Researchers found that criminals are hiding innocent words inside malicious emails to confuse both traditional and AI-powered spam filters, and the technique is working.

AI Can Build a Dossier on Your CEO in Ten Minutes. Most Companies Have No Answer for That.
Artificial intelligence tools have turned the slow, skilled work of researching a target executive into a task anyone with a browser can do. Security teams have not caught up.

Fake Emails Now Beat Software Flaws as the Number-One Way Ransomware Gets In
A Sophos survey of more than 2,000 organisations hit by ransomware finds that phishing and malicious emails now cause half of all attacks, while stolen passwords are defeating even multi-factor authentication at an alarming rate.