#phishing
172 stories taggedphishing · page 8 of 12.

What is phishing and how do you spot a phishing email?
Phishing is the most common way attackers steal credentials and money. Here is what the attack looks like and how to catch it before you click.

What is ransomware and how does an attack actually unfold?
Ransomware locks your files or systems until you pay criminals to restore access. Here is exactly how that happens, step by step.

Brisbane Medical Clinic Took Three Months to Tell Patients Their Emails Were Read by Hackers
GO2 Health notified the regulator in May but did not warn affected patients until July, reviving the debate about whether Australia's 30-day disclosure rules protect the right people.

StrongestLayer Raises $4.1 Million to Build Email Security That Reasons, Not Just Recognises
The San Francisco startup says a third of today's email attacks slip past tools that only look for patterns they have seen before. Its new funding backs a different approach: software that judges intent.

AI-Powered Attackers Are Running Past Traditional Defences, CrowdStrike Data Suggests
With roughly four in five intrusions now leaving no malware behind, security teams are being forced to rethink what a break-in even looks like.

AI Is Compressing the Cybersecurity Timeline. Security Teams Are Racing to Keep Up.
Artificial intelligence is speeding up both attack and defence at the same time. The organisations that survive the shift may not be the best-defended. They may simply be the fastest to act.

Police shut down Kratos, the phishing kit built to hijack Microsoft 365 logins
German and US investigators dismantled the kit's servers, and Indonesian police arrested its alleged creator, ending a service that helped criminals slip past two-factor login checks.

German and US police pull the plug on Kratos, a phishing kit rented to 1,800 crooks
Investigators seized more than 200 servers and arrested the developer in Indonesia, ending a service that ran roughly 15,000 fake Microsoft login campaigns every month.

Fake X Login Alerts Are Being Used to Steal Your Password
Criminals are sending convincing 'new device login' emails to X users, hoping to harvest account credentials for follow-on fraud including crypto scams and phishing attacks.

Careless malware crew leaves 1,048-file toolkit exposed on the open web
Rapid7 researchers grabbed the lot after the operators forgot to lock their delivery server. Inside: AI-written lures, dropper experiments and a live infostealer campaign hitting Windows users in Mexico.

Malware Disguised as Font Files Targets Windows Users
A global phishing campaign active since March 2026 is hiding credential-stealing malware inside fake font files, and the evasion chain is getting harder to catch.

Over a Million Phishing Emails Used Hidden Text to Fool AI Security Filters
Researchers found that criminals are hiding innocent words inside malicious emails to confuse both traditional and AI-powered spam filters, and the technique is working.

AI Can Build a Dossier on Your CEO in Ten Minutes. Most Companies Have No Answer for That.
AI tools have turned the slow, skilled work of researching a target executive into a task anyone with a browser can do. Security teams haven't caught up.

Fake Emails Now Beat Software Flaws as the Number-One Way Ransomware Gets In
A Sophos survey of more than 2,000 organisations hit by ransomware finds that phishing and malicious emails now cause half of all attacks, while stolen passwords are defeating even multi-factor authentication at an alarming rate.

Cybersecurity Spends Billions Spotting Attacks. It Should Be Stopping Them.
Detection tools now dominate the security market, but faster alerts haven't cut breach rates. A growing number of security professionals say the industry has the balance badly wrong.