#Social Engineering
83 stories taggedSocial Engineering · page 3 of 6.

Fake X Login Alerts Are Being Used to Steal Your Password
Criminals are sending convincing 'new device login' emails to X users, hoping to harvest account credentials for follow-on fraud including crypto scams and phishing attacks.

A journalist scored 25% on an AI fake-image quiz. Experts say that is about average.
A new survey found Americans can barely tell real photos from AI-generated fakes. A CBS News reporter tried a 12-question quiz and got three right. Here is what that means for the rest of us.

Microsoft Warns of Two ACR Stealer Campaigns Stealing Credentials Through Fake Fixes
Between late April and mid-June 2026, two separate criminal campaigns used a trick called ClickFix to persuade workers to hand over browser passwords, session tokens, and business documents, with no software flaw required.

Russian Military Hackers Trick Ukrainians Into Infecting Their Own PCs
Ukraine's cyber emergency team says a Sandworm sub-group is using fake CAPTCHA prompts to plant data-stealing malware.

Two Scattered Spider Hackers Jailed for Attacking Transport for London
Owen Flowers, 18, and Thalha Jubair, 20, each received five-and-a-half years after pleading guilty to a 2024 attack that stole data on up to 10 million customers and cost TfL £29 million to recover from.

ACR Stealer Tricks Staff Into Typing the Attack Themselves
Microsoft says a fake-fix trick is pushing a data thief onto business PCs, walking off with passwords, session cookies and cloud files.

ClickLock: the Mac malware that locks up your screen until you type your password
A new macOS stealer, tracked by Group-IB, freezes everything on the screen except a password box. It has already hit around 100 machines in 33 countries.

Over a Million Phishing Emails Used Hidden Text to Fool AI Security Filters
Researchers found that criminals are hiding innocent words inside malicious emails to confuse both traditional and AI-powered spam filters, and the technique is working.

ClickLock: The Mac Stealer That Won't Let You Work Until You Hand Over Your Password
A new macOS malware kills your apps in a loop every 210 milliseconds, holding your machine hostage until you type in your login password.

TELEPUZ: The New Malware Hiding Behind Fake 'Fix This' Website Pop-ups
A modular info-stealer is spreading through booby-trapped websites that trick visitors into pasting malicious commands into their own computers.

ClickLock Stealer Tricks Mac Users Into Handing Over Their Own Passwords
A newly discovered piece of Mac malware skips the usual hacking tricks and simply persuades victims to run it themselves, then locks the screen until they surrender their passwords.

AI Can Build a Dossier on Your CEO in Ten Minutes. Most Companies Have No Answer for That.
Artificial intelligence tools have turned the slow, skilled work of researching a target executive into a task anyone with a browser can do. Security teams have not caught up.

How a Spanish Cybercrime Gang Stole €140 Million and Almost Got Away With It
Spanish police, working with partners across Europe and beyond, dismantled a fraud network that used fake boss emails, phony investment sites, and nearly a thousand bank accounts to steal the equivalent of $161 million from ordinary people and businesses.

Australia Logged 2,000 Sextortion Complaints in Six Months. Big Tech Still Isn't Scanning for the Scripts.
Australia's online safety watchdog says the same blackmail messages keep showing up across platforms, and most major tech companies still aren't using the detection tools that already exist.

ClickFix: The Fake Error Pop-Up That Tricks You Into Hacking Yourself
A scam that launched in 2024 has grown into a thriving criminal marketplace. Researchers say standard antivirus tools are missing it almost entirely, and they have built a new detection method to fill the gap.