❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

The Blind Spot: How β€œBulletproof” Phishing Redirectors Slip Past SEGs

10 August 2026 at 12:00

By Shikhar Dalela and Jeewan Singh Jalal

The operators named the kit themselves.

Buried inside compromised legitimate websites, the hidden staging directory is sometimes literally called β€œ/.bulletproof”, and the PHP session cookie the kit sets on every visitor is named β€œbp_redir_sess.” The β€œbp” stands for bulletproof, which is an unusual degree of candor from a threat actor whose entire design philosophy is concealment.

Apple Warns Users to be Wary of Unsolicited FaceTime Calls

31 July 2026 at 16:00

Apple is warning users to be wary of unsolicited FaceTime calls amidst a wave of scams impersonating Apple Support, Malwarebytes reports. The scammers inform the user that there’s been fraudulent activity or a technical problem associated with their account, and trick the victim into handing over payment card details, banking credentialsΒ or Apple ID logins.

Inside the OS-Aware Phishing Kit Profiling Your Device

30 July 2026 at 09:00

Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal

Most phishing attacks pick a target and commit to a tactic. This one picks the tactic based on the target, which happens dynamically, per device, in milliseconds, without the victim ever knowing a decision was made.

Majority of Organizations Hit by Targeted Impersonation Attacks

27 July 2026 at 09:00

Fifty-three percentΒ of organizations have had an executive or employee impersonated in targeted social engineering attacks over the past year, according to a new report from Outtake. Just over half of this impersonation activity took place on social media platforms using fake profiles, followed by video platforms.

Attackers Exploit AI Hallucinations to Send Users to Phishing Sites

22 July 2026 at 16:00

Threat actors are using a new technique called β€œphantom squatting” to trick AI tools into directing users to phishing sites, according to researchers at Palo Alto Networks’ Unit 42.

Since AI models frequently hallucinate phony information, they sometimes point users to websites that don’t exist. Threat actors are now registering these AI-hallucinated domains and using them to host phishing sites.

Invoice Phishing Attacks Are Abusing the Shop App

9 July 2026 at 16:00

Threat actors are abusing Shop, a legitimate app developed by Shopify, to launch phishing attacks, according to researchers at Gen Digital. Shop is used for making purchases and tracking orders, but threat actors are exploiting the platform to generate in-app notifications for phony invoices.

Cybercriminals Are Targeting the FIFA World Cup 2026

2 July 2026 at 09:00

Lead Analysts: Jeewan Singh Jalal and Louis Tiley

KnowBe4 ThreatLabs tracked phishing campaign activity from the first week of April through June 22, 2026 β€” covering the pre-tournament build-up, tournament kickoff and the first twelve days of live match play. Our latest intelligence adds crucial mid-tournament telemetry (June 15-22), a newly identified reply-back campaign track and additional infrastructure intelligence.

❌
❌