Social Engineering stories
Fake Red Alert app used in Android spyware smishing
Today
#
endpoint protection
#
mdm
#
phishing
Attackers push fake Red Alert Android app via SMS, turning Israel rocket warning tool into spyware that steals messages, contacts and location.
Norton unveils Genie scam detection assistant in ChatGPT
Today
#
cloud security
#
phishing
#
physical security
Norton launches Genie scam assistant in ChatGPT, letting users tag @Norton to analyse emails, texts, images and links for fraud risks.
Cloud identity compromise now drives most cyber attacks
Today
#
malware
#
uc
#
firewalls
Cloud identity compromise now drives over 80% of cyber incidents, as attackers increasingly abuse trusted accounts and workplace tools.
Fake Claude AI ads spread malware to target developers
Yesterday
#
cloud security
#
phishing
#
application security
Fake Claude AI search ads are spreading info-stealing malware, hijacking developer credentials and cloud access via spoofed download sites.
Conflict sparks surge in Middle East cyber espionage
Yesterday
#
phishing
#
email security
#
cybersecurity
New research links Iran conflict to a swift surge in tightly targeted cyber espionage across Middle Eastern governments and embassies.
Vietnam fake account farms fuel global cybercrime wave
Yesterday
#
malware
#
data protection
#
mfa
Vietnam-based fake account farms are fuelling a growing global cybercrime market, flogging cheap logins, bot tools and disposable email tricks.
Appdome unveils Threat-Memory to track repeated attacks
Yesterday
#
malware
#
endpoint protection
#
application security
Appdome's new Threat-Memory tool stores on-device threat histories and AI scores to counter repeat mobile fraud and account takeovers.
Attackers abuse Deno runtime to deploy fileless malware
Yesterday
#
edr
#
cybersecurity
#
keylogging
Hackers are abusing the trusted Deno JavaScript runtime to run fileless CastleRAT malware solely in memory and evade endpoint defences.
IBM warns AI & quantum threats will reshape cybercrime
Yesterday
#
malware
#
data protection
#
ransomware
IBM warns shadow AI, deepfakes and quantum threats will reshape cyber risk by 2026, as autonomous agents speed breaches and ransomware.
Salesforce guest flaws fuel large-scale data harvesting
Yesterday
#
saas
#
crm
#
firewalls
Misconfigured Salesforce Experience Cloud guest profiles are being exploited for mass data harvesting, with up to 400 firms possibly affected.
Keeper & Williams F1 launch identity-first security push
2 days ago
#
data protection
#
digital transformation
#
pam
Keeper Security has kicked off a global identity-first cybersecurity campaign as it enters a third season backing the Atlassian Williams F1 team.
Fortinet unveils AI-driven cloud SOC & endpoint revamp
2 days ago
#
firewalls
#
endpoint protection
#
hybrid cloud
Fortinet debuts cloud SOC preview and unified FortiEndpoint as it leans on agentic AI to automate security ops and cut endpoint sprawl.
Kernel in the crosshairs: The BlackSanta threat campaign targeting recruitment workflows
3 days ago
#
storage
#
endpoint protection
#
phishing
A stealthy BlackSanta malware campaign is hijacking CVs and HR hiring flows to kill EDR tools at kernel level and exfiltrate data.
Kernel in the crosshairs: The BlackSanta threat campaign targeting recruitment workflows
3 days ago
#
storage
#
phishing
#
hcm
A stealthy BlackSanta malware spree is hijacking HR recruitment workflows, killing endpoint defence tools and exfiltrating sensitive data.
iProov unveils biometric suite to combat deepfake fraud
3 days ago
#
surveillance
#
pam
#
mfa
iProov launches a biometric Workforce Solution Suite to verify real human presence and shield employers from deepfake-driven identity fraud.
Bitdefender unmasks global Meta investment scam ads
3 days ago
#
phishing
#
martech
#
physical security
Bitdefender exposes 26,000 Meta ads in 25 countries pushing fake investment schemes, impersonating banks, media and public figures.
Sama credential leaks raise fears over Meta glasses data
Last week
#
wearables
#
data protection
#
surveillance
Leaked Sama staff logins tied to stealer malware spark fresh alarm over security of Meta Ray-Ban smart glasses video review pipeline.
Dell email mixes payment-style header with promos
Last week
#
malware
#
network infrastructure
#
cx
Dell draws scrutiny after a promo email mimics a payment remittance notice, blurring lines between marketing, transactions and phishing risks.
A resilient security culture is built in the flow of work, not the classroom
Last week
#
data protection
#
digital transformation
#
phishing
Rising UK cyber attacks show training alone is failing; firms must embed behavioural security cues into daily work to cut human risk.
Coruna exploit kit exposes risks for outdated iOS users
Last week
#
endpoint protection
#
pam
#
mfa
New Coruna exploit kit shows outdated iOS devices face automated, scalable attacks that can turn compromised phones into corporate gateways.