tag
Social Engineering
32 posts
- Weekly Recap — 2026-05-11 -> 2026-05-18
- Welcome to BlackFile: Inside a Vishing Extortion Operation
- Types and Prevention of Payment Fraud
- Canvas Attackers Compromise 275M Students, Teachers, and Staff
- 5 Malicious NuGet Packages Impersonate Chinese UI Libraries to Distribute Crypto Wallet and Credential Stealer
- Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise
- Social Engineering Leveled Up. Has Your Security Program?
- ClickFix Removes Your Background but Leaves the Malware
- The Money Mule Solution: What Every Scam Has in Common
- Phishing-to-RMM Attacks: The Remote Access Blind Spot CISOs Can’t Ignore
- Snow Flurries: How UNC6692 Employed Social Engineering to Deploy a Custom Malware Suite
- 5 Key Takeaways from “Inside the Shape-Shifting Inbox: Understanding Modern Polymorphic Campaigns”
- Feross on the 10 Minutes or Less Podcast: Nobody Reads the Code
- The "vice" in tech advice: ClickFix-style commands disguised as tech tips across social media platforms and beyond
- Don't Kill the Goose That Lays the Golden Eggs
- Feross on TBPN: How North Korea Hijacked Axios
- From Tax Refund to Total Compromise: IRS-Themed Phishing Email Drives Full-Stack Financial Fraud
- Attackers Are Impersonating a Linux Foundation Leader in Slack to Target Open Source Developers
- Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign
- Deepfake vs. the Three-Finger Test
- Weaponizing Fear: Iran Conflict-Themed Phishing Uses Fake Emergency Alerts
- Axios Maintainer Confirms Social Engineering Attack Behind npm Compromise
- NCSC warns of messaging app targeting
- One Click Away: Inside a LinkedIn Phishing Attack
- Widespread GitHub Campaign Uses Fake VS Code Security Alerts to Deliver Malware
- Threat Brief: Recruiting Scheme Impersonating Palo Alto Networks Talent Acquisition Team
- ClickFix Campaigns Targeting Windows and macOS
- A _declassified Look Inside the Dark Economy of Cybercrime
- LiveChat Abuse: How Phishers Are Exploiting SaaS Support Tools to Steal Sensitive Data
- Evil evolution: ClickFix and macOS infostealers
- AI as tradecraft: How threat actors operationalize AI
- Weekly Recap — 2026-05-04 -> 2026-05-11