Skip to main content
← All Articles

Tag

#Social Engineering

41 articles

Advertisement

WhatsApp Metadata Leak: Exposure Risks and Mitigation Strategies
MEDIUM
Threat Intel

WhatsApp Metadata Leak: Exposure Risks and Mitigation Strategies

WhatsApp's metadata leakage allows strangers to infer limited user information without interaction, potentially aiding targeted social engineering or other malicious

Runtime Rebel Intel
5 min read·Apr 20, 2026
TH
INFO
Threat Intel

Scattered Spider Member Tyler Buchanan Pleads Guilty in US

Tyler Buchanan, a British national linked to the Scattered Spider cybercrime group, pleaded guilty in the US to charges of hacking, fraud, and cryptocurrency theft.

Runtime Rebel Intel
4 min read·Apr 20, 2026
TH
HIGH
Threat Intel

Microsoft Teams Abused in Helpdesk Impersonation Attacks: TTPs & Mitigations

Microsoft warns of helpdesk impersonation attacks via Teams external collaboration. Understand TTPs for initial access, lateral movement, and critical mitigation

Runtime Rebel Intel
4 min read·Apr 20, 2026
Axios Attack: Industrialized Social Engineering on NPM Maintainers
HIGH
Supply Chain

Axios Attack: Industrialized Social Engineering on NPM Maintainers

An analysis of the Axios NPM package attack reveals advanced, scaled social engineering campaigns targeting open-source maintainers, elevating supply chain risk.

Runtime Rebel Intel
4 min read·Apr 7, 2026
UNC1069 Social Engineering Leads to Axios npm Supply Chain Compromise
CRITICAL
Supply Chain

UNC1069 Social Engineering Leads to Axios npm Supply Chain Compromise

Runtime Rebel details how North Korean threat actor UNC1069 leveraged targeted social engineering against an Axios npm package maintainer, leading to a critical supply

Runtime Rebel Intel
4 min read·Apr 3, 2026
Drift Protocol Hacked for $285M via Durable Nonce Attack
CRITICAL
Data Breach

Drift Protocol Hacked for $285M via Durable Nonce Attack

Solana-based DEX Drift Protocol lost $285 million due to a social engineering and durable nonce attack, leading to Security Council takeover.

Runtime Rebel Intel
4 min read·Apr 3, 2026
Venom Stealer MaaS: Commoditizing Information Theft via ClickFix Attacks
HIGH
Malware

Venom Stealer MaaS: Commoditizing Information Theft via ClickFix Attacks

Analyze Venom Stealer MaaS, a new cybercrime platform enabling automated, persistent information-stealing through social engineering 'ClickFix' attacks. Learn detection

Runtime Rebel Intel
4 min read·Apr 1, 2026
DeepLoad Malware Leverages ClickFix, WMI for Browser Credential Theft
HIGH
Malware

DeepLoad Malware Leverages ClickFix, WMI for Browser Credential Theft

DeepLoad malware leverages ClickFix social engineering and WMI for persistence to steal browser credentials, employing AI-assisted obfuscation for evasion.

Runtime Rebel Intel
4 min read·Mar 30, 2026
TH
MEDIUM
Threat Intel

macOS Terminal ClickFix Protections: Blocking Malicious Shell Commands

Apple introduces Terminal warnings in macOS Sequoia 15.2 to combat ClickFix social engineering attacks that trick users into executing malicious shell scripts.

Runtime Rebel Intel
3 min read·Mar 30, 2026
TH
HIGH
Threat Intel

ClickFix Social Engineering Drops Infiniti Stealer on macOS

Attackers use fake Cloudflare CAPTCHA pages and ClickFix tactics to deliver the Python-based Infiniti Stealer to macOS systems via terminal commands.

Runtime Rebel Intel
4 min read·Mar 28, 2026
Lumma Stealer Phishing Campaign: Avoiding Copyright Notice Decoys
HIGH
Threat Intel

Lumma Stealer Phishing Campaign: Avoiding Copyright Notice Decoys

Phishing campaign targets healthcare and government sectors with copyright infringement decoys to deliver Lumma Stealer via legitimate cloud services.

Runtime Rebel Intel
3 min read·Mar 23, 2026
TH
HIGH
Threat Intel

Russian Intelligence Phishing Targets Signal and WhatsApp Users

The FBI warns of sophisticated phishing campaigns by Russian intelligence targeting Signal and WhatsApp users to harvest credentials and bypass encryption.

Runtime Rebel Intel
3 min read·Mar 21, 2026