Skip to main content
← All Articles

Tag

#Social Engineering

51 articles

Advertisement

InstallFix Attacks: Malvertising Spreads Fake Claude AI Code
HIGH
Threat Intel

InstallFix Attacks: Malvertising Spreads Fake Claude AI Code

InstallFix attacks leverage malvertising and ClickFix-style techniques to spread fake Claude AI code, targeting users of coding assistants and CLI operations.

Runtime Rebel Intel
5 min read·Mar 10, 2026
TH
HIGH
Threat Intel

Microsoft Teams Phishing Deploys A0Backdoor via Quick Assist

Attackers are targeting healthcare and finance employees with Microsoft Teams phishing to deploy A0Backdoor using the native Windows Quick Assist tool.

Runtime Rebel Intel
4 min read·Mar 10, 2026
ID
MEDIUM
Identity & Access

Microsoft Teams Third-Party Bot Tagging Enhances Meeting Security

Microsoft Teams updates meeting lobbies to identify third-party bots, helping administrators prevent unauthorized data collection and social engineering.

Runtime Rebel Intel
3 min read·Mar 9, 2026
TH
HIGH
Threat Intel

ClickFix Attack: Windows Terminal Used for Detection Evasion

The ClickFix attack leverages fake CAPTCHA pages to trick users into pasting malicious commands into Windows Terminal, bypassing traditional detection methods.

Runtime Rebel Intel
4 min read·Mar 9, 2026
TH
HIGH
Threat Intel

Velvet Tempest Deploys Termite Ransomware via ClickFix and CastleRAT

Velvet Tempest leverages ClickFix social engineering and CastleRAT to deploy Termite ransomware, using legitimate Windows tools for stealthy execution.

Runtime Rebel Intel
4 min read·Mar 7, 2026
North Korean APTs Leverage AI for Enhanced IT Worker Scams
HIGH
Threat Intel

North Korean APTs Leverage AI for Enhanced IT Worker Scams

North Korean APTs are leveraging AI, including deepfakes, to enhance IT worker scams. This poses financial and reputational risks to companies hiring remote talent

Runtime Rebel Intel
5 min read·Mar 6, 2026
Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer
HIGH
Threat Intel

Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer

Microsoft identifies a new ClickFix campaign using Windows Terminal to deliver Lumma Stealer. Analysis of social engineering TTPs and mitigation steps included.

Runtime Rebel Intel
3 min read·Mar 6, 2026
TH
HIGH
Threat Intel

Enterprise Browser Security: Emerging Blind Spots & AI Web Tool Risks

Keep Aware's 2026 report reveals critical enterprise browser security gaps, citing AI web tool use, phishing, and extensions as major blind spots for defenders.

Runtime Rebel Intel
4 min read·Mar 5, 2026
Fake IT Support Campaigns Deploy Customized Havoc C2 Payloads
HIGH
Threat Intel

Fake IT Support Campaigns Deploy Customized Havoc C2 Payloads

Huntress identifies a new campaign using fake IT support lures and vishing to deploy Havoc C2 for data exfiltration and ransomware delivery.

Runtime Rebel Intel
4 min read·Mar 3, 2026
TH
HIGH
Threat Intel

Fake Recruiters Deploy Malware via Malicious Coding Challenges

North Korean threat actors are targeting software developers with fake job offers and malicious coding tests to deploy malware on developer workstations.

Runtime Rebel Intel
3 min read·Feb 27, 2026
Microsoft Warns of Fake Next.js Repos Delivering In-Memory Malware
HIGH
Threat Intel

Microsoft Warns of Fake Next.js Repos Delivering In-Memory Malware

Microsoft warns developers of a coordinated campaign using malicious Next.js repositories disguised as job assessments to deliver in-memory malware.

Runtime Rebel Intel
3 min read·Feb 26, 2026
SU
HIGH
Supply Chain

Fake Next.js Job Interview Tests Backdoor Developers

Microsoft Defender discovered a campaign where malicious Next.js job interview tests backdoor developers' devices, posing a supply chain risk.

Runtime Rebel Intel
5 min read·Feb 26, 2026