Skip to main content
← All Articles

Tag

#Phishing

191 articles

Advertisement

OAuth Exploitation and EDR Termination: New Bulletin Analysis
HIGH
Threat Intel

OAuth Exploitation and EDR Termination: New Bulletin Analysis

Analysis of current threats including OAuth token theft, EDR termination techniques, Signal phishing, and 'Zombie ZIP' archive evasion strategies.

Runtime Rebel Intel
3 min read · Mar 12, 2026
Weaponizing SOC Workloads: How Modern Phishing Exhausts Analysts
MEDIUM
Threat Intel

Weaponizing SOC Workloads: How Modern Phishing Exhausts Analysts

Attackers are shifting from employee deception to operational disruption by weaponizing phishing investigation workloads to overwhelm SOC analysts.

Runtime Rebel Intel
3 min read · Mar 12, 2026
Manipulating Perplexity Comet AI via Reasoning-Based Phishing
HIGH
Threat Intel

Manipulating Perplexity Comet AI via Reasoning-Based Phishing

Researchers from Guardio demonstrate a rapid attack vector against Perplexity’s Comet AI browser, tricking it into executing malicious phishing tasks.

Runtime Rebel Intel
4 min read · Mar 11, 2026
INFO
Threat Intel

Daily Threat Brief: Persistent Vulnerabilities & Defense Fundamentals

Analyzing the ongoing cybersecurity challenges highlighted in the SANS ISC Stormcast.

Runtime Rebel Intel
4 min read · Mar 11, 2026
HIGH
Malware

Quasar RAT Delivery via Malicious PDF and LNK Files

Technical analysis of a multi-stage infection chain using PDF lures and LNK files to deploy Quasar RAT, including detection and mitigation strategies.

Runtime Rebel Intel
3 min read · Mar 10, 2026
HIGH
Threat Intel

ClickFix Attack: Windows Terminal Used for Detection Evasion

The ClickFix attack leverages fake CAPTCHA pages to trick users into pasting malicious commands into Windows Terminal, bypassing traditional detection methods.

Runtime Rebel Intel
4 min read · Mar 9, 2026

Advertisement

MEDIUM
Threat Intel

Phishing Alert: Impersonation of US City/County Officials Targets Permit Applicants

The FBI warns of active phishing campaigns impersonating US city and county officials to target businesses and individuals seeking permits, aiming for fraud and data…

Runtime Rebel Intel
5 min read · Mar 9, 2026
MEDIUM
Threat Intel

Abusing .arpa Infrastructure TLDs for Phishing Campaigns

Threat actors are leveraging the .arpa infrastructure TLD and DNS management controls to mask malicious content and increase phishing success rates.

Runtime Rebel Intel
4 min read · Mar 9, 2026
MEDIUM
Threat Intel

Abusing .arpa DNS and IPv6 to Bypass Phishing Defenses

Threat actors exploit .arpa domains and IPv6 reverse DNS for phishing evasion, bypassing email security gateways and domain reputation checks.

Runtime Rebel Intel
4 min read · Mar 8, 2026
MEDIUM
Compliance

EU Court Adviser: Banks Must Refund Phishing Victims Immediately

CJEU Advocate General issues opinion requiring banks to refund unauthorized phishing transactions by the next business day under PSD2 regulations.

Runtime Rebel Intel
4 min read · Mar 8, 2026
Europol Dismantles Tycoon 2FA Phishing Platform: Mitigating MFA Bypass
MEDIUM
Threat Intel

Europol Dismantles Tycoon 2FA Phishing Platform: Mitigating MFA Bypass

Europol and cybersecurity vendors dismantle Tycoon 2FA, a major phishing-as-a-service platform known for its sophisticated MFA bypass capabilities.

Runtime Rebel Intel
4 min read · Mar 6, 2026
HIGH
Threat Intel

Enterprise Browser Security: Emerging Blind Spots & AI Web Tool Risks

Keep Aware's 2026 report reveals critical enterprise browser security gaps, citing AI web tool use, phishing, and extensions as major blind spots for defenders.

Runtime Rebel Intel
4 min read · Mar 5, 2026
HIGH
Threat Intel

LastPass Phishing Campaign Targets Master Passwords via Fake Alerts

LastPass warns of a new phishing campaign using fraudulent security alerts to steal master passwords. Learn how to identify and mitigate these vault threats.

Runtime Rebel Intel
4 min read · Mar 4, 2026
HIGH
Threat Intel

Compromised Site Management Panels: A Commoditized Cybercrime Threat

Underground markets commoditize compromised cPanel and other site management panels, fueling phishing and scam infrastructure. Learn to secure web admin interfaces.

Runtime Rebel Intel
5 min read · Mar 3, 2026
HIGH
Threat Intel

Phishing Campaign Leverages Fake Google PWA to Steal Credentials, MFA

A sophisticated phishing campaign uses a fake Google Security PWA to compromise accounts, steal MFA codes, and proxy traffic. Learn how to protect.

Runtime Rebel Intel
4 min read · Mar 3, 2026
MEDIUM
Threat Intel

Alabama Man Pleads Guilty to Extortion via Social Media Hijacking

Devin Deandre Moore admits to hijacking hundreds of accounts for sextortion. Analysis of the TTPs used in this large-scale digital extortion campaign.

Runtime Rebel Intel
4 min read · Mar 2, 2026
Meta Files Lawsuits Against Global Celeb-Bait Scam Networks
MEDIUM
Threat Intel

Meta Files Lawsuits Against Global Celeb-Bait Scam Networks

Meta takes legal action against advertisers in Brazil, China, and Vietnam, disabling accounts and domains used in large-scale celebrity-bait fraud schemes.

Runtime Rebel Intel
4 min read · Feb 27, 2026
TOAD Emails: The 'Call This Number' Gateway Bypass Threat
MEDIUM
Threat Intel

TOAD Emails: The 'Call This Number' Gateway Bypass Threat

Attackers use Telephone-Oriented Attack Delivery (TOAD) with 'call this number' emails to bypass gateways, relying on social engineering post-call.

Runtime Rebel Intel
4 min read · Feb 25, 2026
MEDIUM
Vulnerabilities

Open Redirects: Overlooked Vulnerability Impact & Analysis

An analysis of open redirect vulnerabilities, their historical context in OWASP, common exploitation vectors like phishing, and essential mitigation strategies.

Runtime Rebel Intel
4 min read · Feb 25, 2026
HIGH
Threat Intel

AI-Enabled Threats: Model Extraction, APT Phishing, & Malware Evolution

GTIG reports on Q4 2025 AI threats: rising model extraction, APTs using AI for reconnaissance and phishing, and new AI-integrated malware families like HONESTCUE and…

Runtime Rebel Intel
9 min read · Feb 25, 2026
MEDIUM
Threat Intel

Diesel Vortex Phishing Campaign Targets Logistics Sector

Financially motivated Diesel Vortex group targets US & European freight and logistics with extensive phishing campaign, using 52 domains to steal credentials.

Runtime Rebel Intel
4 min read · Feb 25, 2026
UAC-0050 Targets European Financial Institutions with RMS Malware
MEDIUM
Threat Intel

UAC-0050 Targets European Financial Institutions with RMS Malware

Russia-aligned actor UAC-0050 expands operations beyond Ukraine, targeting European financial entities with spoofed domains and RMS malware for espionage.

Runtime Rebel Intel
4 min read · Feb 25, 2026
HIGH
Threat Intel

Starkiller Phishing-as-a-Service: Technical Analysis of Adversary-in-the-Middle Frameworks

An examination of the Starkiller phishing platform, which employs transparent reverse proxy techniques to relay authentication traffic and capture multi-factor…

Runtime Rebel Intel
2 min read · Feb 23, 2026