Skip to main content
← All Articles

Tag

#social-engineering

42 articles

Advertisement

APT37 Social Engineering via Facebook Delivers RokRAT Malware
HIGH
Threat Intel

APT37 Social Engineering via Facebook Delivers RokRAT Malware

North Korean threat actor APT37 leverages Facebook friend requests and trust-building to deploy the RokRAT trojan against high-value targets.

Runtime Rebel Intel
4 min read·Apr 13, 2026
TH
MEDIUM
Threat Intel

Analyzing the Frequency of Open Redirects in Phishing Campaigns

Examine the technical drivers behind the use of open redirects in phishing delivery and learn strategies for detection and vulnerability remediation.

Runtime Rebel Intel
3 min read·Apr 6, 2026
SU
HIGH
Supply Chain

North Korean Social Engineering Targets Node.js Maintainers

North Korean threat actors use social engineering and malicious npm packages to target high-profile Node.js maintainers in a sophisticated supply chain campaign.

Runtime Rebel Intel
3 min read·Apr 6, 2026
SU
CRITICAL
Supply Chain

Axios npm Hijack Attempt: Detecting Social Engineering Tactics

North Korean threat actors targeted an Axios maintainer with a fake Microsoft Teams fix, highlighting critical risks to open-source supply chains.

Runtime Rebel Intel
3 min read·Apr 5, 2026
MA
HIGH
Malware

Infinity Stealer macOS Malware: Analyzing ClickFix Lures and Payloads

Infinity Stealer targets macOS via ClickFix social engineering. Learn how this Nuitka-compiled malware steals browser data, crypto wallets, and Keychain info.

Runtime Rebel Intel
3 min read·Mar 28, 2026
TH
MEDIUM
Threat Intel

Palo Alto Networks Recruiter Scam and Quantum Security Outlook

Threat actors are impersonating Palo Alto Networks recruiters to target security professionals, while Google sets a 2029 deadline for quantum computing.

Runtime Rebel Intel
3 min read·Mar 27, 2026
Palo Alto Networks Recruitment Fraud: Analysis of Phishing Tactics
MEDIUM
Threat Intel

Palo Alto Networks Recruitment Fraud: Analysis of Phishing Tactics

Phishing campaigns posing as Palo Alto Networks recruiters leverage LinkedIn data and psychological tactics to defraud job seekers in the security industry.

Runtime Rebel Intel
3 min read·Mar 25, 2026
ClickFix Social Engineering Clusters Target Windows and macOS Systems
HIGH
Threat Intel

ClickFix Social Engineering Clusters Target Windows and macOS Systems

Insikt Group identifies five ClickFix clusters using obfuscated commands to exploit native system tools via fake browser error overlays on Windows and macOS.

Runtime Rebel Intel
4 min read·Mar 25, 2026
TH
MEDIUM
Threat Intel

Azure Monitor Alert Abuse: Detecting Callback Phishing Campaigns

Threat actors are abusing Microsoft Azure Monitor Action Groups to send legitimate-looking callback phishing emails to bypass traditional security filters.

Runtime Rebel Intel
4 min read·Mar 21, 2026
TH
MEDIUM
Threat Intel

Professional Refund Fraud Economy Targets Major E-Commerce Retailers

An analysis of the professional refund-as-a-service economy, detailing TTPs used by fraudsters to exploit retailer return policies and payment platforms.

Runtime Rebel Intel
3 min read·Mar 18, 2026
LeakNet Ransomware: ClickFix Exploitation and Deno Loader Analysis
HIGH
Malware

LeakNet Ransomware: ClickFix Exploitation and Deno Loader Analysis

LeakNet ransomware leverages ClickFix social engineering and Deno-based in-memory loaders to bypass traditional security controls and deploy payloads.

Runtime Rebel Intel
3 min read·Mar 17, 2026
TH
HIGH
Threat Intel

LeakNet Ransomware: Stealthy Exploitation via Deno and ClickFix

LeakNet ransomware adopts ClickFix social engineering and the Deno runtime for stealthy initial access and loader deployment in corporate environments.

Runtime Rebel Intel
4 min read·Mar 17, 2026