Skip to main content
← All Articles

Tag

#Social Engineering

170 articles

Advertisement

MEDIUM
Threat Intel

LeakNet Ransomware: Stealthy Exploitation via Deno and ClickFix

LeakNet ransomware adopts ClickFix social engineering and the Deno runtime for stealthy initial access and loader deployment in corporate environments.

Runtime Rebel Intel
4 min read · Mar 17, 2026
LiveChat Abuse: Phishing Campaign Targets PayPal and Amazon Users
MEDIUM
Threat Intel

LiveChat Abuse: Phishing Campaign Targets PayPal and Amazon Users

Threat actors are leveraging legitimate LiveChat platforms to impersonate PayPal and Amazon support agents, stealing credit card and personal data.

Runtime Rebel Intel
4 min read · Mar 16, 2026
ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools
HIGH
Threat Intel

ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools

Threat actors use ClickFix social engineering tactics to deploy the MacSync infostealer on macOS systems via fraudulent AI software installers.

Runtime Rebel Intel
4 min read · Mar 16, 2026
MEDIUM
Threat Intel

Meta Disrupts 150,000 Scam Center Accounts and Deploys New Tools

Meta disables 150,000 accounts linked to industrial-scale scam centers in Southeast Asia and introduces new protective tools against forced labor fraud.

Runtime Rebel Intel
3 min read · Mar 12, 2026
INFO
Threat Intel

Meta Anti-Scam Tools: Facial Recognition and WhatsApp Protection

Meta implements facial recognition and enhanced messaging warnings to combat celeb-bait ads and account takeovers across WhatsApp, Facebook, and Messenger.

Runtime Rebel Intel
3 min read · Mar 11, 2026
InstallFix Attacks: Malvertising Spreads Fake Claude AI Code
HIGH
Threat Intel

InstallFix Attacks: Malvertising Spreads Fake Claude AI Code

InstallFix attacks leverage malvertising and ClickFix-style techniques to spread fake Claude AI code, targeting users of coding assistants and CLI operations.

Runtime Rebel Intel
5 min read · Mar 10, 2026

Advertisement

HIGH
Threat Intel

Microsoft Teams Phishing Deploys A0Backdoor via Quick Assist

Attackers are targeting healthcare and finance employees with Microsoft Teams phishing to deploy A0Backdoor using the native Windows Quick Assist tool.

Runtime Rebel Intel
4 min read · Mar 10, 2026
MEDIUM
Identity & Access

Microsoft Teams Third-Party Bot Tagging Enhances Meeting Security

Microsoft Teams updates meeting lobbies to identify third-party bots, helping administrators prevent unauthorized data collection and social engineering.

Runtime Rebel Intel
4 min read · Mar 9, 2026
HIGH
Threat Intel

ClickFix Attack: Windows Terminal Used for Detection Evasion

The ClickFix attack leverages fake CAPTCHA pages to trick users into pasting malicious commands into Windows Terminal, bypassing traditional detection methods.

Runtime Rebel Intel
4 min read · Mar 9, 2026
HIGH
Threat Intel

Velvet Tempest Deploys Termite Ransomware via ClickFix and CastleRAT

Velvet Tempest leverages ClickFix social engineering and CastleRAT to deploy Termite ransomware, using legitimate Windows tools for stealthy execution.

Runtime Rebel Intel
4 min read · Mar 7, 2026
North Korean APTs Leverage AI for Enhanced IT Worker Scams
HIGH
Threat Intel

North Korean APTs Leverage AI for Enhanced IT Worker Scams

North Korean APTs are leveraging AI, including deepfakes, to enhance IT worker scams.

Runtime Rebel Intel
5 min read · Mar 6, 2026
MEDIUM
Threat Intel

Ghanaian National Pleads Guilty in $100M BEC and Fraud Ring Case

A Ghanaian man has pleaded guilty to his role in a global $100 million fraud ring targeting US entities through business email compromise and romance scams.

Runtime Rebel Intel
4 min read · Mar 6, 2026
Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer
HIGH
Threat Intel

Windows Terminal Exploited in ClickFix Campaign for Lumma Stealer

Microsoft identifies a new ClickFix campaign using Windows Terminal to deliver Lumma Stealer. Analysis of social engineering TTPs and mitigation steps included.

Runtime Rebel Intel
4 min read · Mar 6, 2026
HIGH
Threat Intel

Enterprise Browser Security: Emerging Blind Spots & AI Web Tool Risks

Keep Aware's 2026 report reveals critical enterprise browser security gaps, citing AI web tool use, phishing, and extensions as major blind spots for defenders.

Runtime Rebel Intel
4 min read · Mar 5, 2026
HIGH
Threat Intel

LastPass Phishing Campaign Targets Master Passwords via Fake Alerts

LastPass warns of a new phishing campaign using fraudulent security alerts to steal master passwords. Learn how to identify and mitigate these vault threats.

Runtime Rebel Intel
4 min read · Mar 4, 2026
INFO
Threat Intel

Moltbook's 'AI Theater': Unmasking Human Control in Autonomous Platforms

Runtime Rebel investigates Moltbook's 'AI-only' facade, revealing extensive human involvement.

Runtime Rebel Intel
4 min read · Mar 3, 2026
Fake IT Support Campaigns Deploy Customized Havoc C2 Payloads
HIGH
Threat Intel

Fake IT Support Campaigns Deploy Customized Havoc C2 Payloads

Huntress identifies a new campaign using fake IT support lures and vishing to deploy Havoc C2 for data exfiltration and ransomware delivery.

Runtime Rebel Intel
4 min read · Mar 3, 2026
HIGH
Threat Intel

Fake Recruiters Deploy Malware via Malicious Coding Challenges

North Korean threat actors are targeting software developers with fake job offers and malicious coding tests to deploy malware on developer workstations.

Runtime Rebel Intel
3 min read · Feb 27, 2026
Trojanized Gaming Tools Deliver Java-Based RAT via PowerShell
HIGH
Malware

Trojanized Gaming Tools Deliver Java-Based RAT via PowerShell

Security researchers identify a malware campaign using trojanized gaming tools to deliver a Java-based RAT using PowerShell and portable Java runtimes.

Runtime Rebel Intel
4 min read · Feb 27, 2026
Meta Files Lawsuits Against Global Celeb-Bait Scam Networks
MEDIUM
Threat Intel

Meta Files Lawsuits Against Global Celeb-Bait Scam Networks

Meta takes legal action against advertisers in Brazil, China, and Vietnam, disabling accounts and domains used in large-scale celebrity-bait fraud schemes.

Runtime Rebel Intel
4 min read · Feb 27, 2026
Microsoft Warns of Fake Next.js Repos Delivering In-Memory Malware
MEDIUM
Threat Intel

Microsoft Warns of Fake Next.js Repos Delivering In-Memory Malware

Microsoft warns developers of a coordinated campaign using malicious Next.js repositories disguised as job assessments to deliver in-memory malware.

Runtime Rebel Intel
3 min read · Feb 26, 2026
HIGH
Supply Chain

Fake Next.js Job Interview Tests Backdoor Developers

Microsoft Defender discovered a campaign where malicious Next.js job interview tests backdoor developers' devices, posing a supply chain risk.

Runtime Rebel Intel
5 min read · Feb 26, 2026
TOAD Emails: The 'Call This Number' Gateway Bypass Threat
MEDIUM
Threat Intel

TOAD Emails: The 'Call This Number' Gateway Bypass Threat

Attackers use Telephone-Oriented Attack Delivery (TOAD) with 'call this number' emails to bypass gateways, relying on social engineering post-call.

Runtime Rebel Intel
4 min read · Feb 25, 2026
SLH Recruits Women for $1,000 IT Help Desk Vishing Attacks
HIGH
Threat Intel

SLH Recruits Women for $1,000 IT Help Desk Vishing Attacks

Scattered LAPSUS$ Hunters (SLH) are offering financial incentives to recruit women for vishing campaigns targeting corporate IT help desks and IAM systems.

Runtime Rebel Intel
4 min read · Feb 25, 2026