Tag

Phishing

All articles tagged with #phishing

technology15 days ago

KrebsOnSecurity.com Celebrates 16 Years of Cybersecurity Insights

KrebsOnSecurity.com celebrates its 16th anniversary by highlighting its recent coverage on cybercrime, including sanctions against cybercriminal entities, major phishing and DDoS attacks, and the rise of powerful botnets like Aisuru and Kimwolf, with plans to investigate Kimwolf's origins in 2026. The site thanks its readers and encourages support through ads and newsletter subscriptions.

cybersecurity15 days ago

Malicious npm Packages Exploit Phishing to Steal Login Credentials

Cybersecurity researchers uncovered a targeted spear-phishing campaign using 27 malicious npm packages to host browser-based phishing lures mimicking document-sharing portals and Microsoft sign-in pages, primarily targeting organizations in critical infrastructure sectors across multiple countries. The campaign leverages package CDNs for resilient hosting, employs anti-analysis techniques, and hard-codes specific email addresses, with the goal of stealing login credentials. The activity highlights ongoing threats in the software supply chain, emphasizing the need for stringent dependency verification and monitoring.

technology19 days ago

Holiday Cybersecurity Risks: Protecting Travelers and Shoppers from Cyberattacks

Hackers exploit the holiday season when security teams are reduced and companies are less vigilant, leading to a spike in cyberattacks like ransomware and phishing, with many high-profile incidents occurring during this period. Security teams prepare months in advance, and AI tools are suggested to help mitigate burnout and improve defenses during this vulnerable time.

technology27 days ago

Google Sues Chinese Scam Ring Over Phishing Texts

Google is suing a Chinese-speaking cybercriminal group called Darcula for sending massive scam text messages impersonating organizations like the IRS and USPS, aiming to seize their web infrastructure and stop their operations. The group has stolen nearly 900,000 credit card numbers and sent over 5,000 scam texts to Americans recently, highlighting the ongoing threat of cyber scams targeting U.S. citizens.

cybersecurity29 days ago

Apple and Google Release Urgent Security Patches for Zero-Day Vulnerabilities

This weekly cybersecurity recap highlights active exploits and critical vulnerabilities in popular software like Apple, WinRAR, and .NET, along with emerging threats such as OAuth scams, sophisticated phishing campaigns, and state-sponsored cyber espionage, emphasizing the urgent need for timely security updates and vigilance.

technology2 months ago

The Most Frightening User Support Email Yet

The article discusses concerns about over-reliance on AI like ChatGPT for technical tasks, highlighting how simple tasks like base64 decoding are better done with traditional tools, and warns about sophisticated phishing and malware attacks that can be easily disguised and scaled, emphasizing the importance of skepticism and proper security measures.

mobile-security3 months ago

ClayRat Spyware Targets UAE Android Users Through Fake Apps and Messaging

ClayRat is a sophisticated Android spyware campaign targeting users in Russia by impersonating popular apps like WhatsApp and TikTok through fake websites and Telegram channels. It can exfiltrate sensitive data, take photos, and propagate itself by sending malicious links to contacts. The malware uses obfuscation and fake app installers to bypass security measures, and while Google Play Protect offers some protection, the threat highlights ongoing risks from pre-installed apps with elevated privileges.