phishing

Tag

Cards List
#phishing

@BenjaminDEKR: First I've heard of this: "Add a secret string to the end of your X email prefix using a '+' (such as john.smith+privat…

X AI KOLs Following · 2026-07-05 Cached

A user warns about a phishing attempt disguised as a security tip for X/Twitter, advising users to add a secret string to their email prefix; another user clarifies it's phishing and recommends using passkeys instead.

0 favorites 0 likes
#phishing

Weekly Update 510: Live From Mallorca with Scott Helme

Troy Hunt · 2026-06-30 Cached

Troy Hunt's weekly podcast episode with Scott Helme, where they launch 'Why no Passkeys?', a successor to 'Why no HTTPS?' that encourages organizations to adopt passkeys for authentication.

0 favorites 0 likes
#phishing

US offers $10 million for info on group behind Signal and WhatsApp hacking spree

Ars Technica · 2026-06-29 Cached

US authorities offer up to $10 million for information on Russian state cyber groups responsible for hacking thousands of Signal and WhatsApp accounts belonging to journalists and government employees.

0 favorites 0 likes
#phishing

LastPass notifies users of yet another data breach

Hacker News Top · 2026-06-25 Cached

LastPass is notifying users of a data breach caused by a compromise at its third-party vendor Klue, exposing customer names, email addresses, and support case data, but not password vaults.

0 favorites 0 likes
#phishing

Scattered Spider Hackers Plead Guilty on Day 1 of Trial

Krebs on Security · 2026-06-23 Cached

Two key members of the Scattered Spider cybercrime group, Thalha Jubair and Owen Flowers, pleaded guilty in the UK for their roles in a 2024 cyberattack on Transport for London and other attacks involving ransomware, SIM-swapping, and phishing campaigns affecting over 130 organizations.

0 favorites 0 likes
#phishing

World Cup Scams Are Getting Harder to Spot

Wired · 2026-06-22 Cached

AI tools are making World Cup scams harder to detect, with fraudulent websites, deepfakes, and phishing campaigns targeting fans. Experts warn that over 13,000 FIFA-themed domains were registered ahead of the 2026 tournament, with 1 in 41 identified as malicious.

0 favorites 0 likes
#phishing

@hank_aibtc: Holy crap! There's such a nuclear-grade social engineering tool being openly freeloaded on GitHub! Storm-Breaker can directly: - Remotely peep at the other person's camera in real-time (phone/computer) - Real-time microphone eavesdropping, hear all surrounding sounds - Precise GPS location, tell you where the target is now (smartphone…

X AI KOLs Timeline · 2026-06-19 Cached

Storm-Breaker is an open-source social engineering tool available from GitHub, capable of remotely peeping at cameras, eavesdropping on microphones, obtaining GPS location and device information. It is mainly for learning and authorized testing, but misuse carries legal risks.

0 favorites 0 likes
#phishing

The Future of the Con Is Already Here, It's Just Not Evenly Distributed - In Pursuit of Laziness

Lobsters Hottest · 2026-06-18 Cached

The article describes a sophisticated identity theft scam where attackers use fake job interviews and SSO login flows to steal credentials and drain accounts, warning tech-savvy professionals about new phishing techniques.

0 favorites 0 likes
#phishing

Chinese cybercrime operation that used AI to scam ‘hundreds of thousands of victims’ sued by Google

TechCrunch AI · 2026-06-12 Cached

Google is suing a Chinese cybercrime network called Outsider Enterprise for using AI, including its own Gemini, to run massive phishing scams that have victimized hundreds of thousands of people and caused billions in losses.

0 favorites 0 likes
#phishing

Google sues Chinese cybercrime network that used Gemini to automate scams

Ars Technica · 2026-06-12 Cached

Google has filed a lawsuit against a Chinese cybercrime network called Outsider Enterprise, alleging it used Google's Gemini AI to automate phishing scams, create fake websites, and send millions of malicious text messages to Android users.

0 favorites 0 likes
#phishing

Someone used my open source project to phish people

Hacker News Top · 2026-05-29 Cached

An open source project maintainer reports that attackers abused his project's invitation system to send phishing emails to over 14,000 people, exploiting unverified signups and a verified email domain. The incident highlights how well-intentioned design can be misused for malicious purposes.

0 favorites 0 likes
#phishing

Scammers are abusing an internal Microsoft account to send spam links

Hacker News Top · 2026-05-24 Cached

Scammers are exploiting a Microsoft internal email address typically used for account alerts to send spammy links, potentially tricking recipients. Microsoft says it is investigating and taking action.

0 favorites 0 likes
#phishing

‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty

Krebs on Security · 2026-04-21 Cached

A senior member of the cybercrime group Scattered Spider, Tyler Robert Buchanan, has pleaded guilty to wire fraud and identity theft for orchestrating SMS phishing attacks that compromised major tech companies and stole millions in cryptocurrency.

0 favorites 0 likes
← Back to home

Submit Feedback