home.social

#phishingcampaigns — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #phishingcampaigns, aggregated by home.social.

fetched live
  1. Microsoft Cloud Accounts Targeted in Passkey Phishing Campaigns

    Microsoft uncovered a massive phishing campaign that sent over a million scam emails in just three days, cleverly impersonating CEOs and other executives to trick companies into divulging sensitive info. The attackers then switched tactics, using passkey-themed social engineering to hijack cloud accounts and…

    osintsights.com/microsoft-clou

    #PhishingCampaigns #MicrosoftCloud #PasskeyPhishing #SocialEngineering #ExecutiveImpersonation

  2. Two new criminal tools — WordlistLoader and SynkLoader — are actively targeting enterprise credentials. WordlistLoader spreads the Amatera infostealer through ClickFix social engineering, while SynkLoader harvests Windows credentials via Microsoft Teams phishing.

    #CredentialTheft #PhishingCampaigns #ThreatIntelligence #MalwareDelivery

    cyberworldops.eu/en/wordlistlo

  3. Two new criminal tools — WordlistLoader and SynkLoader — are actively targeting enterprise credentials. WordlistLoader spreads the Amatera infostealer through ClickFix social engineering, while SynkLoader harvests Windows credentials via Microsoft Teams phishing.

    #CredentialTheft #PhishingCampaigns #ThreatIntelligence #MalwareDelivery

    cyberworldops.eu/en/wordlistlo

  4. Operation Red Card 2.0, led by INTERPOL, disrupted multi-country cybercrime syndicates operating phishing, investment fraud, and mobile money scam infrastructure.

    Key enforcement outcomes:
    • 651 suspects arrested
    • 2,341 devices seized
    • 1,442 malicious domains/servers dismantled
    • $4.3M recovered
    • $45M+ in linked financial losses

    This highlights operational maturity in cross-border cyber enforcement - particularly around infrastructure seizure and coordinated intelligence sharing.

    From a defensive standpoint:
    How can SOC teams better detect early-stage fraud campaigns originating from emerging regions?

    Source: bleepingcomputer.com/news/secu

    Comment your technical perspective.
    Follow Technadu for threat intelligence reporting and enforcement analysis.

    #Infosec #ThreatIntel #Cybercrime #FraudInfrastructure #PhishingCampaigns #SOC #BlueTeam #CyberOperations #LawEnforcementTech #CyberDefense #DigitalForensics

  5. Operation Red Card 2.0, led by INTERPOL, disrupted multi-country cybercrime syndicates operating phishing, investment fraud, and mobile money scam infrastructure.

    Key enforcement outcomes:
    • 651 suspects arrested
    • 2,341 devices seized
    • 1,442 malicious domains/servers dismantled
    • $4.3M recovered
    • $45M+ in linked financial losses

    This highlights operational maturity in cross-border cyber enforcement - particularly around infrastructure seizure and coordinated intelligence sharing.

    From a defensive standpoint:
    How can SOC teams better detect early-stage fraud campaigns originating from emerging regions?

    Source: bleepingcomputer.com/news/secu

    Comment your technical perspective.
    Follow Technadu for threat intelligence reporting and enforcement analysis.

    #Infosec #ThreatIntel #Cybercrime #FraudInfrastructure #PhishingCampaigns #SOC #BlueTeam #CyberOperations #LawEnforcementTech #CyberDefense #DigitalForensics

  6. Operation Red Card 2.0, led by INTERPOL, disrupted multi-country cybercrime syndicates operating phishing, investment fraud, and mobile money scam infrastructure.

    Key enforcement outcomes:
    • 651 suspects arrested
    • 2,341 devices seized
    • 1,442 malicious domains/servers dismantled
    • $4.3M recovered
    • $45M+ in linked financial losses

    This highlights operational maturity in cross-border cyber enforcement - particularly around infrastructure seizure and coordinated intelligence sharing.

    From a defensive standpoint:
    How can SOC teams better detect early-stage fraud campaigns originating from emerging regions?

    Source: bleepingcomputer.com/news/secu

    Comment your technical perspective.
    Follow Technadu for threat intelligence reporting and enforcement analysis.

    #Infosec #ThreatIntel #Cybercrime #FraudInfrastructure #PhishingCampaigns #SOC #BlueTeam #CyberOperations #LawEnforcementTech #CyberDefense #DigitalForensics

  7. Security researchers have revealed a phishing campaign that abused Google Cloud’s email automation to deliver legitimate-looking enterprise notifications from trusted domains.

    The attack chain demonstrates how cloud trust, familiar formatting, and multi-stage redirection can work together to bypass both technical controls and user skepticism.

    This raises broader questions about how defenders evaluate risk in automated cloud workflows.

    What lessons should security teams take from this case?

    Share your insights, and follow TechNadu for vendor-neutral cybersecurity analysis.
    Source: thehackernews.com/2026/01/cybe

    #InfoSec #PhishingCampaigns #CloudAbuse #EmailSecurity #ThreatDetection #SecurityResearch

  8. Security researchers have revealed a phishing campaign that abused Google Cloud’s email automation to deliver legitimate-looking enterprise notifications from trusted domains.

    The attack chain demonstrates how cloud trust, familiar formatting, and multi-stage redirection can work together to bypass both technical controls and user skepticism.

    This raises broader questions about how defenders evaluate risk in automated cloud workflows.

    What lessons should security teams take from this case?

    Share your insights, and follow TechNadu for vendor-neutral cybersecurity analysis.
    Source: thehackernews.com/2026/01/cybe

    #InfoSec #PhishingCampaigns #CloudAbuse #EmailSecurity #ThreatDetection #SecurityResearch

  9. Security researchers have revealed a phishing campaign that abused Google Cloud’s email automation to deliver legitimate-looking enterprise notifications from trusted domains.

    The attack chain demonstrates how cloud trust, familiar formatting, and multi-stage redirection can work together to bypass both technical controls and user skepticism.

    This raises broader questions about how defenders evaluate risk in automated cloud workflows.

    What lessons should security teams take from this case?

    Share your insights, and follow TechNadu for vendor-neutral cybersecurity analysis.
    Source: thehackernews.com/2026/01/cybe

    #InfoSec #PhishingCampaigns #CloudAbuse #EmailSecurity #ThreatDetection #SecurityResearch