Phishing becomes more credible through generative AI and identity data from leaks, while technical filters increasingly fail—a strategic combination of FIDO2 authentication, frequent training, and high reporting rates is now necessary.
A vishing campaign exploits Microsoft Teams for remote access extortion and leads to Chaos ransomware encryption in at least three cases within under 17 hours.
Cybercriminals exploit legitimate AI chat sharing features from Claude to trick developers into manually executing malware and stealing corporate login credentials.
Attackers exploit fear of security events to distribute fake apps through fraudulent Play Store replicas and infect Android devices with multi-layered spyware.
Calendar phishing exploits users’ trust in work tools and bypasses traditional email security solutions through deliberately manipulated meeting invitations.
AI aggregation tools generate coherent, attack-ready executive profiles from publicly available data, drastically lowering the barrier to entry for targeted social engineering attacks.
LabubaRAT is a RAT developed in Rust that masquerades as an NVIDIA application and enables persistent access to Windows systems via flexible communication channels (HTTPS, WebView2, DNS tunneling).