Phishing Security News
Phishing campaigns, credential-harvesting kits, and social-engineering techniques used to compromise users and organizations.
Phishing remains the most common way attackers get an initial foothold, tricking users into handing over credentials or running malicious code through convincing emails, texts or fake login pages. Here: newly reported campaigns, the brands and platforms being impersonated, and the kits and infrastructure behind them.
Recent Phishing items
Other topics
CVE
Recent CVE identifiers and vulnerability disclosures aggregated from security feeds: new IDs, published advisories, and the vendors and products they affect.
Ransomware
Ransomware attacks, extortion group activity, victim disclosures and decryptor releases.
Zero-Day
Zero-day vulnerabilities being actively exploited before a patch exists, and the fixes that follow.
Data Breach
Confirmed and reported data breaches: what was exposed, which organizations were affected, and how the incident came to light.
Exploit
Public exploit code, proof-of-concept releases, and technical exploitation write-ups for known vulnerabilities.
Patch
Vendor patches, security updates and fix releases for previously disclosed vulnerabilities.