#threat intelligence

Security awareness tips, industry news, and product updates.

Laptop screen showing an email inbox with file attachments
Phishing & Social EngineeringThreat Intelligence

SVG Attachment Phishing Surges Fifty-Fold, Research Finds

New 2026 research shows malicious SVG attachments have grown fifty-fold, becoming the third most common malicious attachment type. Here is why an image file can phish you - and what to change in your filters, policies and simulations.

Rachel Andersen·8/19/2026·5 min read
Exterior of a modern law firm office building where professional-services firms operate
Phishing & Social EngineeringThreat Intelligence

Luna Moth Escalates: FBI Alert, Leak Site, $20M Demands

The Luna Moth extortion crew escalated sharply in May and June 2026: an FBI FLASH alert, a leak site listing roughly 100 victims, reported $20 million ransom demands and attackers walking into law firm offices in person.

Sarah Mitchell·8/17/2026·6 min read
Close-up of a browser address bar on a laptop screen in an office
Phishing & Social EngineeringThreat Intelligence

Menlo Report: 1 in 5 Phishing Links Evade URL Filters

Menlo Security's 2026 Browser Threat Report finds one in five clicked phishing links goes completely undetected by URL filtering, and a third of evasive threats come from 'trusted' domains. The data-driven case for trained humans as the last line of defense.

David Kowalski·8/7/2026·5 min read
A laptop screen displaying code, representing an information-stealing malware attack
Phishing & Social EngineeringThreat Intelligence

Microsoft Warns of ACR Stealer Surge Using ClickFix Lures

Microsoft is warning of a surge in ACR Stealer infections across its enterprise customers, driven by the ClickFix lure that tricks employees into pasting a malicious command themselves. Here is how the attack works - and why the fix is as much about training as it is about tooling.

Marcus Chen·7/19/2026·6 min read
Reviewing employee-reported emails
Threat IntelligenceProduct Updates

Reported Email Review: Turning Employees Into Sensors

When employees report suspicious emails through the empowsec Outlook or Gmail add-in, those reports land in an admin review queue where security teams can classify each one and build real threat intelligence from what is actually reaching inboxes.

Marcus Chen·7/5/2026·8 min read
Employee entering a login code on a laptop at an office desk
Phishing & Social EngineeringSecurity Awareness TipsThreat Intelligence

Kali365 Phishing Service Targets Microsoft 365 Accounts

The FBI is warning about Kali365, a phishing-as-a-service platform that hijacks Microsoft 365 accounts by abusing OAuth device code authentication to steal session tokens and bypass MFA. Here's how the attack works and how to defend your organization.

Marcus Chen·6/6/2026·9 min read
Security team reviewing a suspicious compliance email on a laptop
Phishing & Social EngineeringSecurity Awareness TipsThreat Intelligence

Microsoft AiTM Phishing Alert: Lessons for US Teams

Microsoft is warning US organizations about a sophisticated code-of-conduct phishing campaign using PDFs, CAPTCHA gates, and AiTM token theft. Here is what security teams should watch for next.

Rachel Andersen·5/6/2026·7 min read
Person scanning a QR code on a smartphone with a laptop open in the background
Phishing & Social EngineeringSecurity Awareness TipsThreat Intelligence

Quishing in 2026: The QR Phishing Tricks Your Tools Still Miss

QR code phishing has evolved far beyond a simple scan-and-steal. Split codes, Unicode fakes, CAPTCHA gates, and state-sponsored campaigns are rewriting the rulebook — and most security stacks still can't read a QR code.

Elena Vasquez·4/22/2026·13 min read