#socialengineering

7 posts · Last used 5d

Back to Timeline
CyberWorldOps @cyberworldops@infosec.exchange · 5d ago
Levi Strauss disclosed to the SEC that its corporate computers were compromised through a social engineering attack targeting three employees. Preliminary findings indicate the attackers likely accessed and exfiltrated corporate information. No customer data has been confirmed stolen so far. #SocialEngineering #CorporateSecurity #DataExfiltration #ThreatLandscape https://cyberworldops.eu/en/social-engineering-attack-against-levi-strauss-computers-of-three
0
0
0
Between The Hacks @betweenthehacks@infosec.exchange · Jul 08, 2026
A CAPTCHA should never ask you to open Terminal. I recently encountered a real ClickFix attack while visiting a trusted website. That experience led me to investigate why attackers are increasingly impersonating security itself instead of simply impersonating trusted brands. New Between The Hacks article: https://betweenthehacks.com/blog/clickfix #ClickFix #Cybersecurity #InfoSec #SocialEngineering
0
0
0
Walker @Walker@infosec.exchange · Jul 08, 2026
Fake job interview requests lead to Google account credential theft. Employees responding to these job "opportunities" are reluctant to admit it to their companies once their accounts are compromised slowing down detection and response. A good social engineering campaign. https://www.bleepingcomputer.com/news/security/phishing-poses-as-big-brand-job-interview-to-steal-google-accounts/ https://gist.github.com/BushidoUK/57c38d5ee75481fb237e968a537de778 #phishing #google #jobscam #socialengineering
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 07, 2026
uBlock Origin adds new filters to block ClickFix social engineering pop-ups and malicious commands before they reach users. #uBlockOrigin #ClickFix #MalwareProtection #SocialEngineering #BrowserSecurity https://meterpreter.org/ublock-origin-clickfix-protection/?utm_source=mastodon&utm_medium=jetpack_social
1
0
0
OTX Bot @techbot@social.raytec.co · Jun 19, 2026
Analysis of Gamaredon campaign targeting Ukraine weaponizing CVE-2025-8088 A campaign exploiting the WinRAR path-traversal vulnerability CVE-2025-8088 has been actively targeting Ukraine since February 2026, with ongoing activity through June 2026. The operation uses Ukrainian military and conscription-themed documents as lures, distributed as RAR archives. The malicious archives contain NTFS alternate data streams with path-traversal sequences that automatically place LNK files into the Windows Startup folder upon extraction. These shortcuts execute hidden PowerShell stagers incorporating anti-analysis techniques including debugger checks, disk-space verification, and sleep delays to evade sandbox detection. The persistent nature of the attacks demonstrates continuous targeting of Ukrainian entities over a four-month period using social engineering focused on military documentation themes. Pulse ID: 6a34c6344468a941c924c02c Pulse Link: https://otx.alienvault.com/pulse/6a34c6344468a941c924c02c Pulse Author: AlienVault Created: 2026-06-19 04:31:48 Be advised, this data is unverified and should be considered preliminary. Always do further verification. #CyberSecurity #Gamaredon #InfoSec #LNK #Military #OTX #OpenThreatExchange #PowerShell #RAT #SocialEngineering #UK #Ukr #Ukraine #Ukrainian #Vulnerability #WinRAR #Windows #bot #AlienVault
0
0
1
ilias :thepiratebay: @DM_Ronin@mstdn.social · Jan 31, 2026
when they say videogames are unrealistic because a combination number is written on a note near the safe #InfoSec #Security #SocialEngineering
4
0
4

You've seen all posts