Social Engineering stories
New Zealand users risk fake login pages and scam sites after ChatGPT search results were found pointing to unsafe links and downloads.
Schools and payroll users face heightened phishing and identity-theft risks after breaches exposed sensitive data at multiple firms.
The fake acquisition pitch pushed an Avast employee towards a EUR €626,735.45 wire, exposing a broader impersonation scam across several industries.
Personal details for more than 1 million students and families in Australia and New Zealand were exposed after attackers exploited a flaw in an internal tool.
Security teams may miss the attack because it leaves no persistent phishing site, instead building fake Microsoft login pages inside the browser.
Rising phishing, ransomware and AI misuse are leaving organisations exposed, with weekly attacks up 22% from a year earlier.
Defenders now have minutes, not hours, as attackers use agentic AI to automate credential theft, scanning and extortion across live operations.
Attackers are compressing intrusions into hours, leaving defenders less time to spot and stop credential-harvesting campaigns.
Scammers are draining older adults' savings through romance, friendship and fake AI trading pitches on social media before withdrawals are blocked.
Smaller firms face mounting pressure to prove cyber compliance as Pistachio adds Hugin's technology to reach audit-ready customers across Europe.
Fraudsters are timing texts for lunch and Fridays, as MrBeast led impersonation scams in Malwarebytes' three-month global study.
Security teams can now trace how one weak point becomes a full breach path as Filigran automates multi-step testing in OpenAEV v3.
Trusted employees and AI agents are now seen as prime insider risks, with deepfake fraud and hidden access gaps worsening the threat.
Clients in regulated sectors may benefit from lower AI compliance risk after Probe Group completed independent certification across all its brands.
Fraud checks are being upgraded before Canada's instant payments network goes live, as Peoples Group seeks to stop scams in real time.
Phishing emails can still slip into Microsoft 365 mailboxes when attackers leave the SMTP envelope sender blank, ReliaQuest has found.
Eligible RuPay cardholders in India can now bypass SMS one-time passwords, cutting checkout time as digital-payment fraud climbs sharply.
Banking groups are increasingly paying for rapid removal of phishing and impersonation scams as AI-driven attacks spread across multiple channels.
Broader fraud detection could help agencies and brands spot scams sooner as telecom and internet signals are linked across services.
Most of Southeast Asia's biggest firms still leave customers exposed to spoofed emails, with only 17% enforcing the strictest DMARC setting.