Latest updates for #Phishing

Fresh curated links around #phishing are collected here so marketers can spot useful updates and turn timely ideas into posts faster.

Recent items include:

  • Trusted Platforms Exploited to Steal Philippine Banking Credentials
  • The New Phishing Click: How OAuth Consent Bypasses MFA
  • Phishing Now Top Method for Initial Unauthorized Network Access

Post angles to try

Share the most useful takeaway for your audience.
Turn one article into a quick practical checklist.
Ask your audience how this shift affects their work.
Turn angles into scheduled posts

Fresh articles and ideas

Recent curated links from global sources. Generate one free draft from any story, then use SocialBu to schedule and refine your content calendar.

gbhackers.com /1 month ago

Trusted Platforms Exploited to Steal Philippine Banking Credentials

Hackers are increasingly exploiting trusted online platforms to launch sophisticated phishing campaigns targeting bank users in the Philippines. Despite ongoing improvements in ema...

Read source
thehackernews.com /1 week ago

The New Phishing Click: How OAuth Consent Bypasses MFA

In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 Microsoft 365 organizations across five...

Read source
jdsupra.com /4 weeks ago

Phishing Now Top Method for Initial Unauthorized Network Access

According to Cisco Talus researchers, phishing is the primary method threat actors use to gain unauthorized access to networks, accounting for more than one-third of all incidents...

Read source
nbcdfw.com /1 month ago

Beware of phishing scheme via electronic invitations, cybersecurity experts warn

Opening an electronic invitation from a familiar name may seem harmless, but cybersecurity experts warn it could be a gateway for scammers to steal personal information and money....

Read source
pcworld.com /1 month ago

8 phishing red flags hidden in everyday emails

Phishing is alive and well in 2026, as even with robust antivirus and antimalware protections, the weakest link in the security chain is often the human element. We all make mistak...

Read source
gbhackers.com /1 month ago

GitHub and Jira Alerts Hijacked for Trusted-SaaS Phishing

Hackers are abusing GitHub and Jira’s built‑in notification systems to send phishing emails that appear completely legitimate. Because these emails are sent from the platforms’ own...

Read source
thehackernews.com /3 weeks ago

Phishing Campaign Hits 80+ Orgs Using SimpleHelp and ScreenConnect RMM Tools

An active phishing campaign has been observed targeting multiple vectors since at least April 2025, with legitimate Remote Monitoring and Management (RMM) software as a way to esta...

Read source
gbhackers.com /1 month ago

Fake CERT-UA Site Spreads Go-Based RAT in Phishing Campaign

Hackers have launched a targeted phishing campaign by cloning Ukraine’s official CERT-UA website and distributing malicious software disguised as a security tool, according to a ne...

Read source
gbhackers.com /4 weeks ago

Massive Facebook Phishing Operation Leverages AppSheet, Netlify, and Telegram

Cybersecurity researchers at Guardio Labs have uncovered a massive phishing operation dubbed AccountDumpling that has compromised more than 30,000 Facebook accounts worldwide. Unli...

Read source
hackread.com /1 month ago

LinkedIn Phishing Scam Uses Fake Notifications to Hijack Accounts

A LinkedIn phishing scam uses fake notifications and lookalike domains to steal credentials, hijack accounts, and access sensitive professional data.

Read source
gbhackers.com /1 week ago

Fake Invitation Phishing Campaign Steals Credentials From U.S. Organizations

A large-scale phishing campaign leveraging fake event invitations is actively targeting U.S. organizations, combining credential theft, OTP interception, and remote access tool abu...

Read source
cloud.google.com /5 days ago

2 PhaaS 2 Furious: The Evolution of Chinese-language Phishing Services

While Russian-speaking threat actors have historically dominated the phishing-as-a-service (PhaaS) landscape, a rival ecosystem is rapidly growing within the Chinese-language under...

Read source
hackread.com /2 weeks ago

CalPhishing Scam Uses EvilTokens Kit, Outlook Invites to Steal M365 Sessions

Hackers are exploiting Outlook calendar invites and device code phishing to steal M365 session tokens, bypass MFA and breach enterprise accounts.

Read source
hackread.com /2 weeks ago

Hackers Exploit Vercel GenAI to Mass-Produce Convincing Phishing Sites

Hackers are abusing Vercel GenAI to create convincing phishing sites that mimic major brands, including Microsoft, Adidas, and Nike, making scams harder to detect.

Read source
techcrunch.com /1 month ago

FBI announces takedown of phishing operation that targeted thousands of victims

Cybercriminals allegedly used the W3LL phishing kit to target more than 17,000 victims worldwide, stealing their passwords and multi-factor authentication codes.

Read source
windowscentral.com /2 days ago

Users report phishing emails coming from Microsoft’s system, and the company is digging in

Hackers are sending phishing emails from a real Microsoft address, making it even harder for unsuspecting users to detect the scam.

Read source
thehindu.com /1 week ago

MHA warns of phishing campaign targeting users of lost or stolen iPhones

Hackers impersonate Apple Support and exploit victims’ urgency to locate or secure their missing devices through fraudulent SMS messages containing phishing links

Read source
gbhackers.com /3 weeks ago

Phishing Attack Weaponizes Calendar Invites to Steal Login Credentials

A new large-scale phishing campaign is abusing fake event invitations to compromise U.S. organizations, combining credential theft, OTP interception, and the deployment of remote m...

Read source
thehackernews.com /1 week ago

How to Reduce Phishing Exposure Before It Turns into Business Disruption

What happens when a phishing email looks clean enough to pass through security, but dangerous enough to expose the business after one click? That is the gap many SOCs still struggl...

Read source
blog.knowbe4.com /1 week ago

Phishing Campaign Exploits Google AppSheets to Target Facebook Accounts

Researchers at Guardo Labs are tracking a major phishing campaign that abused Google AppSheet as a relay to send phishing emails. The researchers identified more than 30,000 Facebo...

Read source
hackread.com /1 week ago

Fake Word Phishing Reveals Enterprise Blind Spot in Trusted Remote Access Tools

Disclosure: This article was provided by ANY.RUN. The information and analysis presented are based on their research and findings.

Read source
cofense.com /3 weeks ago

Steal Smarter, Not Harder: Malicious use of Vercel for Credential Phishing

Threat actors are increasingly using Generative AI tools like Vercel to rapidly create highly convincing phishing websites that mimic legitimate brands, significantly lowering the...

Read source
gbhackers.com /1 week ago

Indian Student Data Weaponized in Phishing and Financial Fraud Campaigns

A growing trend in India where student data is increasingly being exploited for cybercrime activities, including phishing, impersonation, social engineering, and financial fraud. A...

Read source
hackread.com /1 week ago

FBI Warns of Kali365 Phishing Service Targeting Microsoft 365 Account

FBI warns of Kali365, a PaaS scam kit that lets cybercriminals bypass MFA and hijack Microsoft 365 accounts without passwords.

Read source

Turn fresh research into a full content calendar

Use SocialBu to discover ideas, generate post drafts, and schedule them across your social channels.

Sources covering #Phishing

feeds.windowscentral.com

Recent coverage from public sources
Public source

blog.knowbe4.com

Recent coverage from public sources
Public source

cloudblog.withgoogle.com

Recent coverage from public sources
Public source

cofense.com

Recent coverage from public sources
Public source

feeds.feedburner.com

Recent coverage from public sources
Public source

gbhackers.com

Recent coverage from public sources
Public source