New LinkedIn phishing campaign targets finance executives BleepingComputer reports that finance executives have been targeted with direct-message phishing intrusions via LinkedIn that sought to pilfer their Microsoft credentials.
Russian agriculture industry subjected to Cloud Atlas cyberespionage campaign Agricultural organizations across Russia have been targeted by state-backed threat operation Cloud Atlas, also known as Inception, in a phishing attack involving lures for an upcoming industry forum as part of a cyberespionage campaign, reports The Record, a news site by cybersecurity firm Recorded Future.
Microsoft has confirmed plans to address a newly discovered phishing method known as CoPhish, which abuses Copilot Studio agents to send fraudulent OAuth consent requests through trusted Microsoft domains, according to BleepingComputer.
BleepingComputer reports that the threat group CryptoChameleon sends phishing emails to LastPass users requesting access to their password vaults by uploading death certificates.
Attacks by the Chinese phishing operation Smishing Triad, which consists of thousands of threat actors to support a far-reaching phishing ecosystem, have escalated, according to CyberScoop.
Pakistan-linked threat operation Transparent Tribe, also known as APT36, has targeted Indian government organizations' Linux-based systems with the new DeskRAT malware as part of a cyberespionage campaign that commenced in June, Infosecurity Magazine reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.