Scammers are abusing an internal Microsoft account to send spam links

The loophole allows spammers and scammers to send emails from a legitimate Microsoft email address typically used for sending genuine account alerts.

From teen hacker to Iron Dome researcher, this founder raised $28M to fight AI phishing

Ocean, an agentic email security platform, raised funding from Lightspeed Venture Partners.

Signal messenger wants to protect you from phishing with these new in-app changes

Signal has rolled out new in-app safety features to help users spot and avoid phishing and social engineering attacks, including scammers posing as Signal itself.

FBI announces takedown of phishing operation that targeted thousands of victims

Cybercriminals allegedly used the W3LL phishing kit to target more than 17,000 victims worldwide, stealing their passwords and multi-factor authentication codes.

QR code traffic scams sound clever – but they’re deeply concerning

New phishing scams are using QR codes in fake traffic violation texts to steal personal and financial data.

Research finds generative AI making frauds a cakewalk for bad actors

New research reveals generative AI is making fraud faster and more scalable, turning cybercrime into a $400 billion global problem.

This fake Google Security check can steal your passwords. Here’s how to stay safe

A new phishing campaign is impersonating Google’s account security checks to trick users into installing a malicious web app that steals passwords, passcodes, and other sensitive data directly from the browser.
The post This fake Google Security check …

Hackers are using Gemini to target you, Google says

Google says hackers are abusing Gemini to speed up cyberattacks, from target research to post-breach troubleshooting. The risk is faster iteration and model extraction, not brand-new tactics, which can shrink defender response windows.
The post Hackers…

Chrome may soon use Gemini antiscam protection to flag scams, but it won’t watch every site you visit

Google is testing Gemini antiscam protection in Chrome, a server-side scam check that activates only when a page already looks risky. It’s off by default and requires Enhanced Safe Browsing.
The post Chrome may soon use Gemini antiscam protection to fl…