Email threat intelligence for security teams

MailSecHub aggregates coverage of phishing campaigns, business email compromise, malware delivery, spoofing and email authentication (SPF, DKIM, DMARC) from top reputable sources. The pipeline polls every two hours, deduplicates and classifies each story by threat category — filter by source or topic to get to what is relevant to your environment.

A weekly briefing summarizes the most significant developments, and the same digest is delivered every Monday morning via the newsletter.

21 articles from Cofense in Phishing
Cofense

Cofense Vision Extends Post-Perimeter Phishing Defense to Google Workspace

Cofense Vision now integrates with Google Workspace to detect and remove phishing threats that bypass perimeter defenses and reach Gmail inboxes. The solution helps security teams identify and remediate sophisticated phishing attacks post-delivery. This addresses the gap where advanced threats evade traditional email security controls.

AI summary · generated with Claude
Phishingemail securityphishing
Read original
Cofense

Cofense Expands AI-Driven Phishing Defense Platform to Advance Secure Behavior Management

Cofense launched a new Competency Dashboard within its Command Center platform to measure organizational readiness against phishing threats and track employee behavior in recognizing and reporting phishing attempts. This AI-driven enhancement aims to consolidate phishing defense visibility and employee response metrics into a unified view.

AI summary · generated with Claude
Phishingphishing
Read original
Cofense

Chatbot Conundrum: Phishing Attempts of OpenAI’s ChatGPT

Threat actors are leveraging ChatGPT's subscription model to conduct phishing attacks, sending fake payment update notifications to users. These familiar billing lures target ChatGPT's large user base to steal credentials and sensitive information.

AI summary · generated with Claude
PhishingHighphishing
Read original
Cofense

False Allegations, Real Threats: Sexual Misconduct Claims Used as Phishing Lures

Threat actors impersonate university leaders in phishing emails falsely alleging sexual misconduct to trick victims into installing RATs. The social engineering lure exploits sensitive claims to enable malware delivery, providing attackers full system access and control.

AI summary · generated with Claude
PhishingHighphishing
Read original
Cofense

Why Cofense AI Is Different: Built for the Reality That Phishing Gets Through

Cofense discusses its AI-powered phishing defense approach, emphasizing that effective anti-phishing solutions must handle threats that bypass initial defenses. The article addresses security leaders' focus on AI effectiveness rather than mere presence in phishing defense strategies.

AI summary · generated with Claude
Phishingphishing
Read original
Cofense

Phonescams: Casting a Wide Net in an Orchard of Low-Hanging Fruit

Phonescams impersonating major brands are distributed en masse to email inboxes daily, targeting vulnerable users with social engineering. Attackers exploit easily-accessible victims rather than pursuing difficult targets, using established fraudulent techniques adapted for modern delivery.

AI summary · generated with Claude
PhishingMediumphishing
Read original
Cofense

You're Invited to get Phished! Why Invitation-themed Emails Remain Effective

Threat actors are using invitation-themed phishing emails spoofing legitimate event platforms like Punchbowl and Evite to steal credentials and install malware. Cofense Intelligence reports sustained campaigns targeting users with fake login pages and remote access tools. This attack vector remains effective because users trust familiar invitation platforms.

AI summary · generated with Claude
PhishingHighphishing
Read original
Cofense

Why Campaign-Level Phishing Defense Is the Future of Email Security

AI-driven phishing campaigns now employ coordinated variations to evade traditional detection. Campaign-level defense strategies are necessary as threat actors generate thousands of unique email variants serving shared objectives, fundamentally changing email security approaches.

AI summary · generated with Claude
PhishingHighemail securitymalicious emailphishing
Read original
Cofense

Click to Sync: From Google Ads Maintenance Notice to Credential Theft

Threat actors are conducting phishing campaigns impersonating Google Ads maintenance notices to steal user credentials. The attacks exploit familiarity and urgency by mimicking legitimate system notifications, targeting Google Ads Sync Account users with fake upgrade alerts.

AI summary · generated with Claude
PhishingHighphishing
Read original
Cofense

When Routine Becomes the Threat: The Evolution of Finance-Themed Phishing

Finance-themed phishing campaigns are evolving from urgent, pressure-driven tactics to mundane process-oriented messaging that mimics routine financial workflows. This shift makes phishing emails harder to detect and may indicate broader adoption among threat actors targeting organizations.

AI summary · generated with Claude
PhishingHighphishing
Read original
Cofense

The Platform You Trust Is the Platform They Target

Threat actors are shifting from generic phishing campaigns to platform-aware attacks that adapt malware delivery based on the victim's device, browser, and environment. This evolution targets Windows, macOS, and other platforms with selective credential phishing, RATs, or malware payloads, requiring defenders to strengthen detection across multiple endpoints.

AI summary · generated with Claude
PhishingHighphishing
Read original
Cofense

Security Is No Longer an IT Problem: Why Boards Must Rethink Cyber Resilience in the Age of AI

AI-powered phishing attacks now evade traditional email security tools through polymorphic campaigns that continuously evolve. Organizations must adopt board-level cyber resilience strategies beyond IT-focused security gateways and filters to combat adaptive threats.

AI summary · generated with Claude
PhishingHighemail securityphishingsecure email gateway
Read original
Cofense

World Cup-Themed Phishing Campaign Delivers Voidrift Malware with Highly Personalized Lures

Cofense discovered a phishing campaign using FIFA World Cup 2026 lures to deliver Voidrift malware. Emails are highly personalized with recipient and company details, indicating extensive reconnaissance. The campaign demonstrates sophisticated social engineering tactics targeting organizations.

AI summary · generated with Claude
PhishingHighphishing
Read original

Get the weekly briefing in your inbox

The week's most important email-security news, curated and summarized — every Monday morning. No tracking, one-click unsubscribe.