MailSecHub aggregates coverage of phishing campaigns, business email compromise, malware delivery, spoofing and email authentication (SPF, DKIM, DMARC) from top reputable sources. The pipeline polls every two hours, deduplicates and classifies each story by threat category — filter by source or topic to get to what is relevant to your environment.
A weekly briefing summarizes the most significant developments, and the same digest is delivered every Monday morning via the newsletter.
A crypto exchange reduced phishing rates by 8x using phishing simulations and behavioral defenses. The findings highlight social engineering as a critical threat vector in the crypto industry, offering actionable insights for security defense strategies.
Kali365 threat actor exploits Microsoft device login flows to obtain OAuth tokens for unauthorized corporate data access targeting US firms. SOC teams must enhance detection of phishing attacks leveraging this authentication bypass method.
Phishing emails with malicious TTF (TrueType Font) files attached are being used to deliver Windows malware. The attack disguises malware as legitimate business documents, exploiting users who trust font files. This represents a novel email-borne malware delivery technique targeting organizations.
Kaspersky reports that Armored Likho APT group is targeting government and energy sectors using BusySnake Stealer malware, AI-generated loaders, and phishing attacks. This represents an advanced threat combining information-stealing capabilities with sophisticated delivery mechanisms against critical infrastructure.
Article compares four leading email security solutions featuring AI threat detection, phishing defense, malware blocking, and DLP capabilities designed to protect employee inboxes from email-borne threats.
EvilTokens is a phishing attack that hides account takeover indicators until browser execution, leaving SOCs with limited visibility. Enterprise teams need enhanced monitoring to validate threats faster and reduce account compromise risk.