Email threat intelligence for security teams

MailSecHub aggregates coverage of phishing campaigns, business email compromise, malware delivery, spoofing and email authentication (SPF, DKIM, DMARC) from top reputable sources. The pipeline polls every two hours, deduplicates and classifies each story by threat category — filter by source or topic to get to what is relevant to your environment.

A weekly briefing summarizes the most significant developments, and the same digest is delivered every Monday morning via the newsletter.

12 articles from SecurityWeek in Phishing
SecurityWeek

AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft

Microsoft disrupted EvilTokens, an AI-powered phishing platform that automated social engineering attacks and target selection. The platform represented an escalated threat using machine learning across the entire attack chain, now taken offline by Microsoft's intervention.

AI summary · generated with Claude
PhishingHighphishing
Read original
SecurityWeek

Phishing Research Challenges Conventional Security Awareness Testing

Research analyzing 2.47 million simulated phishing attacks reveals that traditional click-based metrics don't effectively measure security awareness. Organizations should focus on credential compromise and incident reporting instead to better assess real vulnerability to phishing threats.

AI summary · generated with Claude
PhishingMediumphishing
Read original
SecurityWeek

In Other News: InjectEave Attack, SIM Swapper Sentenced, Glasswing Findings Review

A roundup of cybersecurity news including an InjectEave attack bypassing phishing filters using invisible Unicode, a SIM swapper sentencing, and analysis of Chinese hacking group QTFY's military connections. Invisible Unicode techniques represent an emerging evasion threat for email security systems.

AI summary · generated with Claude
PhishingMediumphishing
Read original
SecurityWeek

Trezor Says 347,000 Users Received Phishing Emails After Brevo Hack

Hackers compromised Brevo marketing platform and sent phishing emails to 347,000 Trezor users plus customers of BitBox and CoinTracking. The attack exploited a third-party service to distribute credential-theft emails targeting cryptocurrency users.

AI summary · generated with Claude
PhishingHighphishing
Read original
SecurityWeek

ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited

ReliaQuest confirmed that ShinyHunters hackers exploited a phishing-compromised employee account to access a dashboard, though the company states the impact was limited. This incident demonstrates the persistent threat of phishing targeting enterprise security firms.

AI summary · generated with Claude
PhishingMediumphishing
Read original
SecurityWeek

New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets

Researchers discovered iAuthFlow V2, a phishing toolkit that registers attacker-controlled passkeys to maintain persistent access even after victims reset passwords or revoke active sessions. This represents a novel persistence mechanism that bypasses traditional account recovery measures.

AI summary · generated with Claude
PhishingHighphishing
Read original
SecurityWeek

Okta Warns of Vishing Attacks Targeting Microsoft 365 Customers

Okta reports vishing attacks targeting Microsoft 365 customers, with attackers using phone calls to direct victims to fake Microsoft Entra ID login pages. This phishing technique aims to steal credentials from a widely-used enterprise authentication system.

AI summary · generated with Claude
PhishingHighphishing
Read original
SecurityWeek

Webinar Today: Why Email Security Keeps Failing

A webinar discussing the limitations of email-layer defenses against modern phishing attacks. It addresses why organizations struggle to prevent phishing and suggests need for broader security approaches beyond traditional email filtering.

AI summary · generated with Claude
Phishingemail securityphishing
Read original

Get the weekly briefing in your inbox

The week's most important email-security news, curated and summarized — every Monday morning. No tracking, one-click unsubscribe.