search
Phish
Trends
- 1
A phishing scam may have compromised thousands of court records in Arizona, according to Fox 10 Phoenix. The report suggests sensitive documents held by the state's court system could have been exposed, though details about the scale, the institutions affected, and whether personal data was accessed remain unclear.
- 2Scammers Trick Users into Bridging $2 Million to Fake GIWA Network●Scammers Fool Users into Bridging $2 Million to Fake GIWA Network
Fraudsters set up a counterfeit version of the GIWA network and convinced crypto users to bridge roughly $2 million into it, where the funds were effectively stolen. The scheme exploited trust in the GIWA name, catching victims who did not verify the bridge contract. Observers are warning users to double-check URLs and contract addresses before moving funds.
- 3SIMBA data breach exposes personal details of 23,000 customers▼SIMBA data breach exposes IC numbers and personal details of over 23,000 customers
Singapore telco SIMBA has suffered a data breach affecting more than 23,000 customers, with identity card numbers and other personal details exposed. The incident raises fresh concerns about how telecom operators safeguard sensitive customer information, and affected users may face heightened risks of identity theft and phishing attempts.
- 4Data breach exposes personal details of 23,500 Simba customers▼Personal information of over 23,500 Simba customers leaked in data breach
Personal information belonging to more than 23,500 customers of Singapore telecom provider Simba has been leaked in a data breach. Singapore media, including The Straits Times and The Business Times, reported the incident. The leaked details and how the breach occurred have not been fully detailed in initial reports, and customers may face risks such as phishing or identity fraud.
- 5Trey Anastasio and Monica Bellucci celebrate birthdays on September 30●Today’s famous birthdays list for September 30, 2026 includes celebrities Trey Anastasio, Monica Bellucci
Cleveland.com's daily birthdays feature for September 30, 2026 spotlights Phish frontman Trey Anastasio and Italian actress Monica Bellucci among celebrities marking birthdays that day. The recurring list highlights well-known figures sharing the date, offering readers a quick look at stars born on September 30.
- 6Group-IB uncovers RemControl Android banking trojan●Group-IB found the RemControl Android banking trojan, a new malware using AI phishing overlays and fake TVTap apps to st
Cybersecurity firm Group-IB has identified RemControl, a new Android banking trojan distributed through fake TVTap streaming apps. The malware uses AI-generated phishing overlays to trick users into entering banking PINs and credentials, which are then stolen. Security researchers are warning Android users to avoid unofficial app sources as the trojan spreads.
- 7Truecaller launches Scam Checker tool for fraud detection●Truecaller har lanserat ett nytt verktyg som ska hjälpa användare att upptäcka bedrägeriförsök genom att kontrollera län
Truecaller has launched a new tool called Scam Checker, designed to help users detect fraud attempts. The feature lets users check links, phone numbers and suspicious messages for signs of scams such as phishing. The tool is being discussed in connection with both iOS and Android versions of the app.
- 8Simba data breach exposes 23,549 customers' ID numbers▼SIMBA Data Breach: 23,549 Customers' NRIC Numbers and Birth Dates Exposed, What to Do Now
Singapore telecom operator Simba has suffered a data breach affecting 23,549 customers, with their NRIC identification numbers and dates of birth exposed. Reports are advising affected customers on steps to take, such as staying alert to phishing attempts and monitoring for misuse of their personal information. The incident has raised fresh concerns about how telecom firms safeguard customer data.
- 9Fake Facebook login page flagged in new phishing warning▼Possible Phishing 🎣 on: ⚠️hxxps[:]//facebooc-system[.]start[.]page 🧬 Analysis at: https:// urldna.io/scan/6abc5f333b7750
Security researchers are warning about a phishing site at the address facebooc-system.start.page, which imitates Facebook to steal login credentials. The deliberately misspelled domain on a free hosting service is a common scam pattern. An analysis of the site has been published on the URLDNA scanning platform, and the warning is circulating among infosec professionals.
- 10Warning issued over phishing link disguised as Google Docs presentation▼Possible Phishing 🎣 on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vQ4JqNki4NYPJowqvSnDa0dUaoYHsAeJBMw02Vtj
Cybersecurity researchers are flagging a possible phishing campaign hosted through a Google Docs presentation link. The URL, shared in defanged form, points to a public Google Slides page that may be used to lure victims into handing over credentials or personal data. A full technical analysis of the link has been published on a URL scanning service. Users are advised to treat unexpected Google Docs links with caution.
- 11SVG phishing attacks surge, Symantec warns●SVG phishing attacks jumped in August 2026. Symantec explains how SVG smuggling hides fake logins and malware inside ima
Symantec reports a sharp rise in phishing attacks using SVG image files in August 2026. Attackers embed fake login pages and malware inside SVG files smuggled through email attachments, bypassing conventional detection because the files look like harmless images. Symantec has published guidance on how the technique works and what defences organisations should deploy against it.
- 12
New reporting says nearly 70% of organisations across key US industries are exposed to phishing attacks, prompting warnings for security teams to strengthen email defences, employee training and incident response. The figures are drawing attention among cybersecurity professionals in the US and Europe, where phishing remains one of the most common entry points for ransomware and data breaches.
- 13A closer look at how OneDrive phishing attacks work●Anatomy of a modern OneDrive phishing attack # negativepid # digitalInvestigations # OSINT # cybersecurity # AI # tech #
A cybersecurity blog has published a detailed breakdown of a modern phishing campaign abusing Microsoft OneDrive, walking through how attackers craft convincing file-sharing lures and what investigators can do to trace them. The write-up is aimed at digital forensics and OSINT practitioners, touching on the psychology behind cybercrime and the growing role of AI tools in both attacks and investigations.
- 14Fake Exodus wallet support page flagged as phishing site▼Possible Phishing 🎣 on: ⚠️hxxps[:]//exodus-help-wlt-chiky[.]wasmer[.]app 🧬 Analysis at: https:// urldna.io/scan/6abc910c
Cybersecurity researchers are warning about a phishing site impersonating Exodus wallet support, hosted at exodus-help-wlt-chiky.wasmer.app. The domain was defanged and shared with a link to a URLDNA analysis so others can inspect it. The site follows a common pattern of fraudulent crypto wallet help pages designed to steal users' seed phrases or credentials.
- 15Possible phishing site flagged impersonating Toronto Construction Association▼Possible Phishing 🎣 on: ⚠️hxxp[:]//tcaconnect[.]ac-page[.]com/toronto-construction-association-inc 🧬 Analysis at: https:
Cybersecurity researchers are warning of a possible phishing page hosted on a domain mimicking the Toronto Construction Association, shared via a defanged link and analyzed through the URLDNA scanning service. The alert circulates in infosec communities, urging recipients to avoid the link and verify any communications claiming to come from the association.
- 16Phish Fans Launch Scholarship for Vermont Music Students▼Phish Fans Launch Scholarship for Undergraduate Music Students in Vermont
Fans of the band Phish have created a new scholarship to support undergraduate music students in Vermont. The initiative, reported by NYS Music, channels the band's passionate fan community into direct support for young musicians pursuing higher education in the state Phish has long called home. Details on donation amounts and eligibility have not yet been widely reported.
- 17Security Researchers Flag Possible Phishing Site on Weebly▼Possible Phishing 🎣 on: ⚠️hxxps[:]//nnbxv[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/scan/6abc7b5a3b77500 00653a6c
Cybersecurity observers are warning about a suspected phishing page hosted at a Weebly web address, sharing a link to a detailed technical analysis of the site on the URLDNA scanning platform. The address has been defanged to prevent accidental clicks. The warning is being circulated in information security communities alongside standard scam and phishing alert tags.
- 18Fake PayPal login page flagged as phishing threat▼Possible Phishing 🎣 on: ⚠️hxxp[:]//paypal-logiin[.]blogspot[.]com/2021/02?m=1 🧬 Analysis at: https:// urldna.io/scan/6ab
Cybersecurity researchers are warning about a phishing site impersonating PayPal, hosted on a Blogspot address designed to mimic a legitimate PayPal login page. The fake domain uses a deliberately misspelled URL to trick users into entering their credentials. The site has been submitted for technical analysis, and security experts are urging people to check web addresses carefully before logging into financial accounts.
- 19Security Researchers Flag Phishing Site Impersonating Bancolombia▼Possible Phishing 🎣 on: ⚠️hxxps[:]//segurocardiffbancolh360[.]vercel[.]app/ 🧬 Analysis at: https:// urldna.io/scan/6abc9
Cybersecurity observers are warning of a phishing site hosted on a Vercel subdomain that imitates Bancolombia's customer portal, using a URL designed to look like the Colombian bank's official 'seguro' security page. The link has been defanged and shared with a public URL analysis scan so people can review its infrastructure. The alert circulates with standard infosec and scam warnings.
- 20FIFA 18 coin site flagged as suspected phishing scam▼Possible Phishing 🎣 on: ⚠️hxxps[:]//coinsfifa18[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/scan/6abc897f3b77500 00
Security researchers are warning about a suspected phishing site hosted on a Weebly subdomain that offers FIFA 18 in-game coins, a common lure used to steal credentials or payment details from players. A technical analysis of the page has been published via a URL scanning service, defanging the link so others can inspect it safely. Users are urged to avoid entering account or card information on sites promising cheap game currency.
- 21Security researchers flag phishing page hosted on GitHub Pages●Possible Phishing 🎣 on: ⚠️hxxps[:]//mail-account-data[.]github[.]io/baec-invitation-tender/beac/error[.]html 🧬 Analysis
Cybersecurity analysts are warning about a phishing site hosted on GitHub Pages that mimics a mail account login, disguised as a BEAC invitation tender page. The suspicious link has been shared with a URL analysis scan so others can inspect its infrastructure. Security communities are urging people to avoid entering credentials on such pages, noting that GitHub Pages hosting is commonly abused to make phishing links look legitimate.
- 22Scam Alerts Target iPhone Preorder Buyers▼Before You Preorder the iPhone Duo, Watch Out For This Scam
Ahead of Apple's new iPhone launch, reports are warning buyers to be careful when preordering, as scammers set up fake preorder links and phishing pages to steal payment details and personal information. Shoppers are advised to order only through Apple's official site or authorised retailers, and to be wary of deals that seem too good to be true during the preorder rush.
- 23Bulletproof hosting: the internet's criminal safe haven▼Bulletproof hosting, the Internet’s criminal safe haven # negativepid # digitalInvestigations # OSINT # cybersecurity #
A new explainer examines bulletproof hosting, the practice of internet providers knowingly renting server space to criminals and ignoring abuse complaints or takedown requests. The article outlines how these operators shield malware campaigns, phishing and other cybercrime, and looks at how investigators use open-source techniques to trace and identify the networks behind them.
- 24Security researcher flags fake Amazon domain▼Possible Phishing 🎣 on: ⚠️hxxps[:]//amazon-arrived[.]com 🧬 Analysis at: https:// urldna.io/scan/6abca5ba3b77500 00955bde
A cybersecurity researcher has flagged a suspicious website at the address amazon-arrived.com as likely phishing, warning that the domain mimics Amazon to deceive visitors. An automated analysis of the URL has been published via the URLDNA scanning service. The alert is being shared within the infosec community, where users are cautioning others not to click links or enter credentials on the site.
- 25Warning issued over phishing attempt on German quote website●Possible Phishing 🎣 on: ⚠️hxxps[:]//www[.]dietzens[.]de/seiten/zitate/auswahl[.]php?suche=%22%2F%3E%3Cimg%20src%3D%22hxx
Security researchers are flagging a possible phishing attack involving the website dietzens.de. A malicious URL on the site's quote search page appears to exploit an image injection technique, redirecting visitors to an external address. The alert, shared on Mastodon by the threat-intelligence account urldna, has drawn attention from the infosec community, who urge users to avoid clicking unsolicited links pointing to the domain.
- 26Phish fans launch scholarship for Vermont music students▼Phish fans create new scholarship for Vermont college music students
Fans of the band Phish have established a new scholarship to support music students at a college in Vermont, the band's home state. The initiative reflects the group's devoted fan community and its ties to Vermont, where Phish formed in the early 1980s. Details on the scholarship's size and eligibility have not yet been widely reported.
- 27Security researchers flag phishing site hosted on Weebly▼Possible Phishing 🎣 on: ⚠️hxxps[:]//esnetdeskfreenetserverservicesdkx[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/s
Cybersecurity researchers are warning about a possible phishing site operating through a Weebly-hosted page that impersonates network or helpdesk services. The suspicious link has been defused and shared with a technical analysis via urldna.io so that other security professionals can inspect the domain and its infrastructure. The report has circulated in infosec communities, which frequently post such alerts to warn the public about scam pages before they spread more widely.
- 28Amazon Prime users warned of convincing phishing scam●⚠️📢🪝Amazon Prime users, watch out! A convincing phishing scam uses fake billing alerts and a multi-step Amazon lookalike
A phishing campaign targeting Amazon Prime customers is circulating, using fake billing alert emails that lead to a multi-step copycat Amazon site. The fraudulent pages are designed to harvest login credentials, personal information and full payment card details. Security outlets are warning users to be cautious of unexpected billing notifications and to verify their account directly through the official Amazon website or app.
- 29Phishing Warning Issued for Google Docs Drawing Link▼Possible Phishing 🎣 on: ⚠️hxxps[:]//docs[.]google[.]com/drawings/d/1gpJivSsThHrL10szmVZFyBMdW6Lmi6oghTnGmLmgQBk/edit 🧬 A
Cybersecurity researchers are flagging a malicious Google Docs Drawings link being used in a suspected phishing campaign. The URL has been defanged and submitted for automated analysis on the urlDNA scanning platform, which examines page behavior and infrastructure for signs of fraud. Security professionals are sharing the warning to alert others not to open the link and to illustrate how attackers abuse trusted Google services to lend credibility to scams.
- 30Study Links Internet Addiction to Cybersecurity Risk▼Internet Addiction Disorder and Cybersecurity Risk: A Neurobiological and Behavioral Review
A new academic review published in a Sage journal examines Internet Addiction Disorder through a neurobiological and behavioral lens, arguing that compulsive internet use may increase cybersecurity risk. The paper reviews how addictive online behavior patterns can leave individuals more exposed to scams, phishing and other digital threats, connecting mental health research with information security concerns.
- 31Security researchers flag possible phishing site on weebly.com▼Possible Phishing 🎣 on: ⚠️hxxps[:]//general-trading[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/scan/6abc66db3b7750
Cybersecurity observers are warning about a suspected phishing page hosted at general-trading.weebly.com, sharing the address in defanged form so others do not accidentally visit it. A technical scan of the URL has been published on urldna.io for analysts to review. The alerts are circulating in infosec communities with tags for phishing, scams and general cybersecurity awareness.
- 32Fake Wells Fargo login page flagged as phishing site▼Possible Phishing 🎣 on: ⚠️hxxps[:]//sites[.]google[.]com/view/wellsfargologinu 🧬 Analysis at: https:// urldna.io/scan/6a
Security researchers are flagging a fraudulent Wells Fargo login page hosted on a Google Sites address, designed to steal customers' banking credentials. The link has been defanged to prevent accidental clicks, and a public scan on URLDNA lets others inspect the site's characteristics. The warning has circulated among infosec community members tracking phishing campaigns.
- 33Woman mails new iPhone to scammers within hours of delivery▼Woman mailed away new iPhone to scammers less than two hours after delivery
A woman in the United States was tricked into mailing her brand-new iPhone to scammers less than two hours after it was delivered, according to WSB-TV. Reports say she fell for a phishing message impersonating a delivery company, which persuaded her to return the device to an address controlled by fraudsters. The case highlights how quickly criminals exploit fake parcel notifications to steal newly purchased phones.
- 34Russian hacking group Star Blizzard expands targets and tactics▼Russian hackers Star Blizzard expand targeting, change up tactics to reach Ukraine and beyond
The Russia-aligned hacking group Star Blizzard is broadening its targeting beyond its usual victims and changing its tactics, extending operations from Ukraine to a wider range of countries. The group, previously linked to spear-phishing campaigns against researchers, journalists and government figures, is being monitored by cybersecurity analysts tracking its evolving methods and expanding reach.
- 35Russian FSB-linked hackers step up phishing attacks on Ukraine supporters▼Russian FSB-linked hackers scale up phishing attacks against Ukraine supporters
Hackers linked to Russia's FSB intelligence service have intensified phishing campaigns targeting people and organisations supporting Ukraine, according to reporting by Recorded Future News. The attacks use deceptive emails to steal credentials and sensitive information from Ukraine's international backers. Security watchers say the operation shows Moscow's continued emphasis on espionage against Ukraine's allies rather than purely destructive cyberattacks.
- 36Fake Facebook phishing site flagged by security researchers●Possible Phishing 🎣 on: ⚠️hxxps[:]//facebook-eu[.]blogspot[.]com/?m=1 🧬 Analysis at: https:// urldna.io/scan/6abcb39a3b7
Security researchers are warning of a phishing site impersonating Facebook, hosted on the address facebook-eu.blogspot.com. The Blogspot domain is a common tactic to lend fake pages legitimacy. The site was submitted to the URLdna scanning service for analysis, and the warning was shared in cybersecurity circles with tags for phishing, scams and infosec. Users are advised to avoid the link and verify Facebook logins only via the official domain.
- 37Are Passkeys More Private, or Just More Secure?●Are Passkeys More Private, or Just More Secure? Passkeys stop phishing and breaches, but does that make them more privat
Security writers are weighing whether passkeys deliver real privacy gains alongside their well-known security benefits. Passkeys resist phishing and limit damage from data breaches, but questions remain about what websites can still learn about users and how synced passkeys across devices handle personal data. The debate centres on tradeoffs between convenience, security and data exposure.
- 38UK rolls out passkeys on GOV.UK One Login●The UK is rolling out passkeys across GOV.UK One Login, bringing phishing-resistant logins to more than 23 million peopl
The UK government is introducing passkey support across GOV.UK One Login, giving more than 23 million users the option of phishing-resistant sign-ins for public services. Over 300,000 people already switched during the trial phase. Passwords are still required for now, with passkeys offered as an additional, more secure login method for accessing government accounts online.
- 39Security researchers flag suspected Amazon phishing domain●Possible Phishing 🎣 on: ⚠️hxxp[:]//amazoninvit[.]com 🧬 Analysis at: https:// urldna.io/scan/6abb5baf3b77500 0050fcbb3 #
Cybersecurity researchers are warning about a suspected phishing site at the domain amazoninvit.com, which impersonates Amazon, likely luring victims through fake invitation or delivery messages. The domain has been submitted for technical analysis on the URLdna scanning platform, and the warning is circulating in information security communities with phishing and scam alerts.
- 40Security Researchers Flag Phishing Site Hosted on Google Sites▼Possible Phishing 🎣 on: ⚠️hxxps[:]//sites[.]google[.]com/view/oiuiruieor98490krejjkljklejkef/home 🧬 Analysis at: https:/
Cybersecurity researchers are warning about a phishing page hosted on Google Sites, sharing a defanged link and a scan report on urlDNA for analysis. The alerts circulated in infosec channels, with warnings that the site is designed to deceive visitors into handing over credentials or personal data. The use of a legitimate Google domain highlights how attackers exploit trusted hosting services.