search
phishing
Trends
- 1Scammers Trick Users into Bridging $2 Million to Fake GIWA Network●Scammers Fool Users into Bridging $2 Million to Fake GIWA Network
Fraudsters set up a counterfeit version of the GIWA network and convinced crypto users to bridge roughly $2 million into it, where the funds were effectively stolen. The scheme exploited trust in the GIWA name, catching victims who did not verify the bridge contract. Observers are warning users to double-check URLs and contract addresses before moving funds.
- 2Data breach exposes personal details of 23,500 Simba customers▼Personal information of over 23,500 Simba customers leaked in data breach
Personal information belonging to more than 23,500 customers of Singapore telecom provider Simba has been leaked in a data breach. Singapore media, including The Straits Times and The Business Times, reported the incident. The leaked details and how the breach occurred have not been fully detailed in initial reports, and customers may face risks such as phishing or identity fraud.
- 3SIMBA data breach exposes personal details of 23,000 customers▼SIMBA data breach exposes IC numbers and personal details of over 23,000 customers
Singapore telco SIMBA has suffered a data breach affecting more than 23,000 customers, with identity card numbers and other personal details exposed. The incident raises fresh concerns about how telecom operators safeguard sensitive customer information, and affected users may face heightened risks of identity theft and phishing attempts.
- 4
A phishing scam may have compromised thousands of court records in Arizona, according to Fox 10 Phoenix. The report suggests sensitive documents held by the state's court system could have been exposed, though details about the scale, the institutions affected, and whether personal data was accessed remain unclear.
- 5Group-IB uncovers RemControl Android banking trojan●Group-IB found the RemControl Android banking trojan, a new malware using AI phishing overlays and fake TVTap apps to st
Cybersecurity firm Group-IB has identified RemControl, a new Android banking trojan distributed through fake TVTap streaming apps. The malware uses AI-generated phishing overlays to trick users into entering banking PINs and credentials, which are then stolen. Security researchers are warning Android users to avoid unofficial app sources as the trojan spreads.
- 6Scammers target young Roblox players with fake login pages●Scammers are going after young Roblox players and their Robux Fake Roblox login pages are being used to steal passwords
Cybersecurity researchers are warning that scammers are targeting young Roblox players with fake Roblox login pages designed to steal passwords and two-factor authentication codes, giving attackers access to accounts and their Robux currency. Because many players are children, experts urge parents to talk to them about phishing links and enable extra account protections.
- 7Truecaller launches Scam Checker tool for fraud detection●Truecaller har lanserat ett nytt verktyg som ska hjälpa användare att upptäcka bedrägeriförsök genom att kontrollera län
Truecaller has launched a new tool called Scam Checker, designed to help users detect fraud attempts. The feature lets users check links, phone numbers and suspicious messages for signs of scams such as phishing. The tool is being discussed in connection with both iOS and Android versions of the app.
- 8
Phishing is in the spotlight as new reports detail a wave of scams and malware campaigns. Russian state hackers are said to be using a technique called RedFlick to spread malware, while Ukrainian authorities warn consumers about fake electricity bills. Researchers also flagged a remote access trojan distributed through fake Microsoft Store pages, and a report finds phishing exposure nearing 70% across key US industries.
- 9Simba data breach exposes 23,549 customers' ID numbers▼SIMBA Data Breach: 23,549 Customers' NRIC Numbers and Birth Dates Exposed, What to Do Now
Singapore telecom operator Simba has suffered a data breach affecting 23,549 customers, with their NRIC identification numbers and dates of birth exposed. Reports are advising affected customers on steps to take, such as staying alert to phishing attempts and monitoring for misuse of their personal information. The incident has raised fresh concerns about how telecom firms safeguard customer data.
- 10
Schools and organizations are sharing practical cybersecurity advice as part of Cybersecurity Awareness Month. Carthage College is reminding students to watch for phishing scams, a common tactic used to steal passwords and personal information. The guidance comes as online fraud attempts targeting students and everyday users continue to rise, prompting institutions to push simple safety habits like verifying senders and avoiding suspicious links.
- 11Chinese hackers impersonated ex-US official to target AI experts▼Chinese hackers impersonated ex-US official to steal emails from AI experts
Chinese-linked hackers posed as a former US official in a phishing scheme aimed at stealing emails from artificial intelligence specialists, Reuters reports. The operation used a spoofed identity to trick targets into handing over sensitive correspondence, highlighting growing concern over espionage campaigns targeting the AI sector and US expertise in the field.
- 12Filippo Bernardini, Publishing's Fake Manuscript Scammer, Reportedly Back●Filippo Bernardini Scammed the Book Business for Years. Is He Back?
Filippo Bernardini, the Italian man who posed as editors and agents to steal unpublished manuscripts from authors across the book world for years, is the subject of renewed attention over whether he is operating again. The New York Times revisits the scheme, which ensnared writers including Margaret Atwood, and asks whether the scammer, who faced US fraud charges, has resumed his activities.
- 13Trey Anastasio and Monica Bellucci mark September 30 birthdays▼Today’s famous birthdays list for September 30, 2026 includes celebrities Trey Anastasio, Monica Bellucci
Cleveland.com's daily celebrities birthdays feature for September 30, 2026 highlights Phish guitarist Trey Anastasio and Italian actress Monica Bellucci among the famous names celebrating. Such lists are a recurring fixture of entertainment coverage, offering readers a quick roundup of stars marking the day, along with brief notes on their careers and milestones.
- 14Australian bank criticised over poorly formatted customer email●Bank email today... * Shows up in Gmail inbox as coming from "statements" * No sender icon * No header image * No sign o
A customer has raised concerns about a suspicious-looking email from an Australian bank. The message arrived in Gmail from the generic name "statements", with no sender icon, header image or sign-off, and was described as an unprofessional wall of text with poor punctuation. Notably, it was sent from the domain xyz.bank rather than the bank's website domain xyzbank.com.au, prompting questions about why the bank uses a different address and whether the email is legitimate.
- 15Microsoft details Star Blizzard's Redflick phishing technique●https://www. microsoft.com/en-us/security/b log/2026/09/29/star-blizzard-refines-phishing-and-malware-delivery-with-the-
Microsoft's security team reports that the threat actor group Star Blizzard, a known advanced persistent threat, has refined its phishing and malware delivery methods using a technique dubbed Redflick. Cybersecurity commentators are sharing the report widely, flagging the group's evolving tactics and the risk this poses to targeted organisations.
- 16Warning issued over phishing link disguised as Google Docs presentation▼Possible Phishing 🎣 on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vQ4JqNki4NYPJowqvSnDa0dUaoYHsAeJBMw02Vtj
Cybersecurity researchers are flagging a possible phishing campaign hosted through a Google Docs presentation link. The URL, shared in defanged form, points to a public Google Slides page that may be used to lure victims into handing over credentials or personal data. A full technical analysis of the link has been published on a URL scanning service. Users are advised to treat unexpected Google Docs links with caution.
- 17Fake Facebook login page flagged in new phishing warning▼Possible Phishing 🎣 on: ⚠️hxxps[:]//facebooc-system[.]start[.]page 🧬 Analysis at: https:// urldna.io/scan/6abc5f333b7750
Security researchers are warning about a phishing site at the address facebooc-system.start.page, which imitates Facebook to steal login credentials. The deliberately misspelled domain on a free hosting service is a common scam pattern. An analysis of the site has been published on the URLDNA scanning platform, and the warning is circulating among infosec professionals.
- 18Fake Rabby wallet page flagged as phishing site▼Possible Phishing 🎣 on: ⚠️hxxps[:]//rabby-start-en-ess[.]wasmer[.]app/ 🧬 Analysis at: https:// urldna.io/scan/6abfe3373b
Security researchers are warning about a phishing site impersonating Rabby, the popular Ethereum wallet browser extension. The fraudulent page, hosted on a wasmer.app subdomain, was defanged and shared with an analysis link on URLDNA so others can inspect its infrastructure. The warning spreads under standard cybersecurity and scam hashtags, urging crypto users to double-check URLs before entering seed phrases.
- 19Woman mails new iPhone to scammers within hours of delivery▼Woman mailed away new iPhone to scammers less than two hours after delivery
A woman in the United States was tricked into mailing her brand-new iPhone to scammers less than two hours after it was delivered, according to WSB-TV. Reports say she fell for a phishing message impersonating a delivery company, which persuaded her to return the device to an address controlled by fraudsters. The case highlights how quickly criminals exploit fake parcel notifications to steal newly purchased phones.
- 20US Department of War promotes 'Brilliant at the Basics' for Cybersecurity Awareness Month▼Department of War Champions 'Brilliant at the Basics' for Cybersecurity Awareness Month
The US Department of War is marking Cybersecurity Awareness Month by promoting its 'Brilliant at the Basics' campaign, urging staff and the wider public to follow fundamental cyber hygiene such as strong passwords, phishing awareness and multi-factor authentication. The initiative highlights how basic defensive practices remain the department's core message against growing digital threats.
- 21Security Researcher Flags Possible Phishing Site▼Possible Phishing 🎣 on: ⚠️hxxps[:]//mailer05-tra[.]mdbgo[.]io 🧬 Analysis at: https:// urldna.io/scan/6abff8ed3b77500 006
A cybersecurity researcher has raised an alert over a suspected phishing site hosted on the domain mailer05-tra.mdbgo.io, defanging the link to prevent accidental clicks. A scan report from URLDNA was shared alongside the warning so others can inspect the domain's technical details. The post circulated among infosec communities under phishing and scam tags.
- 22SVG phishing attacks surge, Symantec warns●SVG phishing attacks jumped in August 2026. Symantec explains how SVG smuggling hides fake logins and malware inside ima
Symantec reports a sharp rise in phishing attacks using SVG image files in August 2026. Attackers embed fake login pages and malware inside SVG files smuggled through email attachments, bypassing conventional detection because the files look like harmless images. Symantec has published guidance on how the technique works and what defences organisations should deploy against it.
- 23Chinese hackers posed as ex-US official to target AI experts●Chinese hackers impersonated ex-US official to steal emails from AI experts https:// fed.brid.gy/r/https://www.rapp ler.
Chinese hackers impersonated a former US official in phishing attacks aimed at stealing emails from artificial intelligence experts, according to a Rappler report. The operation suggests foreign espionage efforts are increasingly focused on the AI field, targeting specialists to gain access to sensitive research and communications. The report has drawn attention to ongoing concerns about cyber espionage between the US and China.
- 24Bulletproof hosting: the internet's criminal safe haven▼Bulletproof hosting, the Internet’s criminal safe haven # negativepid # digitalInvestigations # OSINT # cybersecurity #
A new explainer examines bulletproof hosting, the practice of internet providers knowingly renting server space to criminals and ignoring abuse complaints or takedown requests. The article outlines how these operators shield malware campaigns, phishing and other cybercrime, and looks at how investigators use open-source techniques to trace and identify the networks behind them.
- 25A closer look at how OneDrive phishing attacks work●Anatomy of a modern OneDrive phishing attack # negativepid # digitalInvestigations # OSINT # cybersecurity # AI # tech #
A cybersecurity blog has published a detailed breakdown of a modern phishing campaign abusing Microsoft OneDrive, walking through how attackers craft convincing file-sharing lures and what investigators can do to trace them. The write-up is aimed at digital forensics and OSINT practitioners, touching on the psychology behind cybercrime and the growing role of AI tools in both attacks and investigations.
- 26Anti-scam checklist targets AI-enhanced fraud●This anti-scam checklist can protect you against the latest AI-enhanced frauds https://www.fastcompany.com/91617320/this
Fast Company has published a checklist designed to help people protect themselves against the latest AI-enhanced scams. The piece outlines practical steps individuals can take as fraudsters increasingly use artificial intelligence to make phishing messages, voice calls and impersonation schemes more convincing, amid growing public concern over AI-driven cybercrime.
- 27Warning issued over fake early iPhone Duo pre-order links▼PSA: Do not open links to an early iPhone Duo pre-order page
A warning is circulating telling people not to open links claiming to lead to an early pre-order page for a device referred to as the iPhone Duo. The advice suggests such pages are not legitimate and could be used to phish personal or payment details. Consumers are urged to pre-order only through Apple's official site or verified retailers.
- 28Phishing warning issued over malicious Google Slides link●Possible Phishing 🎣 on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vQtDdGcOPhuzmqinl-zROR_QZmTkYHXgVq8TEmqX
Cybersecurity researchers are flagging a phishing campaign hosted through a Google Slides sharing link. The URL has been defanged and submitted to a URL analysis service for inspection, and warnings are circulating among infosec accounts urging users not to open such links. The case highlights how attackers continue to abuse trusted Google-hosted pages to deliver scams.
- 299 in 10 Americans have encountered a cyber scam, report finds▼9 in 10 Americans have encountered a cyber scam as AI fuels fraud, Consumer Reports finds
A new Consumer Reports survey finds that roughly nine in ten Americans have encountered an online scam or cyber fraud attempt, with artificial intelligence playing a growing role in making scams more convincing and widespread. The findings highlight rising public exposure to phishing, fake identities and AI-generated fraud, prompting renewed calls for consumer awareness and stronger protections.
- 30Fake Facebook login page spreading via Blogspot flagged as phishing●Possible Phishing 🎣 on: ⚠️hxxp[:]//facebookloginsignub[.]blogspot[.]com 🧬 Analysis at: https:// urldna.io/scan/6abf80c63
Security researchers are warning about a phishing site hosted on a Blogspot address that imitates the Facebook login page to steal credentials. A link-analysis service has published a scan of the malicious URL, and cybersecurity accounts are circulating the warning with the address deliberately defanged to prevent accidental clicks. Users are advised to avoid entering Facebook login details on unfamiliar domains.
- 31Fake Roblox domain flagged in phishing warning▼Possible Phishing 🎣 on: ⚠️hxxps[:]//www[.]robiox[.]com[.]py/users/278565116767/profile 🧬 Analysis at: https:// urldna.io
Security researchers are warning about a phishing site impersonating Roblox at a lookalike domain, robiox.com.py, with a fake user profile page. The URL was defanged in the alert, and a scan of the link has been published on the URLDNA analysis service so others can inspect its behaviour. The warning is being shared in cybersecurity circles as a reminder to avoid clicking links resembling the popular gaming platform.
- 32Security researchers flag Facebook phishing site on Blogspot▼Possible Phishing 🎣 on: ⚠️hxxps[:]//my-facebook-blog[.]blogspot[.]com/?m=1 🧬 Analysis at: https:// urldna.io/scan/6abda2
Cybersecurity observers are warning about a suspected phishing page hosted on a Blogspot address imitating Facebook, with the malicious link deliberately defanged as hxxps to prevent accidental clicks. A technical analysis of the site has been published on the URLDNA scanning service. The domain name 'my-facebook-blog' suggests a fake login or credential-harvesting scheme, a common tactic using free blog-hosting platforms to impersonate major services.
- 33Fake Exodus wallet support page flagged as phishing site▼Possible Phishing 🎣 on: ⚠️hxxps[:]//exodus-help-wlt-chiky[.]wasmer[.]app 🧬 Analysis at: https:// urldna.io/scan/6abc910c
Cybersecurity researchers are warning about a phishing site impersonating Exodus wallet support, hosted at exodus-help-wlt-chiky.wasmer.app. The domain was defanged and shared with a link to a URLDNA analysis so others can inspect it. The site follows a common pattern of fraudulent crypto wallet help pages designed to steal users' seed phrases or credentials.
- 34Eskenazi Health Data Breach Follows Phishing Attack▼Eskenazi Health Data Breach Follows Phishing Attack on Employee Cloud Account Eskenazi Health disclosed a data breach af
Eskenazi Health has disclosed a data breach that began with a phishing email sent from a compromised business contact. The message led to unauthorized access to an employee's cloud account, where emails and attachments may have exposed sensitive information. The Indianapolis-based hospital system is now notifying affected individuals and reviewing what data was accessed, drawing attention to ongoing phishing risks facing healthcare providers.
- 35Security Researchers Flag Possible Phishing Site on Weebly▼Possible Phishing 🎣 on: ⚠️hxxps[:]//nnbxv[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/scan/6abc7b5a3b77500 00653a6c
Cybersecurity observers are warning about a suspected phishing page hosted at a Weebly web address, sharing a link to a detailed technical analysis of the site on the URLDNA scanning platform. The address has been defanged to prevent accidental clicks. The warning is being circulated in information security communities alongside standard scam and phishing alert tags.
- 36Security researchers flag phishing campaign hosted on Google Drawings●Possible Phishing 🎣 on: ⚠️hxxps[:]//docs[.]google[.]com/drawings/d/1mhjJHXA_69uh993SRr5QvxWSN1yYnDNolBbiror8T0c/edit 🧬 A
Cybersecurity analysts are warning about a suspected phishing link distributed through a Google Drawings document, with a scan published on the URLDNA analysis platform showing details of the flagged address. The warning circulated among infosec communities, with observers urged to treat unexpected Google Docs or Drawings links as potentially malicious and to verify such links before opening them.
- 37Security researchers flag new phishing site targeting login credentials▼Possible Phishing 🎣 on: ⚠️hxxps[:]//information-identifty-login[.]start[.]page 🧬 Analysis at: https:// urldna.io/scan/6a
Cybersecurity analysts are warning about a phishing website hosted at a lookalike domain mimicking an identity login page, designed to steal users' credentials. The suspicious URL has been defanged and submitted to a URL analysis service, which published a scan of the site. Experts urge caution with unexpected login links.
- 38English schools recovering faster from cyber incidents●England's schools are getting better at mopping up cyber incidents Two-thirds report immediate recovery, although teache
Two-thirds of schools in England now report recovering immediately from cyber incidents, suggesting improved resilience to attacks such as ransomware and phishing. Despite the progress, teachers remain divided over who bears responsibility for security and whose job security is at risk when breaches occur, with staff often left handling technical problems outside their expertise.
- 39Possible phishing site flagged impersonating Toronto Construction Association▼Possible Phishing 🎣 on: ⚠️hxxp[:]//tcaconnect[.]ac-page[.]com/toronto-construction-association-inc 🧬 Analysis at: https:
Cybersecurity researchers are warning of a possible phishing page hosted on a domain mimicking the Toronto Construction Association, shared via a defanged link and analyzed through the URLDNA scanning service. The alert circulates in infosec communities, urging recipients to avoid the link and verify any communications claiming to come from the association.
- 40Phish fans launch scholarship for Vermont music students▼Phish fans create new scholarship for Vermont college music students
Fans of the band Phish have established a new scholarship to support music students at a college in Vermont, the band's home state. The initiative reflects the group's devoted fan community and its ties to Vermont, where Phish formed in the early 1980s. Details on the scholarship's size and eligibility have not yet been widely reported.