buc.ci is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Possible Phishing 🎣
on: ⚠️hxxps[:]//rediffmaiii[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69c25a673b7750000585ed7b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//loginacstrasbourgfrdpprofileo1cauthorize1executione1e13[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69c276a03b775000086c2241
#cybersecurity #phishing #infosec #urldna #scam #infosec
🛡️ #Cybersecurity news & tips across the #fediverse 👇
“Possible Phishing 🎣
on: ⚠️hxxps[:]//www[.]robiox[.]com[.]py/users/493233288195/profile
🧬 Analysis at: https://urldna.io/scan/69c171c73b77500009ac14be
#cybersecurity #phishing #infosec #urldna #scam #infosec”
https://infosec.exchange/@urldna/116279791129107609
🤖 via RSS feed. Not an endorsement.
Possible Phishing 🎣
on: ⚠️hxxps[:]//netflix-clone-jade-beta[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69c0dec73b77500006773fc9
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//connectingwebmail[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69c0d7063b77500006773f16
#cybersecurity #phishing #infosec #urldna #scam #infosec
WTH is this scam? all links seem legit and email headers check out atleast based on my cursory check...
#phishing #scam or I am overreacting? I did login to paypal on another device, changed the password and checked... there actually is $0.02 USD sitting in my account. This paypal account is not actively used. it gets used may be once or twice a year when I have to send cash to my nephews for their christmas presents or similar. there are no transactions in my back or CC accounts that I do not recognize. I am keep an eye on those on daily basis.
Possible Phishing 🎣
on: ⚠️hxxps[:]//www[.]robiox[.]com[.]py/users/267220066116/profile
🧬 Analysis at: https://urldna.io/scan/69c0decb3b77500006773fdb
#cybersecurity #phishing #infosec #urldna #scam #infosec
RE: https://infosec.exchange/@anyrun_app/116278862038756518
The W3C couldn’t care less about the havoc their SVG causes. Do your org a favor and strip .svg files from emails at your email gateway and stop using it in signatures. It’s tough for enterprises to defend let alone small businesses.
AodeRelay boosted🚨 𝗦𝗩𝗚 𝗦𝗺𝘂𝗴𝗴𝗹𝗶𝗻𝗴 𝗖𝗮𝗺𝗽𝗮𝗶𝗴𝗻 𝗛𝗶𝘁𝘀 𝗖𝗼𝗹𝗼𝗺𝗯𝗶𝗮𝗻 𝗢𝗿𝗴𝗮𝗻𝗶𝘇𝗮𝘁𝗶𝗼𝗻𝘀
We’re seeing a surge in a #phishing campaign targeting government, finance, oil and gas, and healthcare sectors in Colombia ⚠️Attackers distribute Spanish-language emails with an attached SVG file. The file is not a static image but an active SVG containing embedded JavaScript that uses SVG smuggling to reconstruct the next stage locally via a blob URL, without fetching a payload from external resources.
The browser then generates an intermediate HTML lure that mimics document preparation, and from embedded data creates a password-protected ZIP archive for the user to open.
❗️ This kind of attack can blur early-stage visibility for SOC teams. SVG smuggling, blob objects, and legitimate Windows components break the compromise into weak signals, making detection and investigation harder in the early stages.
⚡ #ANYRUN Sandbox allows analysts to quickly reconstruct 𝘁𝗵𝗲 𝗳𝘂𝗹𝗹 𝗲𝘅𝗲𝗰𝘂𝘁𝗶𝗼𝗻 𝗰𝗵𝗮𝗶𝗻:
SVG smuggling ➡️ Blob-based HTML lure ➡️ Password-protected ZIP ➡️ Notificacion Fiscal.js (launcher / execution handoff) ➡️ radicado.hta (dropper) ➡️ J0Ogv7Hf.ps1 (script-based RAT / Vjw0rm-like implant) ➡️ C2 communication✅ This helps security teams connect scattered artifacts faster, expose hidden delivery stages, and confirm malicious activity before the attack moves further.
👨💻 Learn how #ANYRUN helps detect complex threats faster: https://any.run/features/?utm_source=mastodon&utm_medium=post&utm_campaign=svg_smuggling_campaign&utm_term=230326&utm_content=linktosandboxlanding
🚨 𝗦𝗩𝗚 𝗦𝗺𝘂𝗴𝗴𝗹𝗶𝗻𝗴 𝗖𝗮𝗺𝗽𝗮𝗶𝗴𝗻 𝗛𝗶𝘁𝘀 𝗖𝗼𝗹𝗼𝗺𝗯𝗶𝗮𝗻 𝗢𝗿𝗴𝗮𝗻𝗶𝘇𝗮𝘁𝗶𝗼𝗻𝘀
We’re seeing a surge in a #phishing campaign targeting government, finance, oil and gas, and healthcare sectors in Colombia ⚠️
Attackers distribute Spanish-language emails with an attached SVG file. The file is not a static image but an active SVG containing embedded JavaScript that uses SVG smuggling to reconstruct the next stage locally via a blob URL, without fetching a payload from external resources.
The browser then generates an intermediate HTML lure that mimics document preparation, and from embedded data creates a password-protected ZIP archive for the user to open.
❗️ This kind of attack can blur early-stage visibility for SOC teams. SVG smuggling, blob objects, and legitimate Windows components break the compromise into weak signals, making detection and investigation harder in the early stages.
⚡ #ANYRUN Sandbox allows analysts to quickly reconstruct 𝘁𝗵𝗲 𝗳𝘂𝗹𝗹 𝗲𝘅𝗲𝗰𝘂𝘁𝗶𝗼𝗻 𝗰𝗵𝗮𝗶𝗻:
SVG smuggling ➡️ Blob-based HTML lure ➡️ Password-protected ZIP ➡️ Notificacion Fiscal.js (launcher / execution handoff) ➡️ radicado.hta (dropper) ➡️ J0Ogv7Hf.ps1 (script-based RAT / Vjw0rm-like implant) ➡️ C2 communication
✅ This helps security teams connect scattered artifacts faster, expose hidden delivery stages, and confirm malicious activity before the attack moves further.
👨💻 Learn how #ANYRUN helps detect complex threats faster: https://any.run/features/?utm_source=mastodon&utm_medium=post&utm_campaign=svg_smuggling_campaign&utm_term=230326&utm_content=linktosandboxlanding
Possible Phishing 🎣
on: ⚠️hxxp[:]//docu-share-direct-lnk-5378edjksjhdb[.]vercel[.]app/docu-share-download98yhjkfdyidy8idyi[.]html
🧬 Analysis at: https://urldna.io/scan/69c0dea93b77500003b852e0
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//egfzeghj456[.]godaddysites[.]com
🧬 Analysis at: https://urldna.io/scan/69c0d0a33b77500006773e69
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//bellsssssss[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69c0c9123b77500006773de4
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//helpdesk-umwedu[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69c0d6e83b77500006773ee0
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//secondary-style-233155[.]framer[.]app
🧬 Analysis at: https://urldna.io/scan/69bfafb93b775000096c4849
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//btinternetmailupdate2024ix[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69bfbdb13b775000096c49a2
#cybersecurity #phishing #infosec #urldna #scam #infosec
Ah für Manitu gibt es wieder Phishing versuche .....@team@manitu.social #manitu #phishing
Possible Phishing 🎣
on: ⚠️hxxps[:]//accede-info[.]webcindario[.]com
🧬 Analysis at: https://urldna.io/scan/69bfa9483b77500007ffdd12
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//site-fn8mvrqwi[.]godaddysites[.]com
🧬 Analysis at: https://urldna.io/scan/69bfa1aa3b775000096c4700
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//fhdfshdfmbs[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69bf937a3b775000096c45c6
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//roblox[.]com[.]et/communities/292651413810/Senbonzakura
🧬 Analysis at: https://urldna.io/scan/69bfc57d3b775000096c4a49
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vTEEWyfYJ0sXU0xKJsevIEAHCUoSmo9213Fa_qHBP7PYWcwu28QVWteZH411xfGpQHbRa0TVqpeVJlq/pub?start=false&loop=false&delayms=3000
🧬 Analysis at: https://urldna.io/scan/69bec0c23b7750000842d614
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//aswin-variyath[.]github[.]io/Netflix-clone
🧬 Analysis at: https://urldna.io/scan/69beb2833b7750000842d490
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//mit-amasklof-gen[.]godaddysites[.]com/
🧬 Analysis at: https://urldna.io/scan/69beba433b7750000842d548
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//newskymeshmember[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69be7a5a3b7750000842cf79
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//telkomsasupportingterms[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69be6c333b77500006b942c4
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//public-crypto-ledger-en[.]typedream[.]app
🧬 Analysis at: https://urldna.io/scan/69be88633b7750000842d09a
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//aricomsemmrvicess[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69be421b3b775000047b243a
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//wemsast[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69be66003b77500006b942b8
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//month-gasoline-seasoned[.]heyflow[.]site/at_t-mail-12260c
🧬 Analysis at: https://urldna.io/scan/69bd145d3b77500006e1a8ad
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//suivre-tracabilites[.]im/
🧬 Analysis at: https://urldna.io/scan/69bb444b3b775000086cdc29
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//abhiraj-creator[.]github[.]io/amazon-Clone/
🧬 Analysis at: https://urldna.io/scan/69bb2e813b775000086cd99e
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//amazonwebservices[.]security-unauthorised-request[.]com/login/L93naK77Hm0_r6pPbX8G9zxXu0VWupF24VUE=9CA==5VFhUT1pballaUlxb/z2ghHgJw_IVa-NxBi24F-ET2uUiOI1Hs
🧬 Analysis at: https://urldna.io/scan/69bb4ac43b775000086cdd17
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//tyeoopwmns[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69baf0023b77500005d12ca6
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//netflix-71f05[.]firebaseapp[.]com
🧬 Analysis at: https://urldna.io/scan/69bb125d3b775000086cd610
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//d26hpdecvhwn5s[.]cloudfront[.]net/about/
🧬 Analysis at: https://urldna.io/scan/69bb2ea03b775000086cd9d7
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//claimmemesolana[.]firebaseapp[.]com
🧬 Analysis at: https://urldna.io/scan/69bae1ec3b7750000467de7b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//bafkreiel3no5gilkaxq2q4d5zyw7fg6cp5ad44wvfmh6nm7ebqlifwixi4[.]ipfs[.]dweb[.]link
🧬 Analysis at: https://urldna.io/scan/69bb04653b7750000a07a4c7
#cybersecurity #phishing #infosec #urldna #scam #infosec
What’s trending in cybersecurity today? Find out with the latest YouTube playlist we’ve curated. 👀 https://www.youtube.com/playlist?list=PLXqx05yil_mdS-qZ8HBVYzSyiYBW8_umd
#Malware #Phishing #IncidentResponse #CyberAwareness #AppSec
Possible Phishing 🎣
on: ⚠️hxxps[:]//mailbocxhelpservice[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69bae8303b775000086cd037
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//gmailqzbw[.]ebforms[.]com
🧬 Analysis at: https://urldna.io/scan/69bb0c0b3b77500009a8e2c1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vRoY3HKoC5AEMK6_q3Z89kIRBfcXW3zATUY3nDgMHuFkY6TX8ysen7_yLwDERaMersa8pKp9mT6SdcG/pub?start=false&loop=false&delayms=3000
🧬 Analysis at: https://urldna.io/scan/69bac5b13b7750000467d9b7
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//serviceorange7[.]godaddysites[.]com/
🧬 Analysis at: https://urldna.io/scan/69bab0163b7750000467d63e
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//symsolar[.]cl
🧬 Analysis at: https://urldna.io/scan/69baf66c3b775000086cd255
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//husxim[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69bafe243b775000086cd36a
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//htpsshaw[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69ba63423b77500008bb997d
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//g1nz36[.]webwave[.]dev
🧬 Analysis at: https://urldna.io/scan/69bada223b775000068e74ed
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vRlJ52gzpLtEqUtCDowKxh1Ml7YIH8rfayPRAge_2uAJWa_V4L-SYByk9DM7_JhXhzhbL1Rx1W1p5pz/pub?start=false&loop=false&delayms=3000&slide=id[.]p
🧬 Analysis at: https://urldna.io/scan/69ba5bab3b7750000467c9d1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//newupdateoffice[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69ba7f743b775000068e7236
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vR-WoIt3foaUjrURnfBGNQdxqvhj70YMjCTZ3ojbp3qQKECbZ0JBZuvQByHoEzf51RUG642sLJ9Ya04/pub?start=false&loop=false&delayms=3000
🧬 Analysis at: https://urldna.io/scan/69ba3f853b775000068e70cb
#cybersecurity #phishing #infosec #urldna #scam #infosec
Athletes targeted via Apple account phishing.
Impersonation + MFA abuse = account takeover.
Social engineering still wins.
Source: https://therecord.media/phishing-nba-nfl-scammer-arrested
Follow TechNadu.
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/forms/d/e/1FAIpQLSdW_yctkNhvzNqMmLbnZBpQNs6wujaLbYJYbdV-r4HnJnh4Tg/viewform
🧬 Analysis at: https://urldna.io/scan/69bab0153b7750000789db65
#cybersecurity #phishing #infosec #urldna #scam #infosec
#Mastodon on the #fediverse is the only #place in the #world that will #protect you from:
Never give up your rights for privacy, free speech and right to live as you are and build a legacy from that.
Possible Phishing 🎣
on: ⚠️hxxps[:]//cloud-ed980[.]web[.]app
🧬 Analysis at: https://urldna.io/scan/69b9d6bf3b7750000869ab86
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//rofmailteam[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69b990783b7750000869a53f
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//23sdrfunkml4fuhjmrhj[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b9cf113b7750000869aab9
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//mail-groveemail-55089[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b9c0fc3b7750000869a8e7
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//bit[.]ly/4fzCZOX
🧬 Analysis at: https://urldna.io/scan/69b966243b77500008699f04
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/forms/d/e/1FAIpQLSdsIg8MxnmOfsE1dRI0A6xPu9C0LkLsSjKO_19b32zT3ThZTA/viewform
🧬 Analysis at: https://urldna.io/scan/69b93c0e3b7750000869995e
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//tgmnail[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69b91fef3b7750000af86ae7
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//us20[.]campaign-archive[.]com/?u=3b8817487f26ed7be2ba76c0e&id=c5ea1a7e76
🧬 Analysis at: https://urldna.io/scan/69b91fec3b7750000799a98d
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//eth[.]trusteeglobal[.]com/address/0x66293aF1004186e74673e0a0FD6Ebfb055F16959/
🧬 Analysis at: https://urldna.io/scan/69b8f5b63b77500006793cb9
#cybersecurity #phishing #infosec #urldna #scam #infosec
Analysis of the Spear-Phishing and KakaoTalk-Linked Threat Campaign by the Konni Group
https://www.genians.co.kr/en/blog/threat_intelligence/kakaotalk
Short summary: https://hackerworkspace.com/article/analysis-of-the-spear-phishing-and-kakaotalk-linked-threat-campaign-by-the-konni-group
Possible Phishing 🎣
on: ⚠️hxxps[:]//medrpt-ar[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69b982493b7750000869a347
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//t[.]co/iOUinlyZ8V
🧬 Analysis at: https://urldna.io/scan/69b9742e3b7750000869a105
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//reception[.]webreception[.]eu
🧬 Analysis at: https://urldna.io/scan/69b8ee123b77500005e478f6
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//hcomputer29orfileexplorerbutton[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69b958383b7750000a79d3da
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//pub-f4bf4b5c581d4d2fae8ac6d8e8ea7310[.]r2[.]dev/woad[.]html
🧬 Analysis at: https://urldna.io/scan/69b9744a3b7750000869a12b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vShfdXavhNrgqYJqj9LAcj6pHebuU63CpIpEjEf2e-j7OMPcHy9DwdV8VNk74XNeQ/pub?start=true&loop=false&delayms=60000
🧬 Analysis at: https://urldna.io/scan/69b934543b77500008699896
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//pmisba79-dev[.]github[.]io/Netflix
🧬 Analysis at: https://urldna.io/scan/69b8fdfa3b77500005e47a76
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//webmail1advinternoit[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b8c3e03b7750000a935f62
#cybersecurity #phishing #infosec #urldna #scam #infosec
Security Week: Robotic Surgery Giant Intuitive Discloses Cyberattack https://www.securityweek.com/robotic-surgery-giant-intuitive-discloses-cyberattack/ @SecurityWeek
Intuitive statement on cybersecurity incident https://www.intuitive.com/en-us/about-us/newsroom/Intuitive-statement-on-cybersecurity-incident #infosec #cyberattack #databreach #phishing
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/drawings/d/1N155Y8wDWDAzH2fKcRx7urzN2ntniYvkqFuyDIjRyNU/edit
🧬 Analysis at: https://urldna.io/scan/69b93c1c3b77500008699976
#cybersecurity #phishing #infosec #urldna #scam #infosec
No idea when this was released.
Genians (Korea): Analysis of the Spear-Phishing and KakaoTalk-Linked Threat Campaign by the Konni Group https://www.genians.co.kr/en/blog/threat_intelligence/kakaotalk
More:
The Hacker News: Konni Deploys EndRAT Through Phishing, Uses KakaoTalk to Propagate Malware https://thehackernews.com/2026/03/konni-deploys-endrat-through-spear.html @thehackernews #infosec #malware #phishing
Possible Phishing 🎣
on: ⚠️hxxps[:]//uvebto[.]com
🧬 Analysis at: https://urldna.io/scan/69b8d98a3b775000068191e3
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//hd3ourtimeprivatephotos[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b8b5a53b77500006818ec1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//amazon-clone-taupe-ten[.]vercel[.]app
🧬 Analysis at: https://urldna.io/scan/69b87d893b7750000681895b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//blyaddddd[.]vercel[.]app
🧬 Analysis at: https://urldna.io/scan/69b8a17c3b775000079021c1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//www2-loja[.]webcindario[.]com
🧬 Analysis at: https://urldna.io/scan/69b885513b77500006818a50
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//bit[.]ly/3xUlsAz
🧬 Analysis at: https://urldna.io/scan/69b853393b775000068183c4
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vRi9YWS61VyjFxarDB_XOJgS1S_okx8GsbbZxfhmWLZ_CXO5TVhhT0d5jqqbDscLC6v9FsBVKkKKBaP/pub?start=true&loop=true&delayms=1000
🧬 Analysis at: https://urldna.io/scan/69b84ce83b7750000681831b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//nidnaver72877755058[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b893323b775000093ca613
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vTrutvjUXDszbyHNfT51sAYPSfes4X98mVZjLbO_IIXNGnkKRaJs3r8jrjyv2VdmmS0M95f0z6sCWSJ/pub?start=false&loop=false&delayms=3000
🧬 Analysis at: https://urldna.io/scan/69b814b73b7750000a9359d3
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//breathtaking-intend-971835[.]framer[.]app/
🧬 Analysis at: https://urldna.io/scan/69b7e2c23b77500007d2714a
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//baradua[.]it/wp/wp-content/plugins/MADE/files/top[.]html
🧬 Analysis at: https://urldna.io/scan/69b87d823b77500006818950
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//netflix-sandy-gamma[.]vercel[.]app
🧬 Analysis at: https://urldna.io/scan/69b885453b77500006818a38
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//southslopecustomerservicedesk333[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69b8534a3b775000093ca536
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//sp721176[.]sitebeat[.]crazydomains[.]com/
🧬 Analysis at: https://urldna.io/scan/69b830e33b7750000a935b00
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//accessopenseamints4[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69b7c69e3b77500003b9348b
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//netfimarketing[.]com/x078262cf0bc424937u8fddd9b5q36281f10[.]html
🧬 Analysis at: https://urldna.io/scan/69b7b2533b7750000996e8ce
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//amazon-clone-tan-two[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69b7ce6e3b77500007d26ef3
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//ldgeer-ledger[.]webflow[.]io/
🧬 Analysis at: https://urldna.io/scan/69b7c6b33b77500007d26daa
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//notifyhubss[.]net/d86ed0788714514de0pa225f696235216922[.]html
🧬 Analysis at: https://urldna.io/scan/69b7c6a03b77500007d26d8b
#cybersecurity #phishing #infosec #urldna #scam #infosec
I was just analysing a phishing through an iCal file masking as appointment from someone internal, promising a "Compensation update"/"Payroll Adjustment"
Containing an QR code to access the document. The QR code contained a link including the recipient email (used to "personalize" the fake login dialog)
Trying the URL in a sandboxed machine and replacing the email with a fake address I first got a fake security check verifying you are human.
And than a fake Microsoft login with the username prefilled
This itself isn't anything special. But there were two observations.
First the funny one. I had the development tools open on the sandbox to view the network requests. Loading stopped because the site code contained debug() statements 🤪
Second: My usual goto substitution domain "example.com" didn't work. The verifying you are human check failed. It worked with a fake username and the original domain or microsoft.com
So, it looks to me that the malicious site does a check if Office 365 is active for the domain.
New.
Cyble: AI-Assisted Phishing Campaign Exploits Browser Permissions to Capture Victim Data https://cyble.com/blog/ai-assisted-phishing-campaign/ #phishing #infosec #threatresearch #JavaScript
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vQJre4AVIO4Ci2MxJQ1LBloerNhcm4MGXxRuEhkItqHEgea8UhrnmJLtXYV5BJiUq54b05XwOpe-tWe/pub
🧬 Analysis at: https://urldna.io/scan/69b7ea823b77500007d27216
#cybersecurity #phishing #infosec #urldna #scam #infosec
✅ Scam Alert: Just received this fake $2,000,000 “donation” from “Philip Hampson Knight” (Nike co-founder)
This morning my inbox delivered a perfectly polished email claiming Phil Knight wants to give me $2M as part of his “giving while living” philosophy.
Spoiler: It’s 100% fake.
Here’s the reality check — and the red flags every professional should watch for in 2026:
The scam in 30 seconds
- Sender: hisaoh@bolero.plala.or.jp (a random Japanese ISP)
- Reply-To: officialphiliphampsonknight@gmail.com (free Gmail)
- Offer: Unsolicited $2,000,000 “personal donation” to a “randomly selected” stranger
- Classic follow-up: They’ll eventually ask for bank details or “processing fees”
What to look for in these fake-donation / impersonation emails:
- Domain mismatch – Real billionaires and foundations do NOT email from consumer ISPs or .jp addresses.
- Reply-To Gmail/Yahoo/Hotmail – Legitimate organizations use their own domain.
- Unsolicited windfall – No one randomly picks your email for millions. Ever.
- Pressure to “confirm quickly” + Wikipedia link as “proof.”
- Plain-text format with weird encoding (this one used Japanese iso-2022-jp to slip filters).
This exact script has been circulating for months using variations of Phil Knight’s name. It’s advance-fee fraud dressed in a billionaire suit.
Pro tip
- Never reply. Never click. Forward the full headers to your security team or report@phishing.gov (US) / equivalent in your country. Then delete.
- Stay sharp out there — scammers are getting more creative, but the tells are still the same.
#Cybersecurity #ScamAlert #Phishing #EmailSecurity #DigitalSafety #LinkedInSecurity #StayVigilant
Possible Phishing 🎣
on: ⚠️hxxps[:]//amazon-clone-virid-two-23[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69b7ce713b77500007d26eff
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//pub-339ed1e572c44e38b332b62b38f3360c[.]r2[.]dev/hss7sbh8wshH88hdhy7Dubhd8hd7UHDSUYsh8HSyu8SB8JJSUSH7sy6GS6S78sh[.]html
🧬 Analysis at: https://urldna.io/scan/69b6bb863b7750000975bad1
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//min[.]standard[.]us-east-1[.]oortstorages[.]com/emm[.]znc?eta=a[.]b@c
🧬 Analysis at: https://urldna.io/scan/69b6ad683b7750000975b972
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/1R7s33uaawuIJN6u4v-ZTspgbL5B_cCjXrWKqiVAOU9U/pub?start=false&loop=false&delayms=3000
🧬 Analysis at: https://urldna.io/scan/69b701d23b7750000975c13f
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//supportorr[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b67cd73b7750000449ba2c
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//mohmohmohmohupdate[.]weebly[.]com/
🧬 Analysis at: https://urldna.io/scan/69b6c32e3b7750000473f295
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//larstore11[.]firebaseapp[.]com
🧬 Analysis at: https://urldna.io/scan/69b675263b7750000449b965
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//docs[.]google[.]com/presentation/d/e/2PACX-1vSA62zAOWfmKQUikDfQKlAy1DYWldE7nv_BaGZ9hFHaRGV7DxDE5a81QFgY-wBgAKxWBTBhKd1YKmkG/pub?start=false&loop=false&delayms=3000&slide=id[.]p
🧬 Analysis at: https://urldna.io/scan/69b6bb8e3b7750000975bade
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//securebankinggroup[.]org/s/63BZGFSVBWSFCDX7Y9/584dd8/90eab167-7429-489f-99f6-ce86e8d0d81a
🧬 Analysis at: https://urldna.io/scan/69b6a7223b7750000975b92a
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//gemincxologin[.]gitbook[.]io
🧬 Analysis at: https://urldna.io/scan/69b699123b7750000473f222
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//onlinemailalerts[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b68b013b7750000975b6b5
#cybersecurity #phishing #infosec #urldna #scam #infosec
New daily playlist: the latest talks and tutorials in cybersecurity and hacking. Stay sharp, stay safe. 👉 https://www.youtube.com/playlist?list=PLXqx05yil_md4xJjcLJx183P3QbV8ezPp
#CyberSecurity #InfoSec #EthicalHacking #OnlineSafety #Phishing
Possible Phishing 🎣
on: ⚠️hxxps[:]//letfixeditforgood[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b6a7093b7750000975b8fa
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//mwt25webb[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b69f663b7750000975b88f
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//gudgsugd[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b67cf23b7750000449ba6d
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//adp-umber[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69b6ad563b7750000473f258
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//frontierbfc[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b64b1a3b7750000449b636
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//chapemaquinas[.]com[.]br/[.]quarantine/VR/Login[.]html
🧬 Analysis at: https://urldna.io/scan/69b604d73b775000086bedbc
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//amazon-clone-gray-three[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69b60c5c3b7750000449b168
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//nugtgsr222[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b5fe633b7750000449b07c
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//abdullahhamdani4[.]github[.]io/Facebook-
🧬 Analysis at: https://urldna.io/scan/69b60c783b7750000449b192
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//sso-web-ledger-ledger-live-login[.]typedream[.]app
🧬 Analysis at: https://urldna.io/scan/69b5e8813b77500006b012f5
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//valerieann1990[.]wixsite[.]com/my-site/
🧬 Analysis at: https://urldna.io/scan/69b63cf83b7750000449b549
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//merenciano[.]net/serviciodecorreo/login/
🧬 Analysis at: https://urldna.io/scan/69b6369e3b77500006b01467
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//apolintresin[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b5da703b775000056c3108
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//amazon-clone-seven-alpha[.]vercel[.]app/
🧬 Analysis at: https://urldna.io/scan/69b604d13b77500006b01392
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//9400fr[.]weebly[.]com
🧬 Analysis at: https://urldna.io/scan/69b5f0333b775000086bed69
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//fiscal-treasury-gov[.]web[.]app
🧬 Analysis at: https://urldna.io/scan/69b5e21f3b775000087a12d9
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//shopeeid567[.]blogspot[.]com/
🧬 Analysis at: https://urldna.io/scan/69b612df3b7750000449b1f0
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//ambika-tech[.]github[.]io/netflix
🧬 Analysis at: https://urldna.io/scan/69b604d83b775000086bedbe
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxps[:]//amazonclone-saurabh[.]netlify[.]app/
🧬 Analysis at: https://urldna.io/scan/69b60c5f3b7750000449b16d
#cybersecurity #phishing #infosec #urldna #scam #infosec
Possible Phishing 🎣
on: ⚠️hxxp[:]//amazon-clone-seven-sand[.]vercel[.]app
🧬 Analysis at: https://urldna.io/scan/69b59bd43b775000056c2b58
#cybersecurity #phishing #infosec #urldna #scam #infosec