The Free Smartwatch Scam: Anatomy of a MENA Financial Phishing Campaign
Overview Free smartwatches don’t exist. Yet across the MENA region, thousands of banking and payment customers are clicking on ads that promise…
Deep technical analysis, engineering breakdowns, and company news straight from the team building the future of email security.
Overview Free smartwatches don’t exist. Yet across the MENA region, thousands of banking and payment customers are clicking on ads that promise…
Overview Traditional phishing campaigns rely on fake websites, typo-squatted domains, and malicious infrastructure to steal credentials. Device Code Phishing changes this approach…
Overview A new vulnerability was discovered by Huntress that led to NetNTLMv2 victims’ hash leakages, which could be further used to log…
The use of compressed files has become widespread in a new way to bypass security systems, which is by merging compressed files…
Introduction CVE-2024-21413 is a vulnerability in the Microsoft Outlook application discovered by Checkpoint Research. Its impact ranges from leaking the local NTLM…
CVE-2023-36884 is an Office and Windows HTML Remote Code Execution Vulnerability that let threat actors execute a remote HTML file bypassing all…