What Is Polymorphic Phishing?
Polymorphic phishing is a sneaky type of scam where each email is slightly altered—changing subject lines, sender names, links, and design—to avoid detection by spam filters. These constant changes make it hard for traditional systems to recognize the threat. That’s where emailSONAR helps: by analyzing hidden patterns, technical metadata, and suspicious behaviors across emails, it […]
Delete Any Texts On Your Phone That Include These 3 Letters

In his Forbes article, Zak Doffman warns smartphone users about a surge in “smishing” attacks—SMS phishing scams—linked to organized cybercriminal groups, notably the Smishing Triad. These scams often involve text messages impersonating toll services or delivery companies, urging recipients to settle fake unpaid fees via links containing deceptive terms. Such links frequently use obscure top-level […]
‘Venom Spider’ Targets Hiring Managers in Phishing Scheme

A recent spear-phishing campaign orchestrated by the cybercriminal group “Venom Spider” has been targeting hiring managers and recruiters by masquerading as job applicants. These deceptive emails contain malicious attachments, such as fake résumés, which, when opened, deploy a backdoor malware known as “More_eggs.” This malware grants attackers remote access to the victim’s system, enabling data […]
E-ZPass toll payment texts return in massive phishing wave

A recent phishing campaign has resurfaced, targeting individuals with fraudulent text messages that impersonate E-ZPass and other toll agencies. These messages claim recipients have unpaid tolls and direct them to malicious websites designed to steal personal and financial information. The FBI has reported over 2,000 complaints related to such scams since March 2024, indicating a […]
Users Face New Phishing Threats From Sophisticated Scam Kit

In a recent Forbes article, cybersecurity expert Alex Vakulov highlights the emergence of a sophisticated phishing scam kit that poses significant threats to users. This kit enables cybercriminals to create nearly identical replicas of legitimate single sign-on (SSO) pages, facilitating the theft of sensitive information such as usernames, passwords, and even photo IDs. The attackers […]