logo

Fake Invitation Phishing Campaign Targets U.S. Organizations With Credential Theft

ID: 930b899f-f916-59a0-b8b8-1ef58996d656

STIX ID: report--930b899f-f916-59a0-b8b8-1ef58996d656

Feed Name: cybersecurityNews.com

Threat Score
78/100

Date Published: 2026-05-21

Date Updated: 2026-05-22

Author: Tushar Subhra Dutta

...
...

A large-scale, ongoing phishing campaign (tracked since at least December 2025) is using event-themed invitation lures and CAPTCHA checks to steal login credentials, intercept OTPs, and silently deploy remote access/RMM tools across multiple U.S. sectors; the actors reuse a repeatable framework and identifiable infrastructure (icons, endpoints, domain patterns), and researchers provided IoCs and TI queries to detect related sites.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.