logo

As if working at Helldesk weren't bad enough, IT helpers now targeted by cybercrims

ID: 11f2f5a0-5529-5db1-8d37-d7aec4a39584

STIX ID: report--11f2f5a0-5529-5db1-8d37-d7aec4a39584

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-03-15

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Red Canary's report highlights a rising trend of attackers targeting IT helpdesk personnel through phone-based social engineering and phishing to reset passwords and bypass MFA, enabling account takeover, data theft, cryptomining, or ransomware; examples include Scattered Spider operations and the MGM incident. The report recommends stronger helpdesk identity verification (e.g., serial numbers, shared passphrases, video checks, manager confirmation) and cautions that MFA, while essential, can be circumvented and must be chosen and monitored carefully.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.