Hackers Target Cybersecurity Firm Outpost24 in 7-Stage Phish
ID: a46b453a-5602-51c6-a56b-a27e513a278b
STIX ID: report--a46b453a-5602-51c6-a56b-a27e513a278b
Feed Name: Dark Reading
A targeted credential-phishing campaign against Outpost24 used a sophisticated seven-stage redirect chain—leveraging DKIM-signed Amazon SES mail, Cisco link rewriting, Nylas tracking, a compromised PDF host, re-registered domains, and Cloudflare-protected pages—combined with anti-bot/human validation and the Kratos phishing kit to bypass automated email defenses; the attack was detected before damage but highlights the high risk posed by trusted vendor compromise and the need for layered, zero-trust controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
