logo

Hackers Target Cybersecurity Firm Outpost24 in 7-Stage Phish

ID: a46b453a-5602-51c6-a56b-a27e513a278b

STIX ID: report--a46b453a-5602-51c6-a56b-a27e513a278b

Feed Name: Dark Reading

Threat Score
60/100

Date Published: 2026-03-17

Date Updated: 2026-04-21

Author: Jai Vijayan

...
...

A targeted credential-phishing campaign against Outpost24 used a sophisticated seven-stage redirect chain—leveraging DKIM-signed Amazon SES mail, Cisco link rewriting, Nylas tracking, a compromised PDF host, re-registered domains, and Cloudflare-protected pages—combined with anti-bot/human validation and the Kratos phishing kit to bypass automated email defenses; the attack was detected before damage but highlights the high risk posed by trusted vendor compromise and the need for layered, zero-trust controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.