logo

Threat Actors Use 'Spam Bombing' Technique to Hide Malicious Motives

ID: d44a64f1-5c06-530c-a68b-81c6545850ca

STIX ID: report--d44a64f1-5c06-530c-a68b-81c6545850ca

Feed Name: Dark Reading

Threat Score
55/100

Date Published: 2025-04-10

Date Updated: 2026-04-21

Author: Alexander Culafi, Senior News Writer, Dark Reading

...
...

Darktrace researchers observed a spam-bombing campaign where attackers sign targets up to multiple subscription services to flood inboxes, then pose as IT personnel to lure victims into Microsoft Teams calls; post-call activity included scanning and reconnaissance consistent with network compromise. The report highlights abuse of legitimate platforms (Mandrill/Mailchimp), the dual psychological and technical advantages of email bombing, and recommends user training, verification protocols for IT contacts, and resilient communication channels.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.