Fortra Intelligence and Research Experts (FIRE) have identified a new CalPhishing variant where attackers exploit internal referrals to conduct credential theft attacks.
Key takeaways:
- Attackers pose as prospective customers and contact non-sales employees first.
- Employees unknowingly become “trust bridges” by forwarding meeting-booking links to sales teams.
- The booking page appears legitimate but ultimately prompts users to sign in with Microsoft 365 credentials.
- The attack abuses trusted business workflows instead of spoofed identities or compromised accounts.
- A successful compromise can lead to email access, data theft, fraud, and further phishing attacks.
Full analysis here: https://www.fortra.com/blog/calphishing-through-trust-chain
Related
This entry was posted on September 28, 2026 at 9:35 am and is filed under Commentary with tags Fortra. You can follow any responses to this entry through the RSS 2.0 feed.
You can leave a response, or trackback from your own site.
New CalPhishing Campaign Uses Internal Email Forwards to Reach Targets
Fortra Intelligence and Research Experts (FIRE) have identified a new CalPhishing variant where attackers exploit internal referrals to conduct credential theft attacks.
Key takeaways:
Full analysis here: https://www.fortra.com/blog/calphishing-through-trust-chain
Share this:
Like this:
Related
This entry was posted on September 28, 2026 at 9:35 am and is filed under Commentary with tags Fortra. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.