ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories

Executive Summary

ThreatsDay report highlights common phishing tactics, including CEO impersonation kits, 5,000 Dropbox account compromises, OAuth credential harvesting, and 17 additional attack stories. Attackers use legitimate tools, spoofed login pages, and malicious links to trick users into granting access. The article emphasizes how everyday interactions—IT calls, shared files, trusted apps—can become entry points for attackers.


Intelligence Metadata - Source Publisher: The Hacker News - Published Date: 2026-09-03T18:02:47+00:00 - Category: threat-intel

Original Description: The worst part is how normal these attacks look. A call from IT. A shared file. A trusted app. A simple request to click “Allow.” Why break in when someone might open the door? That idea runs through this edition. Attackers use real tools, fake login pages, old account links, and software guides that point to unsafe downloads. One wrong letter in a web address can be enough. There is also

"To give hope to someone occurs when you teach them how to use the tools to do it for themselves."

— Byron Pulsifer
Source: The Hacker News