Bypassing the Gatekeepers: How a Global Phishing Campaign Turns Google's Infrastructure into a Trust Proxy

Lead Analysts: Prabhakaran Ravichandhiran, Jeewan Singh Jalal, Karthikeyan Dharmaraj and Sripathi Kumar

Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer

Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal

The Blind Spot: How “Bulletproof” Phishing Redirectors Slip Past SEGs

By Shikhar Dalela and Jeewan Singh Jalal The operators named the kit themselves. Buried inside compromised legitimate websites, the hidden staging directory is sometimes literally called ...

Inside the OS-Aware Phishing Kit Profiling Your Device

Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal Most phishing attacks pick a target and commit to a tactic. This one picks the tactic based on the target, which happens ...

From Inbox to Encryption: How Ransomware Delivery Has Evolved

Ransomware and phishing have always been linked, but the old model was blunt: a phishing email carried the payload, the recipient opened it, encryption followed within hours.

Cybercriminals Are Targeting the FIFA World Cup 2026

Lead Analysts: Jeewan Singh Jalal and Louis Tiley KnowBe4 ThreatLabs tracked phishing campaign activity from the first week of April through June 22, 2026 — covering the pre-tournament ...

What AI Can’t Hide When It Writes a Phishing Email

Lead Analysts: Jeewan Singh Jalal, Prabhakaran Ravichandhiran, and Shikhar Dalela

The Silent Invitation: A Deep Dive into Calendar Invite Phishing

Lead Analysts: Jeewan Singh Jalal and Prabhakaran Ravichandhiran

Free Gift Fallacy: How Attackers Harvest Credit Cards via Fake Surveys

Lead Analysts: Jeewan Singh Jalal, Dilsha Dines, Karthikeyan Dharmaraj

Kratos: The Phishing-as-a-Service Kit Industrializing Cybercrime

Lead Analysts: Jeewan Singh Jalal, Prabhakaran Ravichandhiran and Anand Bodke By the end of 2026, over 90% of all credential compromise attacks are estimated to be enabled by modular ...