Social Engineering Leveled Up. Has Your Security Program?
Source: Huntress Labs Blog · Category: Threat Actor & Campaign
Social engineering attacks now use device code phishing and AI-generated lures that bypass MFA. Law firms are high-value targets for credential compromise leading to client data theft; urgent need to update staff awareness training and enforce hardware security keys for email/VPN.