FICOBA Breach β 1.2M French Bank Account Records Exposed
Attackers accessed sensitive data on 1.2 million accounts in FICOBA, France's national registry of bank accounts β a goldmine for identity theft, fraud, and targeted scams.
LIVE: New phishing campaigns targeting mobile users βView latest threats β
Documented threats, scams, and attacks. Know what's out there.
Attackers accessed sensitive data on 1.2 million accounts in FICOBA, France's national registry of bank accounts β a goldmine for identity theft, fraud, and targeted scams.
A wave of cyberattacks in 2026 hit French public bodies including France Travail and the Interior Ministry, driven by ransomware, identity theft, and compromised IT suppliers.
Fake bank security-alert emails urge you to verify your account on a lookalike website β a classic phishing attack that steals online banking credentials.
LockBit 3.0 ransomware targets SMBs and critical infrastructure, encrypting data and demanding Bitcoin ransoms after exfiltrating sensitive files first.
Fake Microsoft 365 login pages β the world's most-cloned phishing target β steal employee credentials to breach corporate email, files, and cloud accounts.
BEC / CEO fraud tricks employees into urgent wire transfers by spoofing executive email. It caused $2.9B in losses in 2023 β the #1 cybercrime threat.
Emotet is the malware loader behind most ransomware attacks, spreading via phishing emails. Its 2025 successors PikaBot and DarkGate abuse Microsoft Teams.
BlackCat (ALPHV) ransomware-as-a-service uses triple extortion and Rust-based encryption to hit hospitals and casinos, demanding millions in Bitcoin ransoms.
Conti ransomware-as-a-service shut down Ireland's national health service in 2021 and attacked 1,000+ victims worldwide using double extortion and data theft.
WannaCry ransomware exploited the NSA's EternalBlue SMB flaw to infect 200,000 computers across 150 countries in 2017, shutting down the UK NHS in hours.
Fake crypto exchanges, rug-pull DeFi projects, and fraudulent trading bots stole $3.94 billion in 2023 β the FBI's largest single cybercrime loss category.
Pig-butchering romance scammers build fake relationships over months before luring victims to fraudulent crypto platforms β the FTC logged $1.14B in losses.
Attackers hijacked a legitimate user account on Tchap, France's sovereign government messaging platform, gaining access to a system used by hundreds of thousands of public-sector employees.
Smishing scammers impersonate ASFINAG via SMS to claim a fake toll or parking fine, luring Austrian drivers to a phishing site that steals payment card data.
Smishing campaign impersonating Magenta/Telekom sends fake SMS alerts about account issues to steal login credentials from mobile users across Europe.
Smishing scammers impersonate DHL or other couriers via SMS to steal payment data or install malware on your phone by faking a parcel delivery notification.
Attackers hijack Instagram and Facebook accounts via credential stuffing and fake support messages, then use them for fraud, extortion, and further phishing.
Fake PayPal emails claiming your account is limited or a payment failed trick users into entering credentials and card details on convincing lookalike sites.
Fake Amazon emails claim your account is suspended and trick you into entering credentials on a lookalike page β stealing login data and payment details.
Attackers trick WhatsApp users into sharing their 6-digit OTP registration code, instantly hijacking the account to scam the victim's contacts for money.
Quishing attacks swap real QR codes with malicious ones in emails and public spaces, redirecting victims to phishing sites that bypass email security tools.
Vishing scammers pose as bank fraud teams or police officers to panic victims into revealing PINs, transferring cash, or handing over payment card details.
Fake Microsoft or Apple browser pop-ups claim your PC is infected and push you to call a scam number β leading to remote access theft and financial fraud.