Exotic files: unexpected sources of cyberthreats
We break down the file formats that can be unfamiliar to some users, and that aren’t always scanned by security solutions but can still pose cyberthreats.
302 articles
We break down the file formats that can be unfamiliar to some users, and that aren’t always scanned by security solutions but can still pose cyberthreats.
Sketchy online stores, crypto investments promising fast returns, hidden subscriptions, and browser extensions loaded with harmful software… online scams have moved well beyond classic phishing. Here’s how to spot the websites operating in this gray area, and what kind of harm they can do.
Attackers are crafting files that devices can read as two different document types at once, and using these “nesting dolls” to smuggle in malware. How to detect and neutralize these two-faced files?
Our experts investigated which file extensions cybercriminals use most in their email blasts. Here’s a breakdown of the most dangerous attachment types — and how to keep your devices safe from malicious files.
Before launching a phishing attack, attackers initiate correspondence with the victim.
Cybercriminals spend years mastering the art of manipulation to trick their targets. Here’s a look at how social engineering actually works, the exact emotions scammers weaponize, and what to do if you’ve already fallen for it.
Here’s a breakdown of the latest scams to watch out for, ensuring your World Cup experience ends with great memories — not stolen money or compromised data.
Kaspersky experts have found that a single fraudulent message in a messaging app leads to an average loss of $733. We break down new AI-powered messaging scam schemes, provide platform-specific statistics, and offer tips on how to protect yourself from digital fraudsters.
Cybercriminals have started leveraging Google’s legitimate AppSheet service to roll out phishing campaigns that target users’ personal data and credentials. Here’s a look at how this is even possible, and what you need to do to secure your accounts.
Why subscription owners need to prioritize personal and family cybersecurity.
As tax-return season rolls around, cybercriminals worldwide are shifting into high gear. They peddle fraudulent services, spoof official tax agency websites, and drain the bank accounts of unsuspecting taxpayers. Here’s how to spot phishing attempts and scams, along with tips for handling your tax documents securely
We’re breaking down why developers have moved into the crosshairs, the specific tactics attackers are using, and how to reduce the risks of company infrastructure being compromised.
Telehealth services and apps are blowing up in popularity right now, making the availability of medical services better than ever. But just how safe is telemedicine, and what kind of risks does it carry?
Spammers have figured out how to hide links to fraudulent sites within surveys created on legitimate platforms. We’re breaking down the ruse and sharing tips on how to avoid falling for it.
Cybercriminals are now deploying web applications generated by Bubble, an AI-powered app builder, to hunt for corporate credentials.
Educational institutions are increasingly falling victim to ransomware attacks. We look at some real-world incidents, explain their causes, and discuss how to mitigate risks to academic infrastructure.
A browser-in-the-browser attack, theoretically described in 2022, has been adopted in real-world phishing. We break down how it works, and how to spot a fake authentication window.
We’re breaking down how to protect yourself from fake streams, counterfeit tickets, and non-existent merch — and how to keep your personal and financial data from being snatched during the 2026 Winter Olympic Games.
We’re diving into the most intriguing and sophisticated phishing and spam schemes intercepted by our experts throughout 2025.