CyberWire Daily

When preview pane becomes preview pain.

7 snips
Dec 10, 2025
In this discussion, Dick O'Brien, Principal Intelligence Analyst at Symantec and Carbon Black Threat Hunter Team, sheds light on the 'Unwanted Gifts' campaign, where attackers lure victims with fake party invites. He explains how these scams exploit legitimate communications and outlines the evolving tactics of cybercriminals using event-themed lures. O'Brien emphasizes the need for vigilance over unexpected emails and offers actionable advice for safeguarding against remote management tools that attackers might exploit.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Event-Based Lures Are Back

  • Event-based lures like fake party invites are resurging after a lull and can catch users off guard.
  • Attackers revive nostalgic tactics because inbox habits have shifted and people may no longer expect these lures.
ADVICE

Don't Click Unexpected Invite Links

  • Do not click links in terse, unexpected emails asking you to download invites or documents.
  • Scrutinize why you received the email and whether it's from someone you know before interacting.
INSIGHT

RMM Tools Act As Stealthy Backdoors

  • Legitimate remote management tools are attractive to attackers because they act as stealthy backdoors.
  • These tools provide encrypted channels and remote control that mask data exfiltration and further installs.
Get the Snipd Podcast app to discover more snips from this episode
Get the app