Grilled Cheese

ExploreLog inSign up
Terms of UsePrivacy PolicyCommunity StandardsHelpGet the app

Grilled Cheese is a product of Village Compute

Version devBuilt at: 2026-10-10 01:38:52 EDT

Explore

PostsPeople
LatestRanked
@threadlinqs.bsky.socialOct 9, 2026, 11:13 PM

Phishing now arrives from DocuSign, QuickBooks and Dropbox themselves - and passes SPF, DKIM and DMARC. https://intel.threadlinqs.com/threat/TL-2026-3167 #ThreatIntel #Smash #AnyDesk #ScreenConnect

Legitimate-Service Phishing (Living Off Trusted Services): ~10% of Threat Emails Abuse Trusted Platforms Such as DocuSign, QuickBooks, Adobe and Dropbox
@securityonline.bsky.socialOct 9, 2026, 6:16 AM

A Power BI phishing campaign uses Microsoft's real domain to install rogue ScreenConnect clients. Learn how it works and how to block it.

#PowerBI #Phishing #ScreenConnect #RMM #RemoteAccess #EmailSecurity #Huntress #CyberSecurity

@cyberveille-ch.bsky.socialOct 7, 2026, 10:30 PM

📢 Campagne de phishing abuse Microsoft Power BI pour déployer des RMM ScreenConnect malveillants

Cet article publié le 7 octobre 2026 par Huntress (blog.huntress.com) documente une campagne de phishing observée à partir du 10…

🟢 vérification factuelle haute
#PowerBI #ScreenConnect #Cyberveille

@threadlinqs.bsky.socialOct 7, 2026, 1:25 PM

A legit Power BI page is the lure - then two rogue ScreenConnect clients quietly take over. https://intel.threadlinqs.com/threat/TL-2026-2998 #ThreatIntel #ConnectWise #HideUL #ScreenConnect

Phishing Campaign Abuses Microsoft Power BI to Deploy Rogue ScreenConnect RMMs
@thedailytechfeed.comOct 5, 2026, 12:36 PM

Signed ScreenConnect used in phishing ploy: PDF promise hides remote access installer. #Security #CyberAttack #Phishing #ScreenConnect #RemoteAccess #ThreatIntel https://thedailytechfeed.com/phishing-attack-leverages-valid-screenconnect-client-to-enable-remote-takeover/

@threadlinqs.bsky.socialOct 5, 2026, 12:11 PM

A validly signed ScreenConnect installer, posing as a PDF, hands attackers remote access. No malware needed. https://intel.threadlinqs.com/threat/TL-2026-2931 #ThreatIntel #ConnectWise #ScreenConnect #WireTransferPhish

Phishing Campaign Abuses Legitimate ScreenConnect Client for Remote Access via Fake Payment Notification
@hacks.grOct 5, 2026, 11:39 AM

A fake payment email linked to genuine ScreenConnect software, configured to connect to an account controlled by the senders.

The software was real; th…

https://en.hacks.gr/pseytiko-email-gia-pliromi-5-745-65-dolarion-odigoyse-sti-lipsi-toy-screenconnect/

#ScreenConnect #ConnectWise #RemoteAccess

Ψεύτικο email για πληρωμή 5.745,65 δολαρίων οδηγούσε στη λήψη του ScreenConnect
@hacks.grOct 5, 2026, 6:02 AM

A fake $5,745.65 payment email promised a PDF but downloaded ConnectWise ScreenConnect instead.

If inst…

https://en.hacks.gr/pseytiko-email-gia-pliromi-5-745-65-dolarion-odigoyse-se-programma-poy-mporoyse-na-dosei-stoys-drastes-ton-elegcho-toy-ypologisti/

#ScreenConnect #ConnectWise #RemoteAccess

Ψεύτικο email για πληρωμή 5.745,65 δολαρίων οδηγούσε σε πρόγραμμα που μπορούσε να δώσει στους δράστες τον έλεγχο του υπολογιστή
@securityonline.bsky.socialOct 2, 2026, 6:13 AM

A new campaign shows how phishing abuses RMM tools for access. See how phishing abuses RMM tools like MSP360 to install ScreenConnect clients.

#RMMAbuse #Phishing #MSP360 #ScreenConnect #CyberSecurity

@cyberveille-ch.bsky.socialOct 1, 2026, 5:00 PM

📢 CVE-2026-84869 : vulnérabilité critique dans ScreenConnect exploitée activement

Cet article analyse la vulnérabilité CVE-2026-84869 affectant ConnectWise ScreenConnect, un outil de gestion à distance largement utilisé…

🟡 vérification factuelle moyenne
#ScreenConnect #ConnectWise #Cyberveille

@threadlinqs.bsky.socialOct 1, 2026, 6:48 AM

A validly signed ScreenConnect installer is the payload - no malware needed, just a rigged config. https://intel.threadlinqs.com/threat/TL-2026-2826 #ThreatIntel #ScreenConnect #ConnectWise #Mejuri

ScreenConnect Client Abused by Attackers via Mejuri-Themed Payment Receipt Phishing
@hendryadrian.bsky.socialSep 30, 2026, 8:45 PM

Microsoft warns of phishing campaigns abusing a signed MSP360 installer disguised as invites, PDFs, and update prompts. After install, attackers deploy ScreenConnect for persistent remote access and credential theft. #MSP360 #ScreenConnect #RMM

@thedailytechfeed.comSep 30, 2026, 4:40 PM

Phishing crews are abusing MSP360 to install ScreenConnect and get hidden remote access. #Security #RMM #Phishing #MSP360 #ScreenConnect #CyberThreats #RemoteAccess #DualRMM https://thedailytechfeed.com/phishing-gang-misuses-msp360-to-install-screenconnect-behind-the-scenes/

@thedailytechfeed.comSep 30, 2026, 3:25 PM

Remote tools like MSP360 and ScreenConnect are now used in phishing disguises—Zoom or PDF installs mask full control of PCs. #RemoteAccess #Cybersecurity #MSP360 #ScreenConnect #Phishing https://thedailytechfeed.com/hackers-masquerade-remote-access-tools-as-zoom-pdf-to-hijack-pcs/

@threadlinqs.bsky.socialSep 30, 2026, 11:51 AM

CSuite phishing steals M365 tokens via device-code flow, then plants ScreenConnect RMM for hands-on access. https://intel.threadlinqs.com/threat/TL-2026-2802 #ThreatIntel #ScreenConnect #Action1 #Atera

CSuite Phishing Operation Steals Microsoft 365 Sessions via Device-Code Phishing and Deploys ScreenConnect/Action1 RMM Tools Against US and EU Organizations
@threadlinqs.bsky.socialSep 29, 2026, 11:42 PM

Signed RMM tools as malware: phishing installs MSP360, then silently adds ScreenConnect. https://intel.threadlinqs.com/threat/TL-2026-2788 #ThreatIntel #MSP360 #ConnectWise #ScreenConnect

Phishing Campaigns Abuse RMM Tools (MSP360, ScreenConnect) for Persistent Access
@bomccss.bsky.socialSep 29, 2026, 9:37 AM

正規ツールの悪用 #ScreenConnect
■通信先
hxxp[:]//52.197.194[.]156:8040/Bin/ScreenConnect.ClientSetup.msi
■C2
52.197.194[.]156:8041

引用元:
x.com/tdatwja/stat...

@bomccss.bsky.socialSep 29, 2026, 9:37 AM

■ダウンロード
20260928PFD.iso -> g2m.dll, 202609PDF.exe
www.virustotal.com/gui/file/149...
tria.ge/260929-kvltx...
app.any.run/tasks/516a40...
正規ツールの悪用 #ScreenConnect
20260929PDF.iso -> g2m.dll, 202609PDF.exe
www.virustotal.com/gui/file/8a8...
tria.ge/260929-kmvf4...
app.any.run/tasks/4b1d77...

@threadlinqs.bsky.socialSep 27, 2026, 5:06 PM

One phishing kit reads your OS then picks: RMM malware, iCloud phish, or a live MFA-stealing bot. https://intel.threadlinqs.com/threat/TL-2026-2704 #ThreatIntel #ScreenConnect #smokeiT_bot #dswagofficebot

OS-Aware Phishing Kit Fans Fake iCloud Alert into ScreenConnect RMM, Apple ID, and M365 AiTM Harvesters
@hendryadrian.bsky.socialSep 25, 2026, 11:00 AM

Fake desktop app pages for US payroll and HR platforms lured users into installing ScreenConnect, giving attackers hidden remote access and a path to divert paychecks. #PayrollFraud #ScreenConnect #US

Load more