social-engineering
Safeguard articles tagged "social-engineering" — guides, analysis, and best practices for software supply chain and application security.
17 articles
Microsoft Teams Vulnerability: External Tenant Attacks and the Collaboration Security Gap
Researchers demonstrated that Microsoft Teams' default configuration allowed external attackers to deliver malware directly to employees, bypassing email security controls entirely.
Email Security and Supply Chain Phishing Attacks
Phishing remains the top initial access vector for supply chain attacks. Targeted emails against developers, maintainers, and DevOps engineers open the door to code injection, credential theft, and pipeline compromise.
Aflac and the Scattered Spider Insurance Pivot: June 2025
In June 2025 Scattered Spider pivoted from UK retail to US insurance, hitting Erie Insurance, Philadelphia Insurance, and Aflac inside a week. Aflac later confirmed 22.6 million people affected. We unpack the campaign.
Mailchimp Social Engineering Breach: How an Employee Hack Compromised Crypto Customers
A social engineering attack on Mailchimp employees gave attackers access to internal tools, which they used to target cryptocurrency companies and their customers in a downstream phishing campaign.
Robinhood Data Breach: Social Engineering Strikes the Trading Platform
A social engineering attack on a Robinhood customer support employee exposed personal data of approximately 7 million users, revealing the persistent vulnerability of human-facing systems.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.