Trust Becomes the New Attack Surface in Cybersecurity

Trust Becomes the New Attack Surface in Cybersecurity

First seen 4 Aug 2026, 12:18 UTC DarktraceInfosecurity-Magazinewww.infosecurityeurope.com 86% similarity 69.5

Article Content

Browse articles
ThreatCluster

In the first half of 2026, attackers increasingly targeted cloud and SaaS environments, shifting focus from traditional malware to compromising trusted identities. Darktrace reported that 67% of phishing emails passed DMARC, indicating that authentication alone is insufficient. The rise in sophisticated phishing tactics included 39% utilizing novel social engineering techniques, with VIP users targeted in 25.8% of cases. Notable incidents included the exploitation of trusted digital supply chains, such as the Axios compromise, which allowed attackers to distribute remote access trojans. The trend highlights that trust is now a significant vulnerability, with attackers inheriting trust through compromised identities and legitimate tools. The overall impact has been widespread, affecting organizations across multiple sectors, particularly in the United States.

Key Points: • 67% of phishing emails passed DMARC, indicating a shift in attack sophistication. • Attackers are increasingly exploiting trusted identities in cloud and SaaS environments. • The Axios compromise exemplifies how trust can be abused in digital supply chains.

ThreatCluster AI How this analysis works

Timeline

2026-01-01
Shift in attack vectors observed
Attackers moved from malware exploitation to compromising trusted identities and platforms.
Darktrace
2026-04-01
Axios compromise reported
Attackers exploited trust in a widely used maintainer to spread remote access trojans.
Infosecurity-Magazine
2026-08-03
Darktrace report published
Darktrace released findings on the evolving threat landscape, emphasizing trust as a new attack surface.
Darktrace

Community

Browse all →