Securityaffairs.Co
Phishing Campaign Exploits Fake Security Incident Report Targeting Crypto Users
First seen 17 Feb 2026, 14:11 UTC
•



•24.3
Export
Article Content
Browse articles
A phishing campaign has been identified that uses a fake PDF security incident report hosted on AWS to trick victims into enabling two-factor authentication (2FA). The campaign specifically targets Metamask users, a popular crypto wallet, and has been described as poorly crafted. Freelance security consultant Xavier Mertens reported the incident, highlighting the tactics used by the attackers.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-02-17
Phishing campaign reported using fake PDF incident report
2026-02-17
Phishing email targets Metamask users
More articles in this cluster
Continue Reading
Gamaredon Exploits WinRAR Vulnerability in Ongoing Ukraine Campaign
Malware Spread via Fake Polymarket Trading Bot Targets DeFi Developers
Red Menshen APT Uses BPFdoor for Long-Term Espionage in Telecom Networks
APT41 Exploits Cloud Services with New Zero-Detection ELF Backdoor
Google and FBI Disrupt NetNut Proxy Network Linked to 2 Million Devices
Drone Strikes Disrupt AWS Infrastructure, Trigger Cybersecurity Crisis for MSPs