Lighthouse is a threat campaign tracked across 15 threat clusters and 24 intelligence report mentions on ThreatCluster. First observed November 12, 2025; most recent activity June 13, 2026.
Lighthouse is a phishing-as-a-service (PaaS) platform used to orchestrate large-scale text-based (smishing) phishing campaigns. Operators linked to China provide turnkey infrastructure for scammers, including messaging workflows and targeting, and Google has moved to dismantle the operation via civil litigation; the case highlights the commoditization of social-engineering fraud and the impact of enforcement on SMS-based fraud ecosystems.
Google has filed a lawsuit against the 'Outsider Enterprise', a China-based cybercrime network, for allegedly using AI tools, including its Gemini platform, to conduct large-scale phishing operations. The operation has…
On May 18, 2026, the Verus Ethereum Bridge was exploited, resulting in the theft of approximately $11.58 million in assets, including ETH, tBTC, and USDC. The attack was identified by Blockaid, which reported that the…
A study by Semperis reveals that 52% of ransomware attacks target organizations during holidays and weekends, exploiting reduced cybersecurity staffing. The report surveyed 1,500 IT and security professionals across ten…
On March 16, 2026, law enforcement agencies from the U.S., U.K., and Canada launched Operation Atlantic, targeting approval-phishing scams that have defrauded cryptocurrency users. The operation involves the U.S. Secret…
Researchers have identified Denial of Service (DoS) vulnerabilities in the Socomec DIRIS M-70 IIoT power meter through thread emulation and fuzzing techniques. The vulnerabilities affect devices facilitating data…
Google has initiated legal action against a group of Chinese hackers known as the Smishing Triad, responsible for operating the Lighthouse phishing platform. This platform utilized over 194,000 malicious domains to…
Law enforcement and cybersecurity firms have launched intensified operations against cybercrime, focusing on sophisticated malware networks and supply chain attacks. Collaborators including CrowdStrike, Europol, and the…
Europol and law enforcement agencies from 11 countries executed Operation Endgame 3.0 from November 10 to 13, 2025, dismantling the infrastructure of three major malware operations: Rhadamanthys, VenomRAT, and Elysium.…
The Boston Police Department has issued a warning about an increase in charity and phishing scams as the holiday season approaches. Scammers are expected to send messages disguised as coming from trusted companies like…
During Black Friday 2025, shoppers in Europe and the US are facing a significant increase in online scams, with cybercriminals impersonating major brands to exploit consumers. Action Fraud reports that £11.8 million was…