Telephone-Oriented Attack Delivery — Campaign Analysis & Threat Activity

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
November 18, 2025
Last Seen
November 18, 2025

Telephone-Oriented Attack Delivery (TOAD) is a threat campaign pattern that uses multi-channel social engineering, often incorporating voice-based outreach and credible-looking enterprise signals to deliver credentials or access tokens.

Overview

Telephone-Oriented Attack Delivery (TOAD) is a threat campaign pattern that uses multi-channel social engineering, often incorporating voice-based outreach and credible-looking enterprise signals to deliver credentials or access tokens. Recent campaigns exploit legitimate workflows and brand assets to improve plausibility, making credential theft and account compromise more likely. Its significance lies in combining trusted identity mechanisms with persuasive social engineering to bypass user skepticism and security controls.

Related Threat Clusters

Recent Intelligence Reports

  • Microsoft Entra guest invites harnessed in new phishing campaign — Scworld · November 18, 2025

CVSS v3.1 Breakdown