Fake Fedex Email Delivers Donuts!, (Fri, Feb 27th)

2026-03-02T01:23:44Z63ccb24cbcf1fa39ad7f69ceb3f30d10425b91ad540b0f6cd788e3e5fc48b0f2
ai-assistanceemail-securityhoneypotmalicious-jpegmalspammalwaremsiopen-redirectowaspphishingsocial-engineeringsteganographysupply-chainthreat-intel

What happened

SANS ISC diary roundup (late Feb 2026) covering multiple security topics: a phishing campaign spoofing FedEx that delivered malware via an unexpected payload (not a simple credential‑harvesting login page); ongoing malspam campaigns delivering malicious JPEGs/MSI images with embedded payloads; discussion of forgotten open‑redirect vulnerabilities and their abuse cases; guest diaries on running honeypots with AI assistance and a conceptual framework (CLAIR) for mapping infrastructure interdependencies; plus regular ISC Stormcast podcast links. No specific CVEs referenced.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
63ccb24cbcf1fa39ad7f69ceb3f30d10425b91ad540b0f6cd788e3e5fc48b0f2
Enrichment time
2026-03-02T01:23:44Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.