Skip to content

Sam's News — email-security — 2026-08-15

Security

7 NSA and Partners Alert Zimbra Users of Russian State-Sponsored Phishing Campaign

The NSA released a cybersecurity alert warning Zimbra Collaboration Suite users of an ongoing Russian state-supported phishing campaign.

Sources: National Security Agency (NSA) (.gov) Web Search Update to: NSA Alerts Zimbra Users to Russian State-Supported Phishing Campaign

6.5 RecruitTrap Campaign Uses 3,000+ Phishing URLs with Browser-in-the-Browser Attacks

CTM360 uncovered RecruitTrap, a phishing campaign using over 3,000 URLs and browser-in-the-browser tactics to steal credentials and intercept MFA.

Sources: The Hacker News Web Search, The Hacker News Web Search Update to: CTM360 Uncovers 3,000+ Recruitment Phishing URLs Using Browser-in-the-Browser Attacks

6 Cisco Email Threat Defense Achieves FedRAMP High Certification

Cisco's Secure Email Threat Defense earned FedRAMP Class D (High) certification, validating compliance for federal use.

  • Cisco Secure Email Threat Defense officially achieved FedRAMP Class D (High) certification on August 10, 2026
  • FedRAMP authorization requires stringent security controls, continuous monitoring, and independent third-party assessments
  • The solution uses AI-powered detections and can operate as an API-based supplemental control or inline gateway-level protection
  • Certification enables use with classified and controlled unclassified information (CUI) and mandates continuous authorization rather than one-time audit

Sources: Cisco Blogs Web Search Update to: Cisco Secure Email Threat Defense Achieves FedRAMP Class D (High) Certification

5.5 Email security requires operational resilience alongside detection

Managed service providers are redefining email security strategy to prioritize operational resilience when threats bypass detection systems.

Sources: ChannelE2E Web Search

5.5 Business Email Compromise Attacks Often Begin With Credential Theft, Not Malicious Email

Group-IB research shows most BEC attacks start with stolen credentials, enabling early threat detection via threat intelligence.

Sources: Group-IB Web Search Update to: Business Email Compromise Detection via Stolen Credential Threat Intelligence

5.5 Security Awareness Training Significantly Reduces Phishing Attack Success Rates

Security awareness training mitigates human error, which accounts for roughly 95% of breaches according to IBM data.

Sources: EdTech Magazine Web Search Update to: Security Awareness Training Significantly Reduces Phishing Attack Success

Q2 2026 email threat landscape report shows ongoing impacts from Microsoft's Digital Crimes initiative.

Sources: Microsoft Web Search

5 2026 Email Security Report Explores AI's Impact on Phishing and Defense

New email security report examines how AI is transforming both phishing attacks and defensive strategies for 2026.

Sources: Kaseya Web Search

4.5 Jersey Issues Phishing Warning After Cyber Attack Affects Multiple Organizations

Several Jersey organisations hit by cyber attack, prompting public warning of increased phishing email risk.

Sources: Channel Eye Web Search Update to: Jersey organizations hit by cyber attack; phishing threat warning issued

4.5 Phishing Protection Software Helps K–12 Schools Defend Against Email Threats

K–12 schools deploy phishing protection software as students, teachers, and staff increasingly rely on email communication.

Sources: Security Boulevard Web Search