@BSidesTO is one of my favorite local security conferences. The defensive research and community discussions here are always top-tier.
Baris, Nicole, and I will be at the conference over the next two days. If you are tracking phishing kits, credential abuse, or platform security, let’s chat.
When coordinated scam networks targeted @FlareNetworks with up to 126 impersonation threats a day, manual reporting could not keep up.
By pairing automated syndicate clustering with direct platform escalation and wallet-level blocking, Flare drove an 80%+ drop in daily threats.
Read the case study: https://t.co/0gWNAVXu3g
Back at Remix Jam in Toronto today! 🇨🇦
Best rooms are always the ones full of people who care about routing, web standards, and shipping fast.
If you're building on Remix, come find me. Happy to talk frameworks, real-time security, or anything in between.
Some scam sites never mention the brand name they're copying.
No imitation in the domain text or on the page. Just your icon in the browser tab, known as a favicon.
We now flag these fake domains by the favicon itself.
As a high-throughput Layer 1 blockchain built for global adoption, @SuiNetwork has a fast-growing ecosystem of builders, creators, and DeFi users, and we are proud to protect their community from impersonation and phishing threats across the web.
Together, we've blocked 3,023 threats. The largest share (50%) were web domains and URLs, plus 23% on Twitter / X, 7% on Medium, 6% on Telegram, 5% on YouTube, 3% malicious on-chain addresses, and 5% across other platforms.
Scammers pay for ad space on Facebook to push a fake "wallet security update" or notify users of a “mandatory migration.”
495 of these have been taken down in the past week for just one of our clients.
It might look legitimate, but no ad, or update requires your recovery phrase.
Legitimate companies will never ask you to run unverified scripts or open password-protected zip files for a job interview.
Threat actors routinely impersonate recruiters, executives, and team members to target developers and talent with malware. Protecting your organization means detecting and taking down fake recruiter profiles and impersonating accounts before scammers weaponize your company's reputation.
We recently saw a very convincing scam impersonating the RCMP.
You get a call claiming your name was found on the device of an arrested criminal, and that your credentials are likely at risk.
A professional sounding agent calms you down, and says that first they will send you a confirmation email to prove their identity.
This of course comes from a fake domain, not the official site itself.
The combination of being hit across multiple channels is what get's many people, bypassing the initial wave of suspicion.
Your personal information is precious, and examples like this are exactly why it needs to be protected
With Cybersecurity Awareness Month right around the corner, here is a question every security team should be asking:
If a threat actor cloned your website or created a fake executive profile right now, how long would it take for your team to find out?
For many organizations, the answer is: when a customer reports they lost money.
Traditional security tools monitor what enters and leaves internal networks. But impersonation happens out in the open: on search engines, newly registered domains, mobile app stores, and messaging apps.
Real security readiness means finding and removing external threats before they turn into customer support crises.
That free Claude Max offer isn't real, and that Google login window isn't either.
Scammers are using a fake "10,000 free months of Claude Max" giveaway to lure users into a Browser-in-the-Browser trap. Every path forces a popup drawn directly onto the page, complete with a fake address bar and padlock to harvest Google credentials.
Here is how the campaign works 👇
Over 49,000 gamers searching for @FACEIT are exposed to malicious impersonations every month.
We mapped an active network across 8 platforms, identifying 22 distinct threats:
- Fake "Go Verify Yourself" portals designed to steal account credentials
- Cloned support profiles intercepting players looking for help
- Fraudulent skin giveaways baiting clicks on social feeds
Here is what our team uncovered 👇
Don't call a support number just because it showed up first in a Google search.
We tracked a scam campaign that got fake hotline numbers ranking on page one using 1000s of throwaway videos all stuffed with phrases like “24/7 Support” and “Account Recovery” to game Google’s SEO.
We took down 1,500+ of these fake videos just in the last week.
Purpose-built for the future of gaming, @Ronin_Network has a thriving, highly active global player community, and we are proud to protect their players, developers, and ecosystem assets 24/7.
Together, we've blocked 435 threats. The largest share (42%) were malicious web domains and phishing URLs, plus widespread impersonation attacks across Telegram, X, on-chain drainer addresses, and Meta platforms.
We're proud to work with @Compound_xyz, one of DeFi's most established lending protocols, to protect its community from phishing and impersonation across the web.
Fake domains and fraudulent Medium articles made up nearly two-thirds of all threats blocked, followed by impersonation accounts on X at 24%.
Capital moves fast. So do we.
If you have ever seen a warning screen like this, you have seen real-time ecosystem defense in action🛡️
By partnering directly with 20+ leading wallets, including MetaMask, Phantom, and Coinbase Wallet, we sync verified threat blocks across the ecosystem in minutes.
After 4.3 billion automated rules checked this week, our system ran out of room to count higher.
That's the max value a standard integer counter holds.
In a single day, we rebuilt the counter architecture to scale for more checks without slowing down our threat monitoring system.
On to the next 4 billion.
LATAM DIGITAL ASSETS CONF
We grabbed a few minutes with Juan Paradela from @ChainPatrol during the conference.
ChainPatrol protects crypto brands and their users from phishing and impersonation, scanning domains and social platforms for fake sites and accounts, filing the takedowns, and feeding blocklists integrated into wallets and browsers.
We'll be at @EBlockchainCon in Barcelona 🇪🇸
Connecting with founders, catching panels, and diving into Web3 brand security, institutional adoption, and digital assets.
📅 September 16-17, 2026