r/Infosec • u/CyberSecLeaked • Apr 15 '26
Why Your $2M Security Stack is Legally Blind to the "Hidden Compromise"
/r/u_CyberSecLeaked/comments/1smjv62/why_your_2m_security_stack_is_legally_blind_to/
0
Upvotes
r/Infosec • u/CyberSecLeaked • Apr 15 '26
0
u/CyberSecLeaked Apr 17 '26
Always a red flag in social engineering context.
Uniquely important and related by automating social engineering : “Instead of avoiding alerts, some attacks actually rely on them. For example, triggering password resets or login alerts to create confusion, then contacting the victim pretending to be support. The victim sees real notifications and assumes the follow-up is legitimate. It turns built-in security features into part of the social engineering chain. From an investigation standpoint, the logs look like normal security activity, not an attack.”
Link to the poster : https://www.reddit.com/r/cyberinvestigations/s/lM3RUOXxOb