← All stories
● Covered by 1 source · 1 reportMedium impact1 neutral

ReliaQuest employee targeted in social engineering attack by ShinyHunters

🔄 Updated 1h ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • ShinyHunters impersonated a security team member to target ReliaQuest employees.
  • An employee entered credentials on a fake SSO page and approved an MFA notification.
  • Attackers gained temporary, view-only access to an identity dashboard.
  • Device-trust controls blocked access to applications and customer data.

Social Engineering Attempt on ReliaQuest

Cybersecurity company ReliaQuest confirmed that one of its employees was targeted in a social engineering attack. Attackers, identified as the ShinyHunters extortion gang, impersonated a member of ReliaQuest's security team and called multiple employees, attempting to trick them into accessing a fake single sign-on (SSO) page.

Attack Vector and Initial Access

The attackers hosted a phishing page on a lookalike domain, reliaquest.claims, and used the name of a real security employee during the vishing attempts. One targeted employee entered their credentials on the fake SSO page and approved an MFA push notification, granting the attacker temporary, view-only access to ReliaQuest's identity dashboard.

Security Controls Prevented Further Breach

Despite gaining initial access to the identity dashboard, ReliaQuest's device-trust controls successfully blocked subsequent attempts by the threat actor to access applications through the dashboard. The company stated that no ReliaQuest applications or systems were accessed, and no customer data was compromised. The firm terminated the attacker’s sessions, revoked the exposed password, and reset all authentication tokens.

Investigation Findings

An investigation following the incident found no evidence of access to other accounts, applications, or data. There were also no signs that the attacker established persistence on ReliaQuest’s systems. The company audited its control fidelity and device trust to confirm the effectiveness of its security measures.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~7 min · 6 stories · Aug 24

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Cybersecurity firm ReliaQuest confirmed that an employee was targeted in a social engineering attack by the ShinyHunters group, which attempted to gain access to internal systems. Although one employee entered credentials on a fake SSO page, device-trust controls prevented the attackers from accessing applications or customer data. This incident highlights the ongoing threat of social engineering and the importance of multi-layered security controls.