Cybersecurity company ReliaQuest confirmed that one of its employees was targeted in a social engineering attack. Attackers, identified as the ShinyHunters extortion gang, impersonated a member of ReliaQuest's security team and called multiple employees, attempting to trick them into accessing a fake single sign-on (SSO) page.
The attackers hosted a phishing page on a lookalike domain, reliaquest.claims, and used the name of a real security employee during the vishing attempts. One targeted employee entered their credentials on the fake SSO page and approved an MFA push notification, granting the attacker temporary, view-only access to ReliaQuest's identity dashboard.
Despite gaining initial access to the identity dashboard, ReliaQuest's device-trust controls successfully blocked subsequent attempts by the threat actor to access applications through the dashboard. The company stated that no ReliaQuest applications or systems were accessed, and no customer data was compromised. The firm terminated the attacker’s sessions, revoked the exposed password, and reset all authentication tokens.
An investigation following the incident found no evidence of access to other accounts, applications, or data. There were also no signs that the attacker established persistence on ReliaQuest’s systems. The company audited its control fidelity and device trust to confirm the effectiveness of its security measures.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Cybersecurity firm ReliaQuest confirmed that an employee was targeted in a social engineering attack by the ShinyHunters group, which attempted to gain access to internal systems. Although one employee entered credentials on a fake SSO page, device-trust controls prevented the attackers from accessing applications or customer data. This incident highlights the ongoing threat of social engineering and the importance of multi-layered security controls.