Cybersecurity News
Filters
Filtered by tag: calendar security × Clear
'It is significant, and it’s something many organisations haven't accounted for': The phishing threats hiding in your calendar invites
Hackers are increasingly using calendar invites and .ics files as phishing vehicles, exploiting the trust users place in scheduling tools. Unlike emails, calendar entries are added automatically, persist even after source emails are deleted, and often escape traditional security inspection. They can contain malicious links, QR codes, and fake branding. Experts recommend treating .ics files like attachments, using phishing-resistant MFA, and training staff to question unexpected calendar-based HR or payroll notifications.
