Security Advisories

Active threat alerts and phishing campaign analysis from the OpenEFA® security team.

Threat Type: Severity:
  • Lowe's "Kobalt Tool Set" Prize Phishing Scam Phishing Brand Impersonation High ✓ Actively Blocked NEW
    April 17, 2026 | Spoofed Lowe's <offers@lowes.com> "Congratulations, you've been selected for a Kobalt Tool Set" campaign — also rotating through Gorilla Carts and Kobalt Garden Tool Set variants. UK-origin infrastructure, fails SPF/DKIM/DMARC. Active since March 20, 2026. Do not release from quarantine.
  • IRS & Tax-Season Phishing Scams Phishing Smishing High ✓ Actively Blocked
    April 13, 2026 | Fake refund notices, CP-series balance-due impersonation (CP14/CP2000/CP501/CP504), tax-preparer credential theft, and "IRS agent" SMS/call-back scams surging around the April filing deadline. Demands gift cards, crypto, or bank details under threat of arrest or asset seizure.
  • Named-Target Sextortion Scams Phishing Extortion High ✓ Actively Blocked
    April 13, 2026 | Personalized extortion emails using your real name in the subject line, harvested from data breaches. Attackers claim to have compromising video from your webcam and demand Bitcoin payment under a 24-72 hour deadline. The threat is almost always empty — no video, no webcam access, pure social engineering.
  • Fake DMV & Toll Fee Scams — Government Impersonation Campaign Smishing Phishing High ✓ Actively Blocked
    April 8, 2026 (Updated) | Multiple campaigns impersonating state DMVs, courts, and toll agencies with fake parking ticket and toll fee notices via SMS and email. Threatens bench warrants, license suspension, late charges, and court involvement to pressure victims into clicking malicious links.
Daily Threat Brief

Real-time threat intelligence aggregated from OpenEFA, CISA, Abuse.ch, and SANS ISC. Updated daily.

View Today's Brief
About This Page

OpenEFA publishes security advisories when we identify significant phishing, smishing, malware, or BEC campaigns. These alerts help our customers and the broader community stay informed about active threats.

Threat Types
Protected by OpenEFA

Our AI-powered email security platform detects and blocks the threats described in these advisories.

Learn More