{
  "id": 8240606,
  "title": "Keep seeing strange meetings and events in your calendar? It might be because calendar-based phishing has jumped 33,000% since May — and they work even if the email is sent to spam",
  "url": "https://urgent.news/2026/09/18/keep-seeing-strange-meetings-and-events-in-your-calendar-it-might-be",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-18T11:30:00.000Z",
  "source": {
    "name": "TechRadar",
    "slug": "techradar",
    "url": "https://www.techradar.com/pro/security/keep-seeing-strange-meetings-and-events-in-your-calendar-it-might-be-because-calendar-based-phishing-has-jumped-33-000-percent-since-may-and-they-work-even-if-the-email-is-sent-to-spam"
  },
  "original_language": "en",
  "account": "Cybersecurity researchers Sublime have warned that calendar-based phishing attacks are surging by around 33,000% since May 2026. These attacks exploit calendar files (.ics) to trick users into downloading malicious remote management and monitoring (RMM) tools like ScreenConnect. Sublime's report indicates that this type of phishing has finally \"hit the mainstream\".\n\nThe attackers use free services like Gmail to send calendar invites to targets. Since both services are legitimate and free, the attacks bypass most email security filters and can be conducted at scale with minimal cost. The victim is exposed to the attack twice: once in their inbox and once in their calendar.\n\nInside the calendar invite, there is usually a link to download the malicious RMM tool. Once downloaded, the attackers can take over the compromised endpoint, deploying additional malware such as infostealers or ransomware, and stealing passwords, documents, and other valuable secrets.\n\nThe popularity of these attacks has been increasing rapidly. Between May and June, there was a 282% increase, and between June and July, a 338% increase. In just the first half of September, there was a 1,426% rise over the full month of August. According to Sublime, the increase from May to September is projected to be around 33,000%.\n\nTo defend against these attacks, users should be vigilant for suspicious calendar invites, suspicious senders, and other red flags such as financial urgency or pressure to act quickly.",
  "summary": "ICS phishing has finally \"hit the mainstream\" as it keeps rising in popularity month over month.",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}