No-frills tech news

After Reviewing Every <b>Cybersecurity</b> ETF These 3 Capture the Full Stack Most Investors Miss

Enterprise cybersecurity budgets are on track to reach $215 billion in 2026, according to Gartner, as AI-powered phishing, prompt-injection attacks against language models, and tighter CISA disclosure rules push security spending higher across every industry. For investors who want broad exposure without picking individual winners between endpoint, network, identity, and cloud security vendors, three ETFs dominate the category: the Global X Cybersecurity ETF (NASDAQ:BUG), the First Trust NASDAQ Cybersecurity ETF (NASDAQ:CIBR), and the Amplify Cybersecurity ETF (NYSEARCA:HACK). Each fund covers the same theme through a different lens. BUG runs a concentrated, modified equal-weighted portfolio of roughly 25 pure-play names. CIBR uses a market-cap weighted approach that pushes Palo Alto Networks and CrowdStrike to the top. HACK, the original cybersecurity ETF launched in 2014, blends pure-plays with IT services and consulting firms that handle security work for federal clients. Year to date, CIBR is up 32%, HACK is up 28%, and BUG is up 27%. Why the full security stack matters now A modern enterprise breach rarely starts and ends within a single product category. An attacker uses a deepfake voice call to phish credentials, pivots through an identity provider, exfiltrates data through an unmonitored cloud bucket, then disables backups. Defending against that chain requires endpoint detection, network segmentation, identity governance, cloud posture management, and data resilience tools, often from different vendors. A cybersecurity ETF gives an investor exposure to the whole chain rather than a bet on which vendor wins each layer. The largest funds disagree on which layer matters most, which is why holdings overlap less than the shared theme suggests. Picking among them comes down to how much concentration an investor wants in two mega-cap names, how much diversification into adjacent IT services is acceptable, and whether smaller pure-plays should pull weight equal to the giants. Global X

Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories

A security researcher found a flaw in Anthropic's Claude Code GitHub Action that let an attacker take over vulnerable public repositories running it, with nothing more than a single opened GitHub issue. Because Anthropic's own action repo used the same workflow, a working attack could have pushed malicious code into the action itself and onto the projects downstream that pull it. RyotaK of GMO Flatt Security reported the core bypass to Anthropic in January, and Anthropic fixed it within four days, with further hardening through the spring; the fixes are in claude-code-action v1.0.94. Anthropic rated the issues 7.8 under CVSS v4.0 and paid a bug bounty. Claude Code GitHub Actions drops Claude into CI/CD pipelines to triage issues, slap on labels, review pull requests, or run slash commands. By default, the workflow gets read and write access to a repo's code, issues, pull requests, discussions, and workflow files. Because those permissions are broad, the action is supposed to be picky about who can trigger it: only users with write access. The trigger check had a hole. It waved through any actor whose name ended in [bot], on the assumption that GitHub Apps are trusted things admins install. Trouble is, anyone can register a GitHub App, install it on a repo they own, and use its token to open an issue or pull request on any public repository. The action saw "a bot" and let the attacker's content through. Tag mode had an extra check to confirm the actor was a real human; agent mode didn't, which left it open. From there, the attacker leans on indirect prompt injection, the trick of planting instructions inside content that an AI reads so the model follows them instead of its actual task. RyotaK wrote an issue whose body looked like an error message,

Audit Identifies 8 Improvement Areas in DOE <b>Cybersecurity</b> &amp; IT Governance Program

- DOE OIG has identified eight areas for improvement in cybersecurity and IT governance - KPMG has issued 11 recommendations to strengthen oversight, risk management and compliance - The 2026 FedCiv Summit will cover AI, cybersecurity, cloud and more The Department of Energy’s Office of Inspector General said an independent audit conducted by KPMG examined the department’s cybersecurity and IT governance program and identified eight areas for improvement. As DOE works to strengthen cybersecurity governance, risk management and compliance across the enterprise, federal leaders continue to focus on the technologies and strategies needed to modernize government operations. Attend the 2026 FedCiv Summit on Oct. 29, where discussions will cover powering and scaling AI across the government; data, cloud and compute infrastructure; cybersecurity and compliance-driven initiatives; and cross-agency and enterprise-wide programs. Save your spot now! OIG said Tuesday the audit assessed whether DOE developed and implemented a governance structure for its cybersecurity and IT activities. The watchdog also reviewed KPMG’s work and reported no instances in which the audit firm failed to comply with generally accepted government auditing standards in any material respect. What Did the DOE OIG Find? KPMG identified eight areas for improvement related to DOE’s cybersecurity and IT governance program. The audit found issues involving outdated contracts, policies and requirements to include standard terms and conditions for prime contractors and subcontractors. KPMG also reported that DOE had not fully implemented a risk monitoring program, an enterprise data strategy or a comprehensive enterprise information system inventory that includes systems containing personally identifiable information. In addition, the audit identified areas requiring improvement to ensure compliance with federal requirements, create a comprehensive workforce assessment and verify the accuracy and completeness of data requests submitted by DOE elements. What Recommendations Did KPMG Make? KPMG offered 11 recommendations to address the eight areas

#anthropic #claudemythos #projectglasswing #ai #<b>cybersecurity</b> #technews #indiatech ...

BIG TECH EXCLUSIVE: Anthropic is widening its top-secret "Project Glasswing," and India just made the cut. A select group of Indian financial and cybersecurity entities are getting early preview access to "Claude Mythos"—Anthropic's powerful next-gen model designed to stress-test cyber vulnerabilities and defend against emerging bioweapon threats. Ashmit Kumar #Anthropic #ClaudeMythos #ProjectGlasswing #AI #Cybersecurity #TechNews #IndiaTech #ArtificialIntelligence #CNBCTV18Digital CNBC-TV18’s Post More from this author Explore content categories - Career - Productivity - Finance - Soft Skills & Emotional Intelligence - Project Management - Education - Technology - Leadership - Ecommerce - User Experience - Recruitment & HR - Customer Experience - Real Estate - Marketing - Sales - Retail & Merchandising - Science - Supply Chain Management - Future Of Work - Consulting - Writing - Economics - Artificial Intelligence - Employee Experience - Workplace Trends - Fundraising - Networking - Corporate Social Responsibility - Negotiation - Communication - Engineering - Hospitality & Tourism - Business Strategy - Change Management - Organizational Culture - Design - Innovation - Event Planning - Training & Development

Subcommittee Chairman Ogles Opens Hearing on Frontier AI Models, the Future of <b>Cybersecurity</b>

Subcommittee Chairman Ogles Opens Hearing on Frontier AI Models, the Future of Cybersecurity June 4, 2026 WASHINGTON, D.C. ––Today, Subcommittee on Cybersecurity and Infrastructure Protection Chairman Andy Ogles (R-TN) delivered the following opening statement in a hearing to examine the growing role of frontier AI models, agentic AI systems, and AI-powered coding tools in both strengthening U.S. cyber defenses and enabling increasingly sophisticated cyber threats. As prepared for delivery: Good morning and thank you all for being here. Today, we are examining how artificial intelligence is changing the foundations of cybersecurity and the security of our critical infrastructure. This Committee has taken these threats and risks seriously for months. We have held roundtables, hearings, and briefings with the leading AI laboratories and cyber companies in the country, and we have opened a joint investigation with the Select Committee on China into the proliferation of Chinese AI models. On Tuesday, President Trump signed an executive order directing the Secretaries of the Treasury, Homeland Security, and War to develop a classified benchmarking process for advanced AI cyber capabilities and to design a voluntary framework for early government access to covered frontier models. The President is right to act. These models are already reshaping the threat landscape, and the federal government cannot be the last to understand what they can do. I want to be clear that this Subcommittee intends to watch closely how CISA carries out its responsibilities under that framework. CISA has statutory authorities under the Cybersecurity Information Sharing Act of 2015, operates the Known Exploited Vulnerabilities catalog, and serves as the lead civilian agency for critical infrastructure cybersecurity. How CISA fulfills its role under this order, especially in translating early model access into practical guidance and vulnerability remediation for critical infrastructure operators, will be a central oversight question for this

Google Cloud's Quiet Layoffs Hit <b>Cybersecurity</b> Teams

Google is the latest Big Tech company to do layoffs this year. Employees working at Google Cloud have been hit by cuts over the last two weeks, two people familiar with the matter told Business Insider. One team, Google's Threat Intelligence Group, which is one of Google's top security units and regularly publishes research about hackers, was impacted yesterday, the people said. Some employees have been posting about the layoffs on LinkedIn. The cuts were not limited to that unit, affecting others at Mandiant — a cybersecurity company bought by Google in 2022 — and within Google Cloud, the people added. It's unclear exactly how many people were impacted and why the cuts are happening now. In one instance, Google cited the need to reinvest in growth areas, such as AI, to justify the move, one of the people said. "We regularly evaluate our internal structures to ensure we are best positioned to meet the evolving demands of our customers and the industry," a Google spokesperson told Business Insider. The cuts are just the latest to hit Big Tech as companies pour billions into AI. Meta laid off 10% of its staff last month, while others like Coinbase and Block used AI to justify big cuts earlier this year. Cybersecurity has also been affected: Cloudflare laid off more than 1,100 employees earlier last month as it prepares for the "agentic AI era." Last year, Google Cloud quietly let go of some staff, mostly in user experience roles, Business Insider reported. Have a tip? Contact this reporter via email at crollet@businessinsider.com or on Signal and WhatsApp at 628-282-2811. Use a personal email address, a nonwork WiFi network, and a nonwork device; here's our guide to sharing information securely.

HCC Southwest ramps up hands-on training in AI, robotics and <b>cybersecurity</b>

HOUSTON – Houston Community College Southwest is expanding hands-on training designed to prepare Houston residents for jobs in fast-growing fields such as artificial intelligence, robotics, manufacturing and cybersecurity. The college’s applied programs combine lab work and industry-informed curriculum so students gain practical skills employers are hiring for right now. Todd Duplantis, interim executive director of HCC communications, marketing and public information, shares what’s happening on the HCC Southwest campus and how the college is meeting local workforce needs. Programs emphasize small classes and lab time, bringing students face-to-face with the equipment and software they’ll use on the job. That hands-on approach is intended to shorten the time between training and employment. Affordability and access remain central to HCC’s mission. Through the Houston Reconnect and Connect 2 Work initiatives, many short-term certificate programs are offered with no tuition cost for qualified learners, making upskilling more accessible across the city. These certificates are intended to be quick, career-focused pathways that can lead to entry-level roles or stack into longer credentials over time. Local employers and program advisers are also working with HCC to ensure course content aligns with real workplace needs, from automation and precision manufacturing to data-protection practices used in cybersecurity teams. Students can expect to build portfolios and complete projects that demonstrate job-ready competence to hiring managers. How to get started: visit HCCS.EDU or call 713-718-2000 to explore programs, check eligibility for Houston Reconnect or Connect 2 Work, and sign up for campus tours or information sessions. For specifics on which short-term certificates are tuition-free and enrollment deadlines, contact the college directly. Whether you’re pivoting careers or upskilling from within your current job, HCC Southwest aims to make the path practical, affordable and connected to Houston’s growing industries.

Sourcefit named winner in the Artificial Intelligence category at the Fortress <b>Cybersecurity</b> ...

While Enterprises Debate AI Governance, a Global BPO Has Been Running It in Production MANILA, Philippines, June 4, 2026 /PRNewswire/ -- Sourcefit, a global BPO operating across the Philippines, South Africa, the Dominican Republic, Madagascar, Armenia, and the United Kingdom, has been named the winner in the Artificial Intelligence category at the Fortress Cybersecurity Awards 2026. The recognition arrives ten weeks before the EU AI Act takes full effect on 2 August 2026, when organizations deploying AI across regulated industries in Europe will face a reckoning. They will need to demonstrate auditability, human oversight, and verifiable data access controls. Most enterprises will not be ready. Sourcefit's architecture meets those requirements today. Gartner research from May 2026 finds 40% of enterprises will demote or decommission autonomous AI agents by 2027 due to governance gaps identified only after production incidents. Sourcefit built an AI governance platform where unauthorized data access is structurally impossible. Controls are not a policy framework sitting on top of the system; they are enforced at the database and credential layer before an agent can act. Agents can only retrieve rows they are explicitly authorized to access at the database engine level. That distinction, between policy-based AI governance and infrastructure-enforced AI governance, closes off prompt injection as a viable attack vector, a class of attack most enterprise AI deployments cannot defend against. Sourcefit runs production AI handling sensitive client data across healthcare, finance, insurance, and technology without a breach, rollback, or governance failure. Agents operate across 30-plus operational skills, with every action permanently on record. Governance at this level has cut the time required for firewall queries and compliance validation by more than 95%. "The enterprise AI governance problem is only getting more complex. As organizations deploy agents into more sensitive environments, the infrastructure behind them must keep up.

Concerns Over <b>Cybersecurity</b>

Loading Video… This browser does not support the Video element. Concerns Over Cybersecurity Cybersecurity Expert Chace McLaughlin joins with Ronia Shamona to discuss how multifactor authenticators Is no longer enough for security. This browser does not support the Video element. Cybersecurity Expert Chace McLaughlin joins with Ronia Shamona to discuss how multifactor authenticators Is no longer enough for security.

<b>Cybersecurity</b> ROI in Higher Education: How To Win the Budget Conversation

“According to the 2025 EDUCAUSE Cybersecurity and Privacy Workforce in Higher Education Report, cybersecurity teams at many institutions are operating under significant staffing and budget constraints while demands continue to grow,” says Isaac Galvan, community program director for cybersecurity and privacy at EDUCAUSE. “Budget limitations and hiring freezes continue to shape how institutions prioritize cybersecurity spending, often forcing teams to operate reactively rather than strategically.” As a result, many CISOs are seeking more effective strategies and practices to help them acquire the budgets they need to safeguard their institutions. The Role of Ongoing Cybersecurity Training in Budget Discussions At a high level, one tactic that CISOs can use to help improve the outcomes of their budget conversations is providing ongoing cybersecurity training. Most budget stakeholders are not security experts, so they rely on the CISO to explain to them what’s important and where to direct the university’s security budget. This can be done through both formal and informal conversations throughout the year. An ongoing cybersecurity training strategy can also include forming partnerships with particular stakeholders. Close relationships with key executive committee members can assist the CISO with making the case for specific budget priorities when the security budget is being considered by the full committee. “One of the things that helps me at DeVry is that we have a cyber risk committee,” explains Fred Kwong, vice president and CISO at DeVry University. “With this group, I give a full picture of our security posture, the controls we have in place, the existing risk that we have, anything that we still need to mitigate. Then, we talk about future planning. We include several of the executive committee members as part of this group. They can help weigh in with the executive committee on where we need stronger protection and what we

Cline Highlights Memorial Day Ceremony, Lyme Disease Awareness, <b>Cybersecurity</b>, and ...

Legislative Update Cline Highlights Memorial Day Ceremony, Lyme Disease Awareness, Cybersecurity, and Local Manufacturing Visits Congressman Ben Cline shared updates from Virginia’s Sixth District this week, highlighting Memorial Day observances, health and cybersecurity legislation, and visits to two Salem-based manufacturers. Cline attended the sixth annual Healing Field of Honor Closing Ceremony in Winchester on Memorial Day, where he joined local residents in honoring fallen service members and their families. “I am deeply grateful for the sacrifices our service members have made throughout American history,” Cline said. “On Memorial Day, our Nation comes together to honor the fallen and to remember that the freedoms we enjoy were secured by those who gave everything to protect them.” Cline also announced that he cosponsored legislation declaring May as National Lyme and Tick-Borne Disease Awareness Month. He said tick-borne illnesses, including Lyme disease, have become a growing national concern, with cases rising sharply over the past 15 years. The issue is especially important in Virginia, Cline said, noting that the state ranks among the top 10 in the country for Lyme disease. He also pointed to the Shenandoah Valley as one of the Commonwealth’s hardest-hit areas. “For the families in Virginia’s Sixth District, this is not a distant concern,” Cline said. “The Shenandoah Valley has long been one of the Commonwealth’s hardest-hit areas.” In another update, Cline said he signed a letter to FBI Director Kash Patel urging the agency to continue working with the healthcare industry to address cybersecurity threats. According to Cline, healthcare was the top target for ransomware and other cyberattacks last year. Cyberattacks on hospitals and healthcare systems can put patients at risk and cost the industry millions of dollars, Cline said. The letter recognized the FBI’s work on the issue and encouraged continued cooperation with healthcare systems to protect

Cyber Insurance premiums down but Exclusions surge

A few years ago, organizations—regardless of their size or financial standing—showed little interest in adopting cyber insurance coverage. This reluctance was largely driven by tight budgets and, more importantly, a lack of awareness about the tangible benefits such policies could provide. Many enterprises underestimated the financial risks associated with cyber incidents, often assuming that basic security measures were sufficient to protect their operations. However, the landscape has shifted significantly in recent years. With the rapid rise in cyber threats, including ransomware attacks, data breaches, and large-scale cyber incidents, businesses have become increasingly aware of their vulnerabilities. At the same time, financial institutions and insurance providers have started recognizing the growing demand for cyber risk mitigation, leading them to develop and offer more tailored cyber insurance products. This evolution has created a mutually beneficial scenario: organizations gain access to financial protection against cyber risks, while insurers tap into a rapidly expanding market. Industry discussions, such as those highlighted at the Gartner Security and Risk Management Summit held in National Harbor, Maryland, emphasize that enterprises should take advantage of the current environment. Insurance premiums, in some cases, are becoming more competitive, making coverage more accessible than before. However, this positive trend comes with a caveat—policy exclusions are becoming increasingly detailed and stringent. Several key factors are often excluded from coverage, and organizations must pay close attention to these limitations. Common exclusions include losses resulting from employee negligence or inaction, the use of outdated hardware and software, and insider threats. Additionally, a lack of basic cybersecurity hygiene—such as failing to implement standard security protocols or neglecting regular system updates—can lead to denied claims. Insurers are also cautious about risks associated with insufficient employee training, as human error remains one of the leading causes of cyber incidents. On a broader scale, exclusions may extend

Job Listing: Senior Research Fellow, <b>Cybersecurity</b> &amp; AI Policy

The Foundation for American Innovation (FAI) is a nonprofit organization founded in 2014 with a mission to develop technology, talent, and ideas that support a better, freer, and more abundant future. Ours is a politics of builders, hackers, and founders working to advance a more perfect union between technology and the American republic. To further this mission, FAI is seeking a Senior Research Fellow to cover the intersection of cybersecurity and artificial intelligence policy. Reporting to the Director of Artificial Intelligence Policy, the Senior Research Fellow will be responsible for producing original research and commentary, developing policy events and convenings, and supporting FAI’s AI Policy team. Fellows have the opportunity to shape policy discussions and implement practical solutions based on their unique skills and interests. This full-time position is based in Washington, DC. We seek an energetic, motivated, and detail-oriented individual to enhance our capabilities, execute key priorities, and grow quickly into a crucial resource for staff and scholars. The ideal candidate will have a background in technical cybersecurity, looking to apply that experience at a think tank. Responsibilities Fellows will conduct independent, non-partisan research on AI policy questions and support broader organizational objectives. Fellows will: - Lead original research initiatives at the intersection of AI and cybersecurity policy. - Foster collaboration, educate, and engage a diverse array of stakeholders, including policymakers and the general public, to inform academic and policy discussions regarding media and technology. - Support programming for FAI fellowships and events, including speaking on panels, teaching sessions, and curating expert speakers. - Periodic travel for FAI events in major U.S. tech hubs. Fellows may specialize in various aspects of cybersecurity & AI policy, including but not limited to: - Securing critical infrastructure against cyber and AI-enabled threats - Advancing government AI adoption, particularly for national security and

Mountain Park to investigate <b>cybersecurity</b> breach with OSBI

Mountain Park to investigate cybersecurity breach with OSBI LAWTON, Okla. (KSWO) - The town of Mountain Park is working with the Oklahoma State Bureau of Investigation as a cybersecurity breach affected the town’s computer network. According to a press release town officials discovered emails from their account were dispersed throughout the community. The matter is now being investigated under the Oklahoma Computer Crimes Act. Residents of Mountain Park were notified recently, it’s unknown if any sensitive data was leaked. “I would say it’s possible, I cannot say for sure,” Mountain Park Board Member Beverly Emswiler said. “At this point, we don’t know the extent of the breach, we are just aware that there was one. That’s the current investigation; we’re hoping OSBI can help us figure that out.” Town employees are already making changes to better protect these systems. That includes changing all passwords and switching internet service providers. Officials are also searching for an IT employee. Copyright 2026 KSWO. All rights reserved.

2026 <b>Cybersecurity</b> &amp; Technology Risk Survey: The CISO's evolving role

Questions CISOs are asking about AI, cyber resilience, and technology risk What is the 2026 Cybersecurity and Technology Risk Survey? The 2026 Cybersecurity and Technology Risk Survey is KPMG research based on a survey of 310 security leaders at U.S. organizations with $1B+ in revenue, focused on cyber risk preparedness, emerging threats, business impact, cybersecurity challenges, mitigation strategies, budget priorities, and partner ecosystems. What are the top cybersecurity threats for CISOs in 2026? Security leaders expect AI-powered attacks to become the top cyber threat over the next two to three years, followed by sophisticated phishing, malware, and social engineering. How are CISOs using AI in cybersecurity? Only 24 percent of organizations say AI is fully integrated into cybersecurity, while 53 percent report partial integration. AI is expected to improve fraud prevention, predictive threat analytics, anomaly identification, and threat detection. Why is cyber resilience important for boards? Boards increasingly expect CISOs to connect cybersecurity to business outcomes such as productivity, customer trust, revenue, operational continuity, and measurable risk reduction. Why do nonhuman identities matter in cybersecurity? Nonhuman identities such as service accounts, API keys, tokens, machine credentials, and autonomous agents can create unmanaged access pathways if they lack provisioning, monitoring, ownership, and lifecycle controls.

Bowman City Commission confronts local <b>cybersecurity</b> weaknesses

DICKINSON — The Bowman City Commission held a regular meeting on Tuesday, June 2, where they confronted the city’s cybersecurity weaknesses and watched a presentation from CyberNet Security about what they can do to be safer. The city commission made decisions on a variety of topics during their meeting such as addressing an application for a zone change, an event request and more. However, the most pressing issue brought before the commission was the cyberattack the Bowman Parks & Recreation faced. ADVERTISEMENT Dan Peterson, the director of the Bowman Parks & Recreation, told the commission about how the recent cyberattack left every file the department had encrypted and inaccessible. The attack had even affected any backup files the department had that were in thumb drives plugged into devices. While there was a message from the attacker with contact information about how to access the files again, Peterson was able to decrypt the files by taking the issue to an expert in Bismarck. “They didn’t take the files… so we got lucky in that regard,” Peterson said. “We had no idea what they wanted.” Peterson explained to the commission that there several measures the Bowman Parks & Recreation could take to be safer from attacks. One of the main ways was having better passwords — Peterson described the department’s passwords as being weak and incorporating predictable phrases. “Our passwords were pathetic,” Peterson said. John Nagel, president of CyberNet Security, gave a presentation over Zoom discussing what services his company could provide to improve the City of Bowman’s cybersecurity. The offer was a three-year plan that would make a multitude of changes that could prevent successful cyberattacks. For example, Nagel explained that the first two years of his roadmap would provide cybersecurity and phishing training to every employee, which involve scoring each

Crypto <b>Cybersecurity</b> Practices Must Refocus on Human Error

Not so long ago, our firm received a cybersecurity alert from a client. Their crypto protocol, which we had audited and which they had recently launched, was being exploited. This was obviously terrible news, so we rushed to look at what happened. After some confusion, we realized that our client had actually deployed the wrong version of their protocol—a test version used during development, not the version we had audited. It was a simple human error, but it cost the client a lot of money. This anecdote illustrates a real, widespread problem in the crypto sector: these days, the most damaging cybersecurity attacks don’t target errors in the code so much as they target operational mistakes. Since 2022, the industry has lost an astonishing $2.2 billion to malicious actors. The industry’s response has been to triple the number of software audits it conducts. But our research shows that the majority of attacks actually focus on human vulnerabilities, which are beyond the scope of ordinary audits. Put differently, the crypto industry needs to change its attitude toward cybersecurity checks. It shouldn’t abandon code audits, but it should seriously ramp up efforts to protect itself from human attack vectors. Otherwise, it will keep bleeding money away and never have the opportunity to go properly mainstream. Traditional Audits Aren’t Enough To be fair, audits have improved the quality of crypto software. Fewer exploits are due to technical coding errors than before. The industry has gotten better at this specific thing. But criminals adapt. Today's most costly attacks involve tricking employees into handing over passwords, manipulating the voting systems that govern how these platforms make decisions, planting malicious software through routine updates, or simply compromising a trusted insider. Meanwhile, AI tools have made it dramatically easier for attackers to craft convincing fake emails, impersonate