Security News

Cybersecurity Firm ReliaQuest Hit by Phishing Attack, Says Damage Was Contained

Security Week · 25 Aug 2026
Key Takeaway Regular phishing awareness training and multi-factor authentication for all staff accounts can significantly reduce the risk of a single mistake leading to a security breach.

Security firm ReliaQuest has confirmed it was targeted by the hacking group ShinyHunters after one of its employees was tricked by a phishing attack. The attackers used the employee's credentials to gain access to a company dashboard, according to the report.

While the breach is concerning given that ReliaQuest itself provides cybersecurity services, the company stated that the overall impact of the incident was limited. Details on what data or systems were exposed through the dashboard access have not been fully disclosed, but the confirmation highlights how even security-focused organisations remain vulnerable to social engineering tactics.

This incident is a reminder that phishing remains one of the most effective attack methods used by cybercriminals, regardless of how technically sophisticated an organisation's defences may be. A single employee clicking a malicious link or entering credentials on a fake login page can be enough to give attackers a foothold.

Summarised by CISO AI from Security Week. We link back to every original so you can read it yourself.