Attachment: Calendar file with invisible Unicode characters
Attachment: Calendar invite from recently registered domain
Attachment: Calendar invite with Google redirect and invoice request
Attachment: Calendar invite with suspicious link leading to an open redirect
Attachment: HTML smuggling with atob and high entropy via calendar invite
Attachment: HTML smuggling with eval and atob via calendar invite
Attachment: ICS calendar file with base64 encoded recipient address in URL parameters
Attachment: ICS calendar file with legal language
Attachment: ICS calendar file with suspicious product identifier
Attachment: ICS calendar file with suspicious UID domain
Attachment: ICS calendar invite hiding credential theft
Attachment: ICS calendar invite with bid/RFP lure and suspicious link
Attachment: ICS calendar invite with hex-encoded recipient in link
Attachment: ICS calendar with embedded file from internal sender with SPF failure
Attachment: ICS calendar with suspicious link Leading to minimal JS landing page
Attachment: ICS file with AWS Lambda URL
Attachment: ICS file with credential theft indicators
Attachment: ICS file with excessive custom properties
Attachment: ICS file with meeting prefix
Attachment: ICS file with non-Gregorian calendar scale
Attachment: ICS invite meeting lure
Attachment: ICS link with valueless base64 query parameter
Attachment: ICS voicemail lure with suspicious link
Attachment: ICS with embedded document
Attachment: ICS with embedded Javascript in SVG file
Attachment: ICS with employee policy review lure
Attachment: ICS with Suspicious Office 365 app authorization (OAuth) link
Attachment: Oversized guest-list calendar invite with purchase order lure
Attachment: Oversized guest-list calendar invite with voicemail lure
Callback phishing via calendar invite
Link: Google Calendar invite linking to an open redirect from an untrusted freemail sender
Non-RFC compliant calendar files from unsolicited sender
Service abuse: Google Calendar notification with callback scam language