Phishing emails are seeing a huge rise, so stay on your guard

Phishing
(Image credit: wk1003mike / Shutterstock)

Small and medium-sized businesses should be particularly wary of phishing and other forms of email-borne cyberattacks as their numbers have grown explosively over the last year, experts have warned.

A report from Cofense analyzed data received from 35 million people across the world, finding there has been a 569% increase in phishing attacks to 2022. 

Reports related to credential phishing were up 478% last year, as well.

Emotet and Quakbot

When crooks are not phishing for login credentials and other identity data, they’re trying to distribute ransomware and other forms of malware. 

Emotet and QuakBot remain the two malware families that are being distributed the most, the researchers said, adding that the number of malware attacks rose 44% year-on-year. Emotet is particularly impressive, they say, as even after months of inactivity, this botnet managed to out-scale all other malware delivery campaigns with relative ease.

For Tonia Dudley, Vice President and Chief Information Security Officer at Cofense, these threats increased in frequency, intensity, and sophistication, warranting a swift response from IT teams. “The increase in nation-state attacks and major incidents overall continues to apply pressure to drive visibility of an organization’s security program by boards, corporate executives and cyber insurers,” Dudley said. “With this pressure, organizations must continue to evaluate ways to mitigate risk and assess what email security controls need to be added or enhanced to raise their overall security posture.” 

Cofense also says organizations should keep both eyes open for Business Email Compromise (BEC) attacks, as this type continues being “one of the top cybercrimes” for the eighth year in a row.

Finally, Web3 technologies used in phishing campaigns increased by more than three-fold (341%), while the number of Telegram bots used as exfiltration destinations increased eight times (800%).

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Fraude en ligne phishing
Phishing clicks nearly tripled in 2024 as criminals aim for smarter attacks
Best email services: image of email with one unread message alert
Over 400 million unwanted and malicious emails were received by businesses in 2024
A fish hook is lying across a computer keyboard, representing a phishing attack on a computer system
Everything you need to know about phishing
Phishing
Corporate executives are being increasingly targeted by AI phishing scams
Russian flag on a laptop
Hackers are using Russian domains to launch complex document-based phishing attacks
mobile phone
Forget phishing, now "mishing" is the new security threat to worry about
Latest in Security
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Lock on Laptop Screen
Data breach at Pennsylvania education union potentially exposes 500,000 victims
Data leak
Top collectibles site leaks personal data of nearly a million users
Spyware
Stalkerware data breach potentially hits over 2 million users, including thousands of Apple devices
An American flag flying outside the US Capitol building against a blue sky
Five Eyes "cannot replace US intel in Ukraine", claims former US Cyber Command Chief
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Criminals are using a virtual hard disk image file to host and distribute dangerous malware
Latest in News
Citroen 2CV
The retro EV resurgence is in full swing, as Citroen confirms the iconic 2CV will return with batteries
Hugging Snap
This AI app claims it can see what I'm looking at – which it mostly can
Apple iPhone 16 Pro Max REVIEW
The latest batch of leaked iPhone 17 dummy units appear to show where glass meets metal on the new designs
Hornet swings their weapon in mid air
Hollow Knight: Silksong could potentially launch this year and I reckon it could be a great game for an Xbox handheld
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Cassian looking at someone off-camera from a TIE fighter cockpit in Andor season 2
Star Wars: Andor creator is taking a stance against AI by canceling plans to release its scripts, and I completely get why