These were the most common phishing emails of 2023 — make sure you don't get caught out as well

Email app on mobile device
(Image credit: Brett Jordan on Unsplash)

Phishing has long been a popular vector for cybercriminals in order to coax valuable information out of victims - and 2023 was no different.

A new report from email security firm Cofense has delved into the most common themes in email phishing attacks last year. The themes it assigned were based on the contents, such as the email body, subject line, attachments, and so on.

Cofense says that assigning accurate themes to phishing emails is important as it "enables a more focused response" and "assists companies in better selecting relevant phishing simulations to use."

Major, moderate, minor

The company split the scam emails into three main categories, based on the volume: major, moderate, and minor.

Of the major themes - the phishing emails with the highest volume - finance was the most popular, making up 54%. These emails related to topics such as invoices and payments. Notification phishing emails, which are those related to password expiration, reminders, appointments, required actions and the like, came second with 35%. 

Shipping phishing emails were third at 7%. Response mode scams were fourth at 3%.  These emails aim to elicit a response to queries; these queries could be fabricated by the threat actors, or sometimes they make use of legitimate emails as a result of hijacked email accounts. 

Interestingly, these phishing emails peaked in Q2 of 2023, with May being 25% higher than any other month. Cofense suggests that this could be due to the rise in QakBot campaigns that month, which made use response themes and hijacking email threads. 

When it came to moderate themes - those seen with regularity but often pertain to more specific and complex campaigns - document and voicemail scams proved popular, at 38% and 25% respectively. Travel assistance was close behind with 24%, and fax and legal email scams were far back at 8% and 6% respectively.

Minor themes are those that occurred the least often, and usually related to certain times of the year. Phishing emails with the theme of benefits (37%) and taxes (32%) made up the majority in this category, followed by job applications (21%) and closing on properties (10%).

It seems that phishing emails are getting more sophisticated, and are still a serious problem for business, as they can be one of leading causes of compromise. With the rise of AI tools, it will be even easier for cybercriminals to craft convincing scams. 

MORE FROM TECHRADAR PRO

Lewis Maddison
Reviews Writer

Lewis Maddison is a Reviews Writer for TechRadar. He previously worked as a Staff Writer for our business section, TechRadar Pro, where he had experience with productivity-enhancing hardware, ranging from keyboards to standing desks. His area of expertise lies in computer peripherals and audio hardware, having spent over a decade exploring the murky depths of both PC building and music production. He also revels in picking up on the finest details and niggles that ultimately make a big difference to the user experience.

Read more
Fraude en ligne phishing
Phishing clicks nearly tripled in 2024 as criminals aim for smarter attacks
Best email services: image of email with one unread message alert
Over 400 million unwanted and malicious emails were received by businesses in 2024
A fish hook is lying across a computer keyboard, representing a phishing attack on a computer system
Everything you need to know about phishing
Paper craft illustration of a suspicious email that contains a snake
How to spot a phishing email
mobile phone
Forget phishing, now "mishing" is the new security threat to worry about
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Help! We're drowning in email spam, it's about to get worse and there's nothing we can do to stop it
Latest in Security
An American flag flying outside the US Capitol building against a blue sky
Five Eyes "cannot replace US intel in Ukraine", claims former US Cyber Command Chief
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Criminals are using a virtual hard disk image file to host and distribute dangerous malware
WordPress on a laptop
Over 20,000 WordPress sites hit by damaging malware campaign
Trojan
WhatsApp patches security flaw which let hackers install spyware
A man holds a smartphone iPhone screen showing various social media apps including YouTube, TikTok, Facebook, Threads, Instagram and X
A worrying Apple Password App vulnerability reportedly left users exposed for months
DeepSeek
Fake DeepSeek installers are infecting your device with dangerous malware
Latest in News
Boston Dynamics all electric Altas
This robot can do a cartwheel better than me and now I'm freaking out – but in a good way
A image of Saros character Arjun
Housemarque’s boss is surprisingly positive about Sony’s acquisition – and it’s good news for Saros
Oura Ring 4
One of Apple's top health execs is ditching the company for Oura, and I've never been more convinced smart rings are the future
Nvidia logo
Nvidia RTX 5060 Ti could be delayed to mid-April and RTX 5060 to mid-May – is AMD starting to look like a clear winner in the battle of Blackwell vs RDNA 4 GPUs?
The A Minecraft Movie Meal from McDonald's.
McDonald's reveals A Minecraft Movie meal with a bizarre set of collectibles and the most sinister sounding sauce ever
Apple iPhone 16e REVIEW
The iPhone 16e’s 5G performance seemingly has the iPhone 16’s beat