Hello All,
New research from Cisco Talos found that more than half of all security incidents last quarter started with a single phishing email β and attackers are getting better at slipping past the protections we have in place.
The short version:
- QR codes in PDF attachments are being used because there's no link for filters to catch.
- Phishing is being sent from real, compromised accounts β a familiar name in the From line isn't proof a message is safe.
- MFA is being bypassed through fake login pages and repeated approval prompts, hoping you'll tap one by mistake.
- AI-generated voices are impersonating IT, banks, and vendors convincingly over the phone.
What we're asking:
- Be cautious with QR codes in emails. Scanning moves you to your phone, where it's harder to spot a fake login page. If one asks you to sign in, go to the site directly instead.
- Deny any MFA prompt you didn't start β then let us know.
- Verify unusual requests using a phone number you already have, not one from the message.
- Report anything that feels off with the Phish Alert button.
Want the full write-up? It's here: https://blog.knowbe4.com/report-phishing-remains-the-primary-initial-access-vector
Comments
0 comments
Please sign in to leave a comment.