Unfurling Hemlock malware

Akamai Reports Massive Spike in Malicious Domain Activity

Akamai reported today it identified nearly 79 million malicious domains in the first half of 2022, which collectively represent a little more than 20% of all the newly observed domains (NODs) accessed ...
Security Boulevard
Most Phishing Attacks Use Compromised Domains and Free Hosting

Most Phishing Attacks Use Compromised Domains and Free Hosting

| | domains
To stage a phishing site, cybercriminals have several options. They can use a legitimate domain that has been compromised, they can abuse free hosting services, or they can register their own domain ...
The Anatomy of a Look-alike Domain Attack

The Anatomy of a Look-alike Domain Attack

Cybercriminals register hundreds of thousands of look-alike domains every year to impersonate reputable organizations and make a profit. These domains are used for a variety of attacks including phishing emails, fraudulent websites, ...
APWG Q3 Report: Four Out of Five Criminals Prefer HTTPS

APWG Q3 Report: Four Out of Five Criminals Prefer HTTPS

The Anti-Phishing Working Group (APWG), known for its collaborative analysis of phishing attacks and identify theft techniques, has released its Phishing Activity Trends Report for Q3 of 2020. Highlights from the report ...
Easy to Deceive, Difficult to Detect, Impersonation Dominates Attacks

Easy to Deceive, Difficult to Detect, Impersonation Dominates Attacks

Impersonation enables threat actors to manipulate victims into disclosing sensitive information as well as enhance their ability to commit fraud. An organization's name, logo, or messaging can be incorporated into almost any ...
What is a Look-alike Domain?

What is a Look-alike Domain?

By definition, a look-alike domain is a nearly identical, slightly altered domain name, registered with intent to deceive ...
Planetary Reef: Cybercriminal Hosting and Phishing-as-a-Service Threat Actor

Planetary Reef: Cybercriminal Hosting and Phishing-as-a-Service Threat Actor

| | domains
PhishLabs is monitoring a threat actor group that has set up fraudulent hosting companies with leased IP space from a legitimate reseller. They are using this infrastructure for bulletproof hosting services as ...
Eliminating the Threat of Look-alike Domains

Eliminating the Threat of Look-alike Domains

There are many ways look-alike domains can be used by threat actors. While business email compromise (BEC) and phishing sites are often top-of-mind for defenders, there are dozens of other uses for ...
How to Detect Look-alike Domain Registrations

How to Detect Look-alike Domain Registrations

Malicious domains are attributed to a wide variety of cyber attacks capable of undermining a brand’s credibility. A spoofed domain is easy and quick to create, and can act as the catalyst ...
APWG: SSL Certificates No Longer Indication of Safe Browsing

APWG: SSL Certificates No Longer Indication of Safe Browsing

The Anti-Phishing Working Group (APWG) has released its Phishing Activity Trends Report analyzing phishing attacks and identifying theft techniques reported by its members for Q2 of 2020. Key highlights of the report ...