DHL Tops the List of Most Impersonated Brand in Phishing Attacks
As scammers shift their campaigns and learn from their successes, new data shows that the global delivery service is the current brand of choice, with equally familiar brands trailing slightly.
We’ve seen as many as 256 brands impersonated recently in phishing attacks. But new data from CheckPoint puts the use of global brands into perspective by providing the current rankings. According to their Q3 Brand Phishing Report, the following brands topped the list:
- DHL – used in 22% of phishing attacks globally
- Microsoft – 16%
- LinkedIn – 11%
- Google – 6%
- Netflix – 5%
What’s interesting is that 4 of the five can be definitely used to target businesses (with Netflix being an obvious consumer/individual attack focus). The impersonation of these brands is what lends credibility to the phishing scam. For example, we saw Google Translate being impersonated to get victims to think the spoofed logon page used to harvest credentials was legitimate.
What this list above should really tell you is both what kinds of credentials are threat actors seeking out, as well as where to place your employees vigilance when it comes to interacting with unsolicited emails – something taught via continual Security Awareness Training.
These brands are going to shift in use over time, but the overarching message is clear – impersonation in phishing attacks works and is here to stay.
Free Phishing Security Test
Would your users fall for convincing phishing attacks? Take the first step now and find out before bad actors do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.
Here’s how it works:
- Immediately start your test for up to 100 users (no need to talk to anyone)
- Select from 20+ languages and customize the phishing test template based on your environment
- Choose the landing page your users see after they click
- Show users which red flags they missed, or a 404 page
- Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
- See how your organization compares to others in your industry
PS: Don’t like to click on redirected buttons? Cut & Paste this link in your browser: https://info.knowbe4.com/phishing-security-test-partner?partnerid=001a000001lWEoJAAW