Phishing Survey: Attackers Evolve and Aggressive

apwgwebsite

 

(a snapshot of APWG website today)

Antiphishing Organization  APWG – an organization that is worldwide (Anti-Phishing Working Group) founded in 2003 by Tumbleweed corp as well as financial and ecommerce companies. Is a 501c6 tax- exempt corporation.

http://www.antiphishing.org/download/document/245/APWG_Global_Phishing_Report_2H_2014.pdf

This is a very interesting document – and deserves more understanding.

Top ten targets of phishers (criminals using phishing emails) attack as much or more than 1000 times a month.

Chinese phishers are responsible for 85% of the domain names registered in phishing.

Phishing attacks were not being mitigated as quickly, phishing attacks are not shut down in the first 10 hours (this data is from first half of 2014).

phishingattacksanddomainsused

 

It looks like the targets are switched as time passes (467 brands were hit in first part of year and not in second part)

The top 10 targets accounted for over 75% of all attacks.

Apple

Paypal

Taobao.com

And the top3 have 54% of all world’s phishing attacks.

APWGattacksbyindustry

This image is also very interesting the obvious eCommerce industry is being hit most, but money transfer and social networking/email has significant attacks .

 

.xyz is the new top level domain with the highest level of phishing attacks.

 

 

Phishing and spear phishing are different, since spear phishing uses more specific attacks for espionage , and defined attacks for a job title or otherwise political attack.

 

So this report is just a general informational report that says something like the weather is getting more cloudy, as usual be prepared for more attacks.

 

Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.