Thursday, May 8, 2025
HomePhishingPhishing Activity Trends Report for 4th Quarter 2016 - APWG

Phishing Activity Trends Report for 4th Quarter 2016 – APWG

Published on

SIEM as a Service

Follow Us on Google News

The APWG Phishing Activity Trends Report breaks down phishing attacks reported to the APWG by its part organizations, its Global Research Partners, through the association’s site at http://www.apwg.org, and by email entries to reportphishing@antiphishing.org.

Phishing is a fraud mechanism utilizing both social engineering and specialized subterfuge to take buyers’ individual personality information and financial accreditation’s.

The APWG likewise tracks the number of unique phishing sites. That is currently controlled by the one of a unique base URLs of the phishing sites.

- Advertisement - Google News

Highlights for 4th Quarter 2016

  • Number of unique phishing websites detected 89,232 118,928 69,533.
  • Number of unique phishing e-mail reports (campaigns) received by APWG from consumers 51,153 64,324 95,555.
  • Number of brands targeted by phishing campaigns 357 332 264.
Phishing Activity Trends Report

Phishing domains by TLD

Here are the  top-10 TLDs where phishing attacks occurred in 4Q2016:

Phishing Activity Trends Report

Some of these areas were compromised– the phishers broke into their web servers to plant phishing URLs on existing sites.

Different domains were likely enrolled by phishers particularly to bolster new phishing sites, however examination of what number of sites fell into which classification were not accessible for this report.

Phishing Activity report by Country of Hosting

It is not shocking to see a concentration in the United States – a noteworthy segment of the world’s web servers are situated in the United States, and phishing sites are frequently set on compromised web servers.

In addition, some of the fraud sites that Axur found had “IP filters.” This is a technique where the fraudsters don’t allow people on IP addresses outside of Brazil to see the fraud sites – only people inside of Brazil can see the fraud sites.

The goal is to make it more difficult for response teams at hosting provider outside of Brazil to view the active fraud, so they cannot confirm the problems and then eliminate them

Phishing Activity Trends Report

According to Luis Corrons, PandaLabs Technical Director and Trends Report contributing analyst, the world’s most infected country was China, where 47.09% of machines are infected, followed by Turkey (42.88%) and Taiwan (38.98%).

Scandinavian countries have the lowest infection rates, and Sweden was lowest of all with just a 20.03% infection rate.

To download the APWG report.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Critical Vulnerability in Ubiquiti UniFi Protect Camera Allows Remote Code Execution by Attackers

Critical security vulnerabilities in Ubiquiti’s UniFi Protect surveillance ecosystem-one rated the maximum severity score...

IXON VPN Client Vulnerability Allows Privilege Escalation for Attackers

A critical security vulnerability in IXON’s widely used VPN client has exposed Windows, Linux,...

Cisco IOS Software SISF Vulnerability Could Enable Attackers to Launch DoS Attacks

Cisco has released security updates addressing a critical vulnerability in the Switch Integrated Security...

Seamless AI Communication: Microsoft Azure Adopts Google’s A2A Protocol

Microsoft has announced its support for the Agent2Agent (A2A) protocol, an open standard developed...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Popular Instagram Blogger’s Account Hacked to Phish Users and Steal Banking Credentials

A high-profile Russian Instagram blogger recently fell victim to a sophisticated cyberattack, where scammers...

Darcula PhaaS: 884,000 Credit Card Details Stolen from 13 Million Global User Clicks

The Darcula group has orchestrated a massive phishing-as-a-service (PhaaS) operation, dubbed Magic Cat, compromising...

Hackers Use Pahalgam Attack-Themed Decoys to Target Indian Government Officials

The Seqrite Labs APT team has uncovered a sophisticated cyber campaign by the Pakistan-linked...