Friday, March 29, 2024

Spam Remains as the Popular Infection Method To Cyber Criminals For More than 40 Years

Spam remains still continues to be the most common attack vector used by cybercriminals for decades. Spam click rates increased in 2018, so far 14.2 percent of spam that delivered in the inbox are clicked, whereas in 2017 the click rate is 13.4%.

Attackers rely on a number of methods to trick the users, instead of delivering malicious content directly they redirect to a legitimate website and then to the site hosting malicious contents.

According to the F-Secure research report, the Email spam remains as the most common methods for attackers for spreadings malicious URLs and malware for more the 40 years since the original email.

Paivi says “During the past few years, it’s gained more popularity against other vectors, as systems are getting more secure against software exploits and vulnerabilities.”

With 85% of email campaigns only five file formats are used (.zZIP, .DOC, .XLS, .PDF, .7ZS). With the samples observed by F-secure 46% are dating scams, 23% are emails with malicious attachments, and 31% contain links to malicious websites.

Credits F-Secure

Attackers improved the success rate of spam’s campaign to 4.5% by having error-free subject line’s. Spammers also use to spoof the populated by gaints like Apple, Amazon and Microsoft.

Scammers continue to adapt with new techniques to trick user’s and make them fall as a victim. Scammers always impose limits such as “call immediately” or “Offer Valid Today only” to make you act on it immediately.

Recently a sophisticated Apple Phishing Scam notifies the user’s that their account has been limited due to unusual activity and ask’s for payment details and the site was encrypted with Advanced Encryption Standard (AES).

Website

Latest articles

GoPlus’s Latest Report Highlights How Blockchain Communities Are Leveraging Critical API Security Data To Mitigate Web3 Threats

GoPlus Labs, the leading Web3 security infrastructure provider, has unveiled a groundbreaking report highlighting...

Wireshark 4.2.4 Released: What’s New!

Wireshark stands as the undisputed leader, offering unparalleled tools for troubleshooting, analysis, development, and...

Zoom Unveils AI-Powered All-In-One AI Work Workplace

Zoom has taken a monumental leap forward by introducing Zoom Workplace, an all-encompassing AI-powered...

iPhone Users Beware! Darcula Phishing Service Attacking Via iMessage

Phishing allows hackers to exploit human vulnerabilities and trick users into revealing sensitive information...

2 Chrome Zero-Days Exploited at Pwn2Own 2024: Patch Now

Google has announced a crucial update to its Chrome browser, addressing several vulnerabilities, including...

The Moon Malware Hacked 6,000 ASUS Routers in 72hours to Use for Proxy

Black Lotus Labs discovered a multi-year campaign by TheMoon malware targeting vulnerable routers and...
Guru baran
Guru baranhttps://gbhackers.com
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Mitigating Vulnerability Types & 0-day Threats

Mitigating Vulnerability & 0-day Threats

Alert Fatigue that helps no one as security teams need to triage 100s of vulnerabilities.

  • The problem of vulnerability fatigue today
  • Difference between CVSS-specific vulnerability vs risk-based vulnerability
  • Evaluating vulnerabilities based on the business impact/risk
  • Automation to reduce alert fatigue and enhance security posture significantly

Related Articles