{"id":40493,"date":"2022-07-22T06:30:00","date_gmt":"2022-07-22T06:30:00","guid":{"rendered":"https:\/\/cloudnewshub.com\/archives\/40493"},"modified":"2022-07-22T06:30:00","modified_gmt":"2022-07-22T06:30:00","slug":"linkedin-most-impersonated-brand-in-phishing-attacks","status":"publish","type":"post","link":"https:\/\/cloudnewshub.com\/?p=40493","title":{"rendered":"LinkedIn most impersonated brand in phishing attacks"},"content":{"rendered":"<div><img decoding=\"async\" src=\"http:\/\/cloudnewshub.com\/wp-content\/uploads\/2022\/07\/linkedin-most-impersonated-brand-in-phishing-attacks.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>Workplace social network LinkedIn has emerged as the brand most imitated by cyber criminals in their <a href=\"https:\/\/www.techtarget.com\/searchsecurity\/definition\/phishing\">phishing attacks<\/a> for the second quarter in a row, accounting for 45% of all phishing attacks in the three-month period to the end of June 2022, according to <a href=\"https:\/\/research.checkpoint.com\/\">a Check Point Research report<\/a>.<\/p>\n<p>In its <em>Brand phishing report for Q2 2022<\/em>, Check Point\u2019s threat research arm highlights how social networks in general are the most imitated brand category, followed by technology companies and then shipping.<\/p>\n<p>The past three months saw a \u201cstriking rise\u201d in big name technology companies being exploited, with Microsoft now making up 13% of all brand phishing attempts to place second, edging out DHL, which accounted for 12% of brand phishing emails.<\/p>\n<p>Altogether, the top 10 imitated brands in the second quarter (Q2) \u2013 per data gleaned from Check Point\u2019s own ThreatCloud \u2013 were:&nbsp;<span>LinkedIn (45%),&nbsp;<\/span><span>Microsoft (13%),<\/span><span> <\/span><span>DHL (12%),&nbsp;<\/span><span>Amazon (9%),&nbsp;<\/span><span>Apple (3%),&nbsp;<\/span><span>Adidas (2%),<\/span><span> <\/span><span>Google (1%),<\/span><span> <\/span><span>Netflix (1%),<\/span><span> <\/span><span>Adobe (1%), and<\/span><span> <\/span><span>HSBC (1%).<\/span><\/p>\n<p>Check Point data research group manager Omer Dembinsky said there was a good reason why phishing emails are such a prominent tool in the threat actor arsenal.<\/p>\n<p>\u201cT<span>hey are fast to deploy and can target millions of users at relatively low cost. They give cyber criminals the opportunity to leverage the reputation of trusted brands to give users a false sense of security that can be exploited to steal personal or commercial information for financial gain,\u201d he said.<\/span><\/p>\n<p><span>\u201cThe criminals will use any brand with sufficient reach and consumer trust. Hence, w<\/span>e see hackers expanding their activities <span>with the first appearance of <\/span>Adidas, Adobe and HSBC in the top 10, The hackers trade on our trust in these brands and that very human instinct for \u2018the deal.\u2019 There\u2019s a reason the hackers continue to use brand-based phishing. It works.<\/p>\n<p>\u201cSo, consumers need to act with caution and look out for tell-tale signs of the fake email, like poor grammar, spelling mistakes or strange domain names. If in doubt, head for the brand\u2019s own website rather than clicking any links.\u201d<\/p>\n<p><a href=\"https:\/\/www.eset.com\/\">ESET<\/a> global cyber security advisor Jake Moore added: \u201cUsing well-known, big names in phishing emails can help grab the attention of unsuspecting victims who act quickly without spending the time assessing the email for clues of its authenticity. LinkedIn is clearly a brand that works, so people need to remain aware of these tactics and steer clear of emails with links requesting a login.<\/p>\n<p>\u201cHowever, the best way to beat such attempts is to implement two-factor authentication on their accounts and make sure all of their online accounts are using unique passwords.\u201d<\/p>\n<section class=\"section main-article-chapter\" data-menu-title=\"Anatomy of a brand phishing attack\">\n<h3 class=\"section-title\"><i class=\"icon\" data-icon=\"1\"><\/i>Anatomy of a brand phishing attack<\/h3>\n<p>Typically, a brand phishing attack will take advantage of people\u2019s implicit trust in familiar names, leveraging its imagery and URLs that at first glance will appear similar to the legitimate one.<\/p>\n<p>In many cases, such attacks will also play on human emotions to create a sense of urgency, such as missing out on a potential discount, which can lead to people clicking in haste without being alert to the possibility they are being misled.<\/p>\n<p>In the case of the three most imitated brands on Check Point\u2019s list, all of these tactics can be clearly seen. For example, LinkedIn-based phishing campaigns observed tend to imitate LinkedIn\u2019s corporate \u2018style\u2019, with subject lines that will seem familiar to any regular user of the platform, such \u2018You appeared in x searches this week\u2019 or \u2018You have x new message(s)\u2019.<\/p>\n<p>LinkedIn-themed phishes can also prove particularly effective because the platform is frequently used by jobseekers, so approaches that appear, for example, to be good news from a recruiter will have instant emotional appeal. A recent campaign by North Korea\u2019s Lazarus group <a href=\"https:\/\/www.computerweekly.com\/news\/252522378\/ESET-Lazarus-APT-hit-aero-defence-sector-with-fake-job-ads\">demonstrated this effectively<\/a>.<\/p>\n<p>The increase in Microsoft-themed lures in some ways presents a greater threat than the LinkedIn ones because threat actors are easily able to compromise multiple applications \u2013 such as Teams or SharePoint \u2013 with a single account login.<\/p>\n<p>Additionally, Microsoft\u2019s ubiquity in the modern workplace means people will tend to trust its messages implicitly, particularly when they relate to services beneficial to people who are still working remotely or on a hybrid basis at this stage of the Covid-19 pandemic, such as Outlook Web App (OWA).<\/p>\n<p><span>The pandemic is also clearly behind the continued prevalence of phishing lures themed around shipping companies such as DHL \u2013 other courier and delivery firms are also frequently spoofed. <\/span><\/p>\n<p><span>This is due to the relentless growth of online shopping, and such attempts will generally purport to be information on a shipment, or, to play on the emotive angle, a missed delivery notification. Similar logic likely lies behind the appearance of brands such as Amazon in the figures.<\/span><\/p>\n<\/section>\n","protected":false},"excerpt":{"rendered":"<p>Workplace social network LinkedIn has emerged as the brand most imitated by cyber criminals in their phishing attacks for the second quarter in a row, accounting for 45% of all phishing attacks in the three-month period to the end of June 2022, according to a Check Point Research report. In its Brand phishing report for [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":40494,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[533],"tags":[],"class_list":["post-40493","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-it"],"_links":{"self":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts\/40493","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=40493"}],"version-history":[{"count":0,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/posts\/40493\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=\/wp\/v2\/media\/40494"}],"wp:attachment":[{"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=40493"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=40493"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cloudnewshub.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=40493"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}