惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - Franky
J
Java Code Geeks
腾讯CDC
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Jina AI
Jina AI
博客园 - 司徒正美
Stack Overflow Blog
Stack Overflow Blog
美团技术团队
L
LangChain Blog
WordPress大学
WordPress大学
A
About on SuperTechFans
Martin Fowler
Martin Fowler
月光博客
月光博客
Y
Y Combinator Blog
U
Unit 42
D
Docker
Recent Announcements
Recent Announcements
Hugging Face - Blog
Hugging Face - Blog
B
Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
G
Google Developers Blog
Last Week in AI
Last Week in AI
T
The Blog of Author Tim Ferriss
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com

Ziff Davis

SpiceWorld 2026 Returns to Austin: Lead. Learn. Connect. with an Exclusive Preview of the 2026 State of IT Report Former Meta engineer testifies in child endangerment trial; Apple to announce new products Ziff Davis to Participate in Two Investor Conferences in September Lifestyle Brand Group - Ziff Davis Popular Science - Ziff Davis Ziff Davis Reports Second Quarter 2026 Financial Results RetailMeNot Launches Rewards App Featuring AI Smart Search and Industry-First Working Code Promise Your living-room VPN just got faster: IPVanish rolls out WireGuard and OpenVPN on Apple TV Castle Connolly Releases Castle Connolly 2026 Top Dentists Ziff Davis to Announce Second Quarter 2026 Earnings Business of Home - Ziff Davis Domino - Ziff Davis Dwell - Ziff Davis RetailMeNot Kicks Off First-Ever Summer Issue & New 'Chief Capri Officer' Search: Get Paid to Shop & Style the Season's Hottest Fashion Trend 'An important milestone' — IPVanish gets bigger and expands its network to 150 locations worldwide Ziff Davis to Participate in One Investor Conference in June Ziff Davis Reports First Quarter 2026 Financial Results IPVanish rolls out RAM-only server filter across all apps to make it easier to boost your privacy Ziff Davis to Participate in One Investor Conference in May Ziff Davis to Announce First Quarter 2026 Earnings VIPRE Security Group Launches VIPRE Security Training for Students, a Cybersecurity Education Series for the Next Generation of Digital Users Artemis II crew capturing big and small moments in space IPVanish Launches Full-Scale Digital Security, Continuing Expansion Beyond VPN Service With Threat Protection Pro ‘No discernible sacrifice’: The iPhone Air offers market-leading performance in one key way, new report says How new NVIDIA chips can help AI chatbots perform better VIPRE Security Group Partners with Microsoft to Deliver Unified Email Security Defenses RetailMeNot Castle Connolly Releases The 2026 Top Hospitals Across the Nation Ziff Davis Announces Definitive Agreement to Sell Connectivity Division to Accenture RetailMeNot Expands Savings Commitment with New Guaranteed Cash Back at Over 4,000 Retailers
Attackers Favor Widely Trusted Platforms While Adapting t...
PR Newswire · 2026-04-23 · via Ziff Davis

This is a paid press release. Contact the press release distributor directly with any inquiries.

Commercial spam, link-based malspam, and use of QR code-embedded PDFs are on the rise

LONDON, April 23, 2026 /PRNewswire/ -- VIPRE Security Group, a global leader and award-winning cybersecurity, privacy, and data protection company, releases its Q1 2026 Email Threat Trends Report, which finds that cybercriminals are stealing trust by exploiting legitimate sites, systems, and ecosystems to bypass defenses more easily and maximize attack success. Processing 1.8 billion emails in the first quarter of this year, this report highlights the struggles organizations face, signaling areas where they must strengthen email defenses in the coming months. 

Commercial spam takes up the lion's share 
Commercial spam forms the majority of spam at 46%, delivered via compromised accounts (33%) and free email services (32%). This illustrates trusted platforms and free services as criminals' favored attack vectors. Commercial spam wears down users with email fatigue, increasing their chances of being phished, while the technique itself assists cybercrime through misleading subject lines, aggressive language, and act-fast promotions.

Nearly two-thirds of spam came from US-based infrastructure, followed by Ireland and the UK. The US was also the top target of commercial spam at 60%, followed by the UK at 12% and Canada at 6%.

Attackers exploit trusted platforms to deliver link-based phishing at scale
Cybercriminals are increasingly relying on familiar, reputable platforms to carry out their attacks. Phishing made up 25.87% of all spam, with malicious links remaining the weapon of choice.

During the first quarter of 2026, embedded links appeared in 50.59% of phishing emails, while 26.69% included attachments, 19.17% used callback schemes, and 3.55% relied on QR code-based phishing. Microsoft continues to be the top brand targeted for spoofing, and ".com" domains remain the primary infrastructure for sending these attacks.

Furthermore, attackers favor "open redirects" that begin with the legitimate domain and then end with a parameter routing to a malicious site. Abused URLs accounted for over 89% of phishing URLs.

Cybercriminals adapt to detection methods
The manner in which attackers construct and deploy phishing URLs in Q1 shows they are adapting to detection methods. Newly Registered Domains (NRDs) are on the decline. As scanners become more effective at identifying newly created domains, cybercriminals are adapting by relying more on familiar, reputable domains to avoid detection. This shift reinforces their tendency to use proven strategies and exploit established, trustworthy web addresses.