惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Apple Machine Learning Research
Apple Machine Learning Research
爱范儿
爱范儿
博客园_首页
博客园 - 【当耐特】
V
Visual Studio Blog
博客园 - 叶小钗
月光博客
月光博客
美团技术团队
J
Java Code Geeks
小众软件
小众软件
Y
Y Combinator Blog
博客园 - Franky
Martin Fowler
Martin Fowler
博客园 - 聂微东
Microsoft Azure Blog
Microsoft Azure Blog
IT之家
IT之家
MyScale Blog
MyScale Blog
人人都是产品经理
人人都是产品经理
Microsoft Security Blog
Microsoft Security Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
阮一峰的网络日志
阮一峰的网络日志
酷 壳 – CoolShell
酷 壳 – CoolShell
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
云风的 BLOG
云风的 BLOG

Ziff Davis

Ziff Davis CEO: if OpenAI can find $750 billion for data centers, it can find money for publishers, too | Fortune SpiceWorld 2026 Returns to Austin: Lead. Learn. Connect. with an Exclusive Preview of the 2026 State of IT Report Former Meta engineer testifies in child endangerment trial; Apple to announce new products Ziff Davis to Participate in Two Investor Conferences in September Lifestyle Brand Group - Ziff Davis Popular Science - Ziff Davis Ziff Davis Reports Second Quarter 2026 Financial Results RetailMeNot Launches Rewards App Featuring AI Smart Search and Industry-First Working Code Promise Your living-room VPN just got faster: IPVanish rolls out WireGuard and OpenVPN on Apple TV Castle Connolly Releases Castle Connolly 2026 Top Dentists Ziff Davis to Announce Second Quarter 2026 Earnings Business of Home - Ziff Davis Domino - Ziff Davis Dwell - Ziff Davis RetailMeNot Kicks Off First-Ever Summer Issue & New 'Chief Capri Officer' Search: Get Paid to Shop & Style the Season's Hottest Fashion Trend 'An important milestone' — IPVanish gets bigger and expands its network to 150 locations worldwide Ziff Davis to Participate in One Investor Conference in June Ziff Davis Reports First Quarter 2026 Financial Results IPVanish rolls out RAM-only server filter across all apps to make it easier to boost your privacy Ziff Davis to Participate in One Investor Conference in May Ziff Davis to Announce First Quarter 2026 Earnings VIPRE Security Group Launches VIPRE Security Training for Students, a Cybersecurity Education Series for the Next Generation of Digital Users Artemis II crew capturing big and small moments in space IPVanish Launches Full-Scale Digital Security, Continuing Expansion Beyond VPN Service With Threat Protection Pro ‘No discernible sacrifice’: The iPhone Air offers market-leading performance in one key way, new report says How new NVIDIA chips can help AI chatbots perform better VIPRE Security Group Partners with Microsoft to Deliver Unified Email Security Defenses RetailMeNot Castle Connolly Releases The 2026 Top Hospitals Across the Nation Ziff Davis Announces Definitive Agreement to Sell Connectivity Division to Accenture
Attackers Favor Widely Trusted Platforms While Adapting t...
PR Newswire · 2026-04-23 · via Ziff Davis

This is a paid press release. Contact the press release distributor directly with any inquiries.

Commercial spam, link-based malspam, and use of QR code-embedded PDFs are on the rise

LONDON, April 23, 2026 /PRNewswire/ -- VIPRE Security Group, a global leader and award-winning cybersecurity, privacy, and data protection company, releases its Q1 2026 Email Threat Trends Report, which finds that cybercriminals are stealing trust by exploiting legitimate sites, systems, and ecosystems to bypass defenses more easily and maximize attack success. Processing 1.8 billion emails in the first quarter of this year, this report highlights the struggles organizations face, signaling areas where they must strengthen email defenses in the coming months. 

Commercial spam takes up the lion's share 
Commercial spam forms the majority of spam at 46%, delivered via compromised accounts (33%) and free email services (32%). This illustrates trusted platforms and free services as criminals' favored attack vectors. Commercial spam wears down users with email fatigue, increasing their chances of being phished, while the technique itself assists cybercrime through misleading subject lines, aggressive language, and act-fast promotions.

Nearly two-thirds of spam came from US-based infrastructure, followed by Ireland and the UK. The US was also the top target of commercial spam at 60%, followed by the UK at 12% and Canada at 6%.

Attackers exploit trusted platforms to deliver link-based phishing at scale
Cybercriminals are increasingly relying on familiar, reputable platforms to carry out their attacks. Phishing made up 25.87% of all spam, with malicious links remaining the weapon of choice.

During the first quarter of 2026, embedded links appeared in 50.59% of phishing emails, while 26.69% included attachments, 19.17% used callback schemes, and 3.55% relied on QR code-based phishing. Microsoft continues to be the top brand targeted for spoofing, and ".com" domains remain the primary infrastructure for sending these attacks.

Furthermore, attackers favor "open redirects" that begin with the legitimate domain and then end with a parameter routing to a malicious site. Abused URLs accounted for over 89% of phishing URLs.

Cybercriminals adapt to detection methods
The manner in which attackers construct and deploy phishing URLs in Q1 shows they are adapting to detection methods. Newly Registered Domains (NRDs) are on the decline. As scanners become more effective at identifying newly created domains, cybercriminals are adapting by relying more on familiar, reputable domains to avoid detection. This shift reinforces their tendency to use proven strategies and exploit established, trustworthy web addresses.