Skip to content

Davey Winder

delivering award-winning technology journalism since 1991

  • home
  • about me
  • follow me on mastodon
  • privacy policy
  • Toggle search form
Picture of multiple road signs all with the word 'lying' on

2016: The year of the Phish (an analysis of phishing threat trends)

Posted on March 2, 2017March 2, 2017 By Davey Winder

According to the ‘Phishing Activity Trends Report‘ newly published by the Anti-Phishing Working Group (APWG), 2016 was a piss-poor year.

The report suggests that, in fact, 2016 was the worst year for phishing attacks ever. With the total number of attacks totalling 1,220,523 this represents a 65% increase over the 2015 numbers.

The growth in phishing is put into even sharper perspective if you jump all the way back to 2004, when the APWG saw just 1,609 attacks per month across the fourth quarter of the year. Compare that to the fourth quarter of 2016 and the monthly average was 92,564. In percentage terms that’s an increase of 5,753% over 12 years. That’s the single biggest percentage figure our analysts have ever had to type here at IT Security Thing, and some of us have been at this game for more than 25 years!

So, are we surprised? Not a bit, truth be told. There are two consistent attack entry point methodologies being put to use by threat actors, pretty much regardless of the threat payload: DDoS and phishing. Although DDoS gets a lot of press for taking down large organisations, it’s more commonly used to disrupt much smaller businesses. Typically, we see DDoS attacks used as smoke screens to divert resources (security team eyes, essentially) from the real payload that is often data exfiltration elsewhere on the network.

Click here to read complete article

Analysis Tags:Intelligence, Phishing, Research, scammers, trends

Post navigation

Previous Post: Penetration tests are being ignored by enterprises living dangerously
Next Post: New technology, same bugs: the rise and fall of the robot revolution

Related Articles

Forget Passwords, This New Tech Is Nearly Hacker-Proof, 1Password Says Analysis
Gmail Hackers Leave Vital Clues Behind—Check These 3 Things Now Analysis
No, 1Password Has Not Just Been Hacked—Your Passwords Are Safe Analysis
New Critical Security Warning For iPhone, iPad, Watch, Mac—Attacks Underway Analysis
New Emergency Chrome Security Update After Critical iOS 16.6.1 Release Analysis
New iPhone iOS 16 Bluetooth Hack Attack—How To Stop It Analysis

Categories

Post Archive

Tags

0day Analysis Android Apple Apps breach bug bounty Business Chrome crime Cybercrime Data Protection Encryption Enterprise Google Government Hackers Hacking Health healthcare industry iOS IoT iPhone Malware Microsoft News NHS Opinion passwords Phishing Privacy ransomware Research Russia Samsung threat intelligence Twitter Update Vulnerabilites vulnerabilities Vulnerability Windows Windows 10 zero-day

Copyright © 2025 Davey Winder .

×
Cookies
We serve cookies. If you think that's ok, just click "Accept all". You can also choose what kind of cookies you want by clicking "Settings". Read our cookie policy
Settings Refuse all Accept all
Cookies
Choose what kind of cookies to accept. Your choice will be saved for one year. Read our cookie policy
  • Necessary
    These cookies are not optional. They are needed for the website to function.
  • Statistics
    In order for us to improve the website's functionality and structure, based on how the website is used.
  • Experience
    In order for our website to perform as well as possible during your visit. If you refuse these cookies, some functionality will disappear from the website.
  • Marketing
    By sharing your interests and behavior as you visit our site, you increase the chance of seeing personalized content and offers.
Save Refuse all Accept all
GDPR Cookie Policy