Phishing
Phishing as a technique involves sending fraudulent emails, SMS messages, or chat messages to trick the victim into clicking a malicious link, opening an infected attachment, or entering credentials on a fake page.
Term
description · examples · notesPhishing as a technique involves sending fraudulent emails, SMS messages, or chat messages to trick the victim into clicking a malicious link, opening an infected attachment, or entering credentials on a fake page.
Description
The technique is used for both mass campaigns and highly personalized attacks. Successful phishing typically serves as the entry point for further escalation within the target environment.
Examples
- Email with a fake login page that harvests user credentials
- SMS message with a package tracking link leading to a malicious site
- Chat message with an infected document attachment
- Personalized email referencing an internal project with a malicious attachment
Notes
- Phishing remains the most common initial access vector in the majority of reported incidents.
Mentioned in the news
- 23. MAR 2026. Copyright phishing kampanja koristi PureLog Stealer i fileless izvršavanje →
- 13. MAR 2026. APT36 koristi AI za masovnu proizvodnju malvera (Vibeware) →
- 13. MAR 2026. Handala koristi kompromitovane Intune administratore za wiper napade →
- 11. MAR 2026. Kritična ranjivost u Microsoft Office omogućava izvršavanje koda kroz Preview Pane →
- 5. MAR 2026. Šta je ransomver i kako se zaštititi od njega →