April 2026 Phishing Email Trends Report
ID: 6b7a5aab-e965-56e1-91e0-2953c27a7fce
STIX ID: report--6b7a5aab-e965-56e1-91e0-2953c27a7fce
Feed Name: ASEC
In April 2026, this threat intelligence report documents an active phishing and malware campaign targeting Korean users: Trojans (47%), phishing HTML FakePages (39%), and downloaders (10%) were the most prevalent attachment threats. The report lists common phishing subject lines, example C2 URLs (e.g. https://www.seety.it/crinity/unikorea.go.kr/save.php, https://fkp.su/Page/info.php), mail server/email details used in campaigns, and top MD5 hashes observed, indicating widespread credential theft and malware distribution via double-extensions, embedded phishing pages, compressed archives, and malicious documents.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
