logo

CyberheistNews Vol 16 #35 [New Report] Phishing Is Still the No. 1 Initial Threat Access Vector

ID: 7e4ff184-1f44-563f-83d5-451ad6a3eaab

STIX ID: report--7e4ff184-1f44-563f-83d5-451ad6a3eaab

Feed Name: KnowBe4 Blog

Threat Score
72/100

Date Published: 2026-09-01

Date Updated: 2026-09-05

Author: KnowBe4 Team

...
...

Phishing remains the dominant initial access vector in Q2 2026—attackers increasingly use QR-code PDFs and cloud-hosted links to harvest Microsoft 365 credentials and leverage compromised accounts for lateral propagation and defense evasion; MFA abuse (AitM, session-token theft, MFA fatigue, self-enrolled devices) surged. Separately, Group-IB documents WindRelay, an Android RAT distributed via vishing that enabled remote fraud and NFC relay malware, and reports describe Balonx, an AI-driven phishing-as-a-service kit automating vishing at scale—together these trends highlight escalating, rapidly scalable social-engineering and credential-theft threats to organizations and individuals.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.