logo

Spam and phishing in 2024

ID: 758922ee-e928-5940-b379-aca4dbf89b76

STIX ID: report--758922ee-e928-5940-b379-aca4dbf89b76

Feed Name: Securelist by Kaspersky

Date Published: 2025-02-19

Date Updated: 2026-04-29

Author: Tatyana Kulikova, Olga Svistunova, Roman Dedenok, Andrey Kovtun, Irina Shimko, Anna Lazaricheva

...
...

Kaspersky’s 2024 year-in-review details widespread phishing and scam activity across travel, social media/messengers, and crypto, plus business-targeted lures and Facebook-themed schemes, while spam averaged 47.27% of global email (48.57% in Runet); defenses blocked 893,216,170 phishing-link attempts and 125,521,794 malicious attachments. The report highlights multi-step credential and payment fraud, increased use of password-protected archives and malicious SVGs, and targeted phishing via HR and buyer–seller pretexts; .com/.xyz/.top dominated phishing TLDs, and web services, banks, and online stores were most abused. Russia led spam origination (36.18%), Peru had the highest phishing exposure, and common email-delivered malware included Agensla stealers, Badun/Makoob/Noon/Strab, Badur PDFs, and phishing HTML/PDF forms.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.