2025’s Top Phishing Trends and What They Mean for Your Security Strategy
ID: 5a5ab963-cff2-588e-a3ed-2f5a5dc06ff8
STIX ID: report--5a5ab963-cff2-588e-a3ed-2f5a5dc06ff8
Feed Name: Bleeping Computer
### Executive summary Push Security's 2025 phishing trends report describes a major shift to omni-channel phishing (LinkedIn, search, malvertising, etc.), widespread use of criminal PhaaS kits and AiTM reverse-proxy techniques that routinely bypass MFA, and evolving detection-evasion methods (bot protection, redirect chains, multi-stage JavaScript). New social-engineering vectors such as ClickFix and ConsentFix and continued abuse of OAuth/device flows and malicious browser extensions increase account takeover risk, creating significant visibility gaps for security teams and driving recommendations to expand browser-based detection and response.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
