logo

2025’s Top Phishing Trends and What They Mean for Your Security Strategy

ID: 5a5ab963-cff2-588e-a3ed-2f5a5dc06ff8

STIX ID: report--5a5ab963-cff2-588e-a3ed-2f5a5dc06ff8

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2025-12-15

Date Updated: 2026-07-18

Author: Sponsored by Push Security

...
...

### Executive summary Push Security's 2025 phishing trends report describes a major shift to omni-channel phishing (LinkedIn, search, malvertising, etc.), widespread use of criminal PhaaS kits and AiTM reverse-proxy techniques that routinely bypass MFA, and evolving detection-evasion methods (bot protection, redirect chains, multi-stage JavaScript). New social-engineering vectors such as ClickFix and ConsentFix and continued abuse of OAuth/device flows and malicious browser extensions increase account takeover risk, creating significant visibility gaps for security teams and driving recommendations to expand browser-based detection and response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.