Top Impersonation Tactics Used in Social Engineering and Phishing
ID: 3a4b8806-53d1-5f26-b77a-fa6be3f85b5d
STIX ID: report--3a4b8806-53d1-5f26-b77a-fa6be3f85b5d
Feed Name: SOCRadar Blog
This report outlines the top impersonation tactics driving social engineering and phishing—brand lookalikes, executive/BEC schemes, IT help desk/MFA capture, vendor invoice fraud, and collaboration tool abuse—supported by 2025–2026 statistics and case examples (malicious Chrome extensions promoted via lookalike domains, North Korea-linked hiring fraud with AI facial filters, Okta vishing for SSO takeover, and a BEC payment redirection), and recommends layered defenses such as phishing-resistant MFA (FIDO2/WebAuthn), strict payment verification, mobile/QR risk controls, and proactive brand protection with takedown workflows.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
