KnowBe4 Blog

Phishing

Learn about current phishing techniques, notable campaigns and attacks, what to watch out for 'in the wild', and more.

Attackers Abuse Enterprise Collaboration Tools to Avoid Detection

Threat actors’ abuse of enterprise collaboration tools increased fourfold over the past twelve months, according to researchers at Palo Alto Networks’ Unit 42.

Protecting Every Conversation: Introducing KnowBe4 Defend for Google Workspace

Google Workspace powers more than 3 billion active users globally. From agile mid-market firms to global enterprise operations, Gmail and Google Workspace serve as the digital backbone ...

The .vu Surge: How Threat Actors Are Exploiting Vanuatu's Domain Extension

Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal

New Phishing Kit Gives Threat Actors Live View Into Attacks

A new phishing platform called “JWR” gives attackers real-time control over social engineering attacks, according to researchers at Cisco Talos. The kit livestreams the phishing page to ...

Report: Phishing Remains the Primary Initial Access Vector

Phishing is still the top initial access vector, accounting for more than half of cyberattacks observed during Q2 2026, according to a new report from Cisco Talos.

Report: AI Chatbots Are More Effective at Building Trust Than Human Scammers

A study has found that AI chatbots can be more effective at social engineering than human scammers, WIRED reports. The researchers looked at a form of romance scam commonly known as “pig ...

Human Error Remains at the Core of AI-Enabled Social Engineering

AI is making social engineering attacks significantly more effective, according to a new report from cyber insurance firm Resilience. These attacks were behind more than 85% of losses in ...

Report: Vishing and Device Code Phishing Are Surging

Social engineering remains a central part of modern cyberattacks, according to a new report from CrowdStrike. Attackers are increasingly turning to voice phishing because it bypasses ...

Report: One-Quarter of Breaches Are Enabled by AI-Driven Attacks

A new report commissioned by IBM has found that one in four breaches is now AI-enabled, up 56% from last year.

Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer

Lead Analysts: Prabhakaran Ravichandhiran and Jeewan Singh Jalal