Get all your news in one place.
100’s of premium titles.
One app.
Start reading
TechRadar
TechRadar
Ellen Jennings-Trace

Microsoft is the most commonly imitated company in phishing scams

Hook on Keyboard.

Check Point Research (CPR) has released new research examining the biggest phishing scams in the second quarter of 2024. 

CPR’s ranking puts Microsoft as the most frequently imitated, appearing in a staggering 57% of messages, with Apple rising to second place with 10%. 

There were also several new entries in the top 10 list, with Instagram, WhatsApp, and Adidas accounting for a combined 2.3% of threats.

Growing threats

Tech remains the most impersonated industry, with critical service providers a popular target due to often storing sensitive information such as financial information and personal data.

When impersonating Microsoft, cybercriminals will most commonly fabricate a threat to your device which needs fraud protection software to be downloaded, and ask you to follow a link or attachment.  Fraudulent emails also regularly include ‘Message Failure Delivery’ notices, looking to prompt users to follow a link to a website which closely resembles the Outlook login page, tricking users into giving away their login credentials.

Similarly, Apple impersonators will often claim that a user's Apple ID has been locked or compromised, and will encourage users to follow their own link to log in to a mock login page. 

Retail based phishing scams often present as fraudulent purchasing sites resembling the brand, and aim to get users to enter their payment details. 

Staying alert

Phishing attacks are designed to panic users into acting quickly to follow their instructions, leading you to a fraudulent site to enter your account details.

“Phishing attacks remain one of the most pervasive cyber threats and are often the entry point for much larger scale campaigns [in] a supply chain,” warned Data Group Manager at Check Point Software, Omer Dembinsky.

Dembinsky advises users to always avoid clicking on unsolicited links, to thoroughly verify email addresses, and to use Multi Factor Authentication. If you believe you have been sent a phishing scam, UK users can forward them to the police at Action Fraud on report@phishing.gov.uk

Acting quickly is key if you believe you have fallen victim to the scam, contacting your bank and opening an investigation into any suspicious activity. 

More from TechRadar Pro

Sign up to read this article
Read news from 100’s of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.