Security News > 2020 > August > Apple Knocked Off Perch as Most Imitated Brand for Phishing Attacks

Google and Amazon overtook Apple in the second quarter of 2020 as the brand most spoofed by attackers to lure people into falling for phishing attacks.
While the number of so-called brand-phishing attacks remained stable from the first quarter of 2020 to the second, there was a major shift in position for the companies that threat actors think people are most likely to trust - or whose pages they will most likely click on, according to Check Point Research's Brand Phishing Report for Q2. Brand phishing is a type of attack in which a threat actor imitates an official website of a known brand by using a similar domain or URL in an attack, as well as in some cases a copycat web page similar or identical to the actual company's original website in look and feel.
In the first quarter of 2020, Apple was the most popular brand among attackers in the tech sector for luring phishing victims.
As is typical, the web was the main conduit for brand phishing attacks, with 61 percent of them originating there.
Facebook, WhatsApp and PayPal were the leaders in mobile-based brand phishing attacks in Q2, according to the report.
News URL
https://threatpost.com/apple-most-imitated-brand-phishing-attacks/158006/
Related news
- Phishing texts trick Apple iMessage users into disabling protection (source)
- Ransomware gangs pose as IT support in Microsoft Teams phishing attacks (source)
- Microsoft Teams phishing attack alerts coming to everyone next month (source)
- New Apple CPU side-channel attacks steal data from browsers (source)
- New SLAP & FLOP Attacks Expose Apple M-Series Chips to Speculative Execution Exploits (source)
- How to Prevent Phishing Attacks with Multi-Factor Authentication (source)
- Apple fixes zero-day exploited in 'extremely sophisticated' attacks (source)
- Apple warns 'extremely sophisticated attack' may be targeting iThings (source)
- Apple fixes zero-day flaw exploited in “extremely sophisticated” attack (CVE-2025-24200) (source)
- Microsoft: Hackers steal emails in device code phishing attacks (source)