Brand impersonation: Social Security Administration
Brand impersonation: SoFi
Brand impersonation: Stripe notification
Brand impersonation: UK government Home Office
Brand impersonation: United States Patent and Trademark Office
Brand impersonation: Zoom
Brand impersonation: Zoom via lookalike domain
Brand impersonation: Zoom with deceptive link display
Callback phishing via Adobe Sign comment
Callback phishing via DocuSign comment
Callback Phishing via Signable E-Signature Request
Callback phishing via SignFree e-signature request
Callback phishing via Xodo Sign comment
Canva design with suspicious embedded link
Catbox.moe link from untrusted source
ClickFix: Clipboard hijack lure with copy-paste-to-terminal instruction
ClickFunnels link infrastructure abuse
Cloud storage impersonation with credential theft indicators
Commonly abused sender TLD with engaging language
Credential phishing: AWS Lambda URL with recipient targeting
Credential phishing: Blue button styled link with file-sharing template artifacts
Credential phishing content and link (untrusted sender)
Credential phishing: Engaging language and other indicators (untrusted sender)
Credential phishing: Engaging language with IPFS link
Credential phishing: Fake card notification with tracking lure
Credential phishing: Generic document sharing
Credential phishing: Hyper-linked image leading to free file host
Credential phishing language and suspicious indicators (unknown sender)
Credential phishing link (unknown sender)
Credential phishing: Onedrive impersonation
Credential phishing: Re-Authentication lure
Credential phishing: Suspicious e-sign agreement document notification
Credential Phishing: Suspicious language, link, recipients and other indicators
Credential phishing: Tax form impersonation with payment request
Deceptive Dropbox mention
DocuSign impersonation via CloudHQ links
Evasion: Hidden text using CSS-obscured HTML option labels
Evasion: Suspicious TLD link redirecting to Wikipedia
Fake message thread with a suspicious link and engaging language from an unknown sender
Fake scan-to-email message
Fake voicemail notification (untrusted sender)
Fake Zoho Sign template abuse
Fake Zoom meeting invite with suspicious link
File sharing link from suspicious sender domain
File sharing link with a suspicious subject
Free subdomain link with credential theft indicators
Google Accelerated Mobile Pages (AMP) abuse
Google Drive abuse: Credential phishing link
Google Drive direct download link from unsolicited sender
Google Notification alert link from non-Google sender