Credential phishing content and link (untrusted sender)
Credential phishing: Engaging language and other indicators (untrusted sender)
Credential phishing: Engaging language with IPFS link
Credential phishing: Fake card notification with tracking lure
Credential phishing: Generic document sharing
Credential phishing: Hyper-linked image leading to free file host
Credential phishing language and suspicious indicators (unknown sender)
Credential phishing link (unknown sender)
Credential phishing: Onedrive impersonation
Credential phishing: Re-Authentication lure
Credential phishing: Suspicious e-sign agreement document notification
Credential Phishing: Suspicious language, link, recipients and other indicators
Credential phishing: Tax form impersonation with payment request
Deceptive Dropbox mention
DocuSign impersonation via CloudHQ links
Fake message thread with a suspicious link and engaging language from an unknown sender
Fake scan-to-email message
Fake voicemail notification (untrusted sender)
Fake Zoho Sign template abuse
Fake Zoom meeting invite with suspicious link
File sharing link from suspicious sender domain
File sharing link with a suspicious subject
Free subdomain link with credential theft indicators
Google Accelerated Mobile Pages (AMP) abuse
Google Drive abuse: Credential phishing link
Google Drive direct download link from unsolicited sender
Google Notification alert link from non-Google sender
Google presentation open redirect phishing
Google services using g.co shortlinks
Image as content with a link to an open redirect
Impersonation: Chrome Web Store policy
Impersonation: Fake product discount promotion
Impersonation: Salesforce fake campaign failure notification
Impersonation: Suspected supplier impersonation with suspicious content
Inline image as message with attachment or link
Issuu document with suspicious embedded link
Link: 9WOLF phishkit initial landing URI
Link: Abused Adobe Express
Link abuse: Self-service creation platform link with suspicious recipient behavior
Link: Adobe share with suspicious indicators
Link: Apple App Store link to apps impersonating AI adveristing
Link: Apple App Store malicious ad manager themed apps from free email provider
Link: Apple TestFlight from suspicious sender
Link: Base64 encoded recipient address in URL fragment with hex subdomain
Link: Base64 encoded recipient address in URL fragment with subject hash
Link: BEC with newly registered domains and financial keywords
Link: Blogspot hosting explicit romance content
Link: Breely link masquerading as PDF
Link: chatbot.page platform abuse
Link: Common hidden directory observed