Attachment: Adobe image lure in body or attachment with suspicious link
Attachment: Callback phishing solicitation via image file
Attachment: Cold outreach with invitation subject and not attachment
Attachment: Fake attachment image lure
Attachment: Fake scan-to-email
Attachment: Fake secure message and suspicious indicators
Attachment: Microsoft impersonation via PDF with link and suspicious language
Attachment: Microsoft SharePoint Impersonation via images in macro-enabled attachment
Attachment: PDF with secure document acknowledgment prompt
Attachment: QR code link with base64-encoded recipient address
Attachment: QR code with encoded recipient targeting and redirect indicators
Attachment: QR code with userinfo portion
Attachment: Romance scam with image lure and advance-fee or suspicious link indicators
Attachment: SVG files with evasion elements
Attachment: SVG file with hyperlinks and cursor styling
Brand impersonation: Coinbase with suspicious links
Brand impersonation: DocuSign with embedded QR code
Brand impersonation: Fake Fax
Brand impersonation: Fake procurement/RFQ PDF from energy and industrial companies
Brand impersonation: Figma with malicious document access overlay
Brand impersonation: Microsoft Planner with suspicious link
Brand impersonation: Microsoft with low reputation links
Brand impersonation: USPS
Cloud storage impersonation with credential theft indicators
Credential phishing: Hyper-linked image leading to free file host
Credential phishing: Image as content, short or no body contents
Credential theft: Gophish abuse with hidden tracking image
Image as content with a link to an open redirect
Impersonation: Recipient organization in sender display name with credential theft image
Inline image as message with attachment or link
Invoicera infrastructure abuse
Link: PDF display text with fake copyright claim template
PHP Mailer with common phishing attachments
Spam: BlackBaud infrastructure abuse
Spam: Item giveaway spam template
Spam: Mastercard promotional content with image-based body