A new report from SlashNext has shown that in the last six months there has been a 341% increase in malicious phishing links, business email compromise (BEC) attacks, attacks using QR codes, and attachment-based threats.

Overall, over the past year, there has been an 856% increase in threats related to malicious emails and messages (according to the same report). The increased attacks are also largely related to the emergence of AI chatbots. Since the launch of ChatGPT in November 2022, there has been a 4151% increase in phishing emails.
See also: US Postal Service (USPS): Phishing sites have the same traffic as legitimate sites
“A malicious user can use ChatGPT in a number of ways, including creating convincing phishing emails,” warned Darren Guccione, CEO and co-founder of Keeper Security.
Guccione explained that these tools help cybercriminals create content or malicious code for a ransomware attack, and at the same time do it quickly and easily.
The report also identified a 217% increase in phishing attacks aimed at collecting credentials and a 29% increase in BEC attacks over the past six months.
See also: CryptoChameleon phishing: Hackers impersonate LastPass employees
CAPTCHA- based attacks have also increased, with attackers using CloudFlare's CAPTCHAs to hide credential collection forms.
It is also common to use trusted services such as Microsoft SharePoint , AWS, and Salesforce to hide phishing and malware. QR code- based attacks now account for 11% of all phishing attacks, often embedded in legitimate infrastructure.

Phishing protection
Users should be cautious and suspicious of messages SMS or email they receive without expecting it. They should always be aware of the latest phishing techniques and learn how to recognize suspicious emails or scams . It is advisable to avoid clicking on links and attachments that look suspicious.
Using reliable security software that provides protection against malware and viruses is also helpful. This can help detect and avoid phishing attacks.
See also: LabHost: Phishing service removed – Members arrested
Next, users should be careful about the apps they download and install on their devices. They should only download apps from trusted sources and avoid apps that look suspicious or don't have good reviews.
Finally, it is essential to use different passwords for different accounts. Don't forget about two-factor authentication where available, for an extra layer of security on their accounts.
🔑 Secure your passwords with Proton Pass
Password manager from Proton — end-to-end encryption, passkeys, built-in 2FA, and monitoring for leaks of your credentials.
- ✔ Encrypted storage of passwords & passkeys
- ✔ Notification if any of your passwords are leaked (Dark Web Monitoring)
- ✔ Free version — on all devices
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
Source: www.infosecurity-magazine.com
