The Ultimate Guide to Phishing
A curated Indian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Phishing.
What to know about Phishing
Phishing, a pervasive form of cybercrime, continues to evolve in sophistication and scale, posing significant risks to individuals and organisations worldwide. This tag gathers extensive insights into phishing tactics, including traditional email scams, spear-phishing, SMS phishing (smishing), and emerging AI-assisted attacks that exploit human vulnerabilities and trusted brand impersonations.
Recent stories highlight the increasing frequency and complexity of phishing attacks, such as operations targeting specific sectors like finance, industrial engineering, and healthcare. Reports reveal how cybercriminal groups adapt by leveraging multi-factor authentication exploits, brandjacking, and sophisticated social engineering to compromise credentials and infiltrate networks.
Readers exploring this tag will gain valuable understanding of how phishing attacks are conducted, who the most vulnerable targets are—from individual contributors to C-suite executives—and what measures organisations and individuals can take to mitigate risks. The tag also delves into cybersecurity solutions, training programs, and industry collaborations designed to bolster phishing resistance, emphasizing the critical role of combining technology, awareness, and proactive defense to combat this ever-changing threat landscape.
Indian Phishing News
Regional stories with direct local relevance
BioCatch flags surge in SMS fraud targeting Indian banks
Mobile-led fraud is forcing Indian banks to confront faster scams, bigger attempted transfers and a growing mule network.
Festive-season cyber fraud surges as shoppers seek discounts
Festive-season cyber fraud is surging across India, with Karnataka alone reporting losses above INR ₹2,000 crores, experts warn.
SecurEyes empowers Bengaluru students with digital safety lessons
SecurEyes held a cybersecurity session at Bengaluru's GEAR Innovative International School, teaching students how to stay safe and recognise online threats.
From awareness to action: Building a cyber-resilient India in the digital age
India's digital boom demands more than cyber awareness; it calls for a culture of proactive digital responsibility to withstand rising AI-driven cyber threats.
Agentic AI market set to soar as firms drive automation growth
Agentic AI market set to grow from USD $7.28 billion in 2025 to over $41 billion by 2030, driving automation and transforming sectors from cybersecurity to customer service.
AI & sustainability driving India's technology transformation
India is harnessing AI and sustainability to transform technology, driving economic growth and enhancing cybersecurity on National Technology Day 2025.
Analyst Insights
Research and market analysis connected to Phishing
Financial services breach risk rises as AI adoption surges
KnowBe4 wins Frost & Sullivan email security award
Phishing costs rise to USD $51,948 per analyst yearly
Gartner says 40% of governments will create TrustOps
Group-IB named a Leader in Gartner cyberthreat report
Featured News
Expert Columns
Why financial services now leads email deliverability
AI does not invent cyber risk, it accelerates it
Cyber hygiene 101: The big fundamentals
While OT security is maturing, risk is not slowing down
Why service desks are emerging as a critical security weakness
Stolen credentials don't have to mean a breach
One click can trigger a breach, but security can stop it
Building security outcomes for small businesses: Why breaches persist despite available tools
Hexnode CEO on how fintech breaches multiply where device visibility ends
Saving the weekend: How SonicWall's SonicSentry SOC stopped a Saturday night cyberattack
Interviews
Interviews and video coverage from the networkRecent Phishing News
GoDMARC offers protection against same-name phishing
GoDMARC offers a powerful defence against such malicious practices by implementing DMARC efficiently and easily.
Doppel launches AI email security & human risk service
Security teams face faster, more convincing phishing as Doppel rolls out tools that link inbox alerts to attack infrastructure and automate awareness training.
Cybercriminals shift from ransomware to data theft
Organisations face a growing risk of silent data theft as criminals exploit cloud identities and credentials for extortion instead of encryption.
Finance teams face rise of behavioural cyber attacks
Attackers are exploiting urgency and trust in payment and payroll processes, putting finance teams at risk of fraud, disruption and scrutiny.
Digimune & AnyTech365 launch AntiScam Mobile service
Rising smartphone fraud is pushing banks, insurers and telecoms to add scam protection without building it in-house.
Google warns of rise in open source supply chain attacks
Malicious packages are now spreading faster across code repositories, with Google saying open source ecosystems face the sharpest rise in risk.
Proofpoint flags underground AI prompt injection tools
Proofpoint says underground forums are advertising tools that use indirect prompt injection across emails, PDFs, calendar invites and web pages.
Russia-aligned hackers used Zimbra flaw in email attack
Ukrainian and US organisations were exposed for months after a Zimbra bug let attackers steal emails and credentials without a click.
Logokit phishing kit builds real-time fake login pages
Victims can be tricked more easily as Logokit now tailors fake login pages in real time, sending stolen credentials to Telegram bots.
Compromised credential monitoring lags threat awareness
Despite widespread concern over stolen logins, only 19% of organisations continuously monitor and automatically remediate exposed credentials.
Netskope says downstream AI data breaches are surging
Downstream AI data leaks have more than doubled in a year, with connected services now returning unauthorised information to staff and agents.
Google Cloud urges resilience as breaches become inevitable
Breaches are forcing boards to rethink cyber defence, with Google Cloud warning that recovery, staff readiness and containment matter most.
Attackers exploit trusted credentials in email fraud surge
Email fraud is now the top incident type, accounting for 45% of cases as attackers bypass multi-factor authentication with stolen credentials.
APT28-linked campaign hijacks hotel Wi-Fi for logins
Corporate travellers at hotels and conference centres were quietly sent to fake Microsoft 365 pages after attackers took over guest Wi-Fi gateways.
Firewalla App 1.69 adds AI threat analysis & phishing
Administrators gain phishing defences and AI alarm explanations as Firewalla folds more security controls into a single app update.
Manufacturers face new cyber risks from connected factories
Connected factory networks are widening the attack surface, with SonicWall warning that old flaws and weak access controls can expose production systems.
Phishing campaign targets universities & EU bodies
Researchers warn the campaign can bypass multi-factor authentication, putting university and EU-linked accounts at risk of real-time takeover.
Microsoft tops brand phishing list in Q2 2026 report
Attacks are increasingly concentrating on a handful of familiar brands, with Microsoft alone accounting for 23% of phishing attempts in Q2 2026.
Cisco urges continuous AI defence as threats speed up
AI-driven attacks are leaving firms with less time to spot and stop breaches, pushing security teams towards round-the-clock monitoring.
Expel warns of cyber gang targeting certificate trust
Financial firms in Asia Pacific face signed malware that can evade Windows checks after attackers abuse support portals to steal certificates.