Cyber Intelligence

Linkedin
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map
Reading: Threat actors’ preferred names? Microsoft, Meta, and Google
Share
Cyber IntelligenceCyber Intelligence
Aa
  • News
  • Analysis
  • Expert Opinions
  • Resources
Search
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map

Cyber Intelligence

Linkedin
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map
Reading: Threat actors’ preferred names? Microsoft, Meta, and Google
Share
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
AnalysisPhishing

Threat actors’ preferred names? Microsoft, Meta, and Google

John Wilkes
August 29, 2023 at 10:00 AM
By John Wilkes John Wilkes
Share
SHARE

Tech giants Microsoft, Alphabet (Google), Amazon, and Meta (Facebook) are now seeing their brands being compromised to trick organizations and individuals into opening their security doors to cyber criminals.

Attackers send phishing emails falsely purporting to be from a legitimate brand such as Microsoft or Google with a seemingly innocuous but weaponized link containing malware, leaving victims open to financial fraud and companies and their suppliers and customers open to potential ransomware attacks. Last year, the Federal Bureau of Investigation (FBI) recorded over 300,000 successful phishing attacks.

According to cybersecurity firm Abnormal Security, the world’s three most impersonated brands are Microsoft, PayPal, and Facebook, with Google and Amazon also appearing in the top ten, together with McAfee, Oracle, DocuSign, and Intuit. Phishing emails claiming to be from these brands can be disguised as fake alerts to fraudulent activity, false warnings about losing account access, or even as a simple sign-in request. While Big Tech brands are impacted the most, other affected brands include Best Buy, American Express, Netflix, Adobe, and Walmart.

“Microsoft is by far the most commonly spoofed company — with nearly 650,000 attacks stopped by Abnormal last year. That’s 4.31% of all phishing attacks among 350 brands,” says  Abnormal Security CISO Mike Britton.

Britton adds that the aim of most phishing attacks using the Microsoft brand is to acquire the credentials needed to gain access to Microsoft’s 365 environments to steal sensitive data from Outlook or SharePoint.

The damage being done to Microsoft by this type of online brand impersonation is far higher than for any other global brand and comes at a time when the Microsoft brand is already struggling in the search engine space. Although Microsoft has chosen to dispute the findings, web analytics firm Statcounter is adamant that Microsoft’s new AI-powered Bing Chat search engine, launched with a huge global fanfare six months ago, has failed to win any appreciable new market share. In February, when the new Bing was launched, its market share was 6.35% and peaked at 6.61% in March, according to Statcounter. The web analytics firm also reports that, by contrast, Microsoft Bing’s market share was typically over 7% in 2022, with a high of 7.82% in November.

Another study, also released this month, highlights the growing menace that phishing attacks now represent for businesses across all sectors. Cybersecurity firm Cloudfare reports that 71% of organizations experienced an attempted or actual business email compromise attack in 2022.  Cloudflare’s study drew on over 279 million email threat indicators, 250 million malicious messages, and more than a billion instances of brand impersonation from emails processed between May 2022 and May 2023 and found the method used in roughly a third of all threats was deceptive links.

TAGGED: abnormal security, amazon, bing search engine, brand impersonation, brands, cloudfare, cybercriminals, facebook, fbi, google, impersonation, Microsoft, mike britton, phishing, statcounter
John Wilkes September 11, 2023 August 29, 2023
Share This Article
Twitter LinkedIn Email Copy Link Print
Previous Article North Korea steals $40m in cryptocurrency in one day
Next Article The Daily Decrypt - One Minute Roundup FBI nails Qakbot offender – August 30th
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Editor's Pick

You Might Also Like

NewsOne Minute RoundupOne Minute Roundup

Geopolitical Tensions are Changing the Cybersecurity Landscape – June 13th

Political tensions are prompting nations to re-strategize cybersecurity. Countries that once sought international cooperation and joint strategies are now prioritizing domestic cyber capacities and national interests as a result of geopolitical instabilities.

June 13, 2025
CryptocurrencyNewsNorth Korea

Bogus IT workers are defrauding US businesses

The US government has seized over $7.74 million in illegal funds, allegedly siphoned off by illegitimate North Korean Information Technology (IT) workers for the benefit of the North Korean government. The US Department of Justice (DOJ) has filed a civil forfeiture complaint alleging that the IT workers secured employment in the US illegally, racking up millions of dollars in cryptocurrency and bypassing US sanctions placed against North Korea. According to the US Federal Bureau of Investigation (FBI), the use of North Korean IT workers to defraud the US is now taking place on a massive scale.

June 13, 2025
NewsOne Minute RoundupOne Minute Roundup

UK backs AI and intelligence modernization – June 12th

The UK government has announced its plans to invest in digital and artificial intelligence (AI) in public services, including the NHS, aiming to build strong technology foundations and tackle urgent cybersecurity risks.

June 12, 2025
cybercrimeNewsransomwareRussia

Teenage hackers run rings around cyber-defenses

The recent UK retail cyberattacks that impacted Marks & Spencer and the Co-Op supermarket chain are only the tip of a very large iceberg that now threatens organizations on both sides of the Atlantic. Although media reports have attributed the attacks to a group named “Scattered Spider,” the actual threat is far bigger. For a start, there is no criminal group that actually calls itself “Scattered Spider”, which is just a made-up name attributed by cybersecurity researchers. These attacks and many others in the US and the UK are now known to be the work of a vast sprawling network of hackers, some as young as 14, spread across the US and the UK. They call themselves “the Community”, or “the Com” for short, and are essentially a vast teenage subculture of criminal hackers.

June 10, 2025

Cyber Intelligence

We provide in-depth analysis, breaking news, and interviews with some of the leading minds in cybersecurity and distill critical insights that matter to our readers. Daily.

Linkedin

Category

  • Cybercrime
  • News

Quick Links

  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map

© 2023 Cyberintel.media

Welcome Back!

Sign in to your account

Lost your password?