INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

The Phishing Email is Evading Encryption

| 2026-03-23 15:00 CRITICAL HIGH
Executive Summary AI-generated
The threat landscape has shifted dramatically in recent years, with voice-based phishing emerging as a significant concern. This shift is concerning given the sophistication of social engineering attacks and their ability to exploit vulnerabilities without requiring technical skill. Mandiant's annual M-Trends report highlights that voice phishing surged in 2025, accounting for 11% of all incidents, while email-based phishing dropped significantly. The rise of voice phishing marks a new era in cybercrime tactics, making it more time-consuming and challenging for attackers to gain access to victim networks. This shift underscores the need for organizations to prioritize robust incident response measures and stay vigilant against emerging threats like voice-based phishing.
Technical Mitigations AI-generated
* Implement robust security measures, such as multi-factor authentication and encryption, to protect against voice-based phishing attacks. * Regularly update software and systems with the latest security patches to prevent exploitation of known vulnerabilities. * Educate employees on social engineering tactics and best practices for reporting suspicious activity to ensure timely incident response. * Conduct thorough risk assessments and vulnerability scans to identify potential entry points for attackers before they can exploit them.
AI Podcast (EN) detail_available
detail_listen_ai (EN)
Intelligence distributed on:
Incident Link
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Scattered SpiderScattered Spider CarbonCarbon CVE-2025-53770CVE-2025-53770 CVE-2025-31324CVE-2025-31324 CVE-2025-61882CVE-2025-61882
Target & Sectors
Global Scope technologytechnology healthhealth financefinance
Incident Timeline
2025-01-15
Threat actors used Scattered Spider's extortion-only tools to target Marks & Spencer on January 15, 2025.
tactic Extortion
tactic Ransomware
threat_actor Scattered Spider
organisation Marks & Spencer
2025-03-23
Threat actors used voice-based phishing to target 11% of all incidents last year, including campaigns attributed to threat groups such as Google Threat Intelligence Group's UNC6040 and UNC6240.
tactic Phishing
attribution Google Threat Intelligence Group
tactic Social Engineering
threat_actor Scattered Spider
general_metric 11 %
general_metric 32 %
general_metric 6 %
general_metric 14 %
general_metric 22 %
data_breach 500,000 combined hours
general_metric 450,000 hours
2026-03-23
Threat actors used voice-based phishing to target companies around the world, including Allianz, Qantas and Google.
organisation Pure Data Theft and Extortion
organisation CVE-2025
organisation Oracle E-Business Suites
organisation Salesforce
organisation Mandiant
organisation CVE-2025-61882
organisation CVE-2025-31324
organisation SAP NetWeaver
organisation Oracle E-Business Suite
organisation Microsoft SharePoint
organisation ShinyHunters
organisation Allianz
organisation Qantas
organisation Google
organisation CyberScoop
Tactical Metrics
Metrics
data_breach
500,000
Combined Hours
Intelligence Sources
Infosecurity-Magazine 2026-01-15
CyberScoop 2026-03-23