October 2026 Compliance Deadline – For NZISM-subject organisations, Panotect provides a direct pass/fail evaluation against SGE mandatory controls (Section 15.2.36) with a live countdown –

The A to Z of
Email Attacks

An exhaustive catalog of email-based cyber threats, from common phishing attempts to sophisticated state-sponsored attacks. A comprehensive guide for security professionals and executives.

FILTER BY SEVERITY

Select a severity level to filter the threats below

AAccount & Advance Fee Attacks

Account Takeover (ATO)

Unauthorized access to email accounts through credential theft, often leading to internal phishing campaigns.

High Threat

Advance Fee Fraud

Classic "419" scams promising large payouts in exchange for upfront fees or personal information.

Medium Threat

Attachment-Based Malware

Malicious files disguised as legitimate documents that install malware when opened.

High Threat
BBusiness & Brand Impersonation

Business Email Compromise (BEC)

Sophisticated fraud targeting business processes through executive impersonation and vendor spoofing.

Critical Threat

Brand Impersonation

Emails mimicking trusted brands to steal credentials or distribute malware.

Medium Threat

Bulk Phishing

Mass-distributed phishing emails targeting large numbers of recipients simultaneously.

Medium Threat
CCredential & Clone Attacks

CEO Fraud

Impersonation of executives to authorize fraudulent wire transfers or data requests.

Critical Threat

Credential Harvesting

Phishing attacks designed specifically to steal usernames and passwords.

High Threat

Clone Phishing

Replication of legitimate emails with malicious links or attachments substituted.

High Threat
DDomain & Display Spoofing

Domain Spoofing

Using similar-looking domains to impersonate legitimate organizations.

High Threat

Display Name Spoofing

Manipulating sender display names while using different actual email addresses.

Medium Threat

Deepfake Voice/Video

AI-generated audio or video content used to support email-based fraud schemes.

Critical Threat
EExecutive & Email Targeting

Email Bombing

Overwhelming email systems with massive volumes of messages to disrupt operations.

Medium Threat

Executive Whaling

Highly targeted phishing attacks specifically aimed at senior executives and decision-makers.

Critical Threat

Email Interception

Man-in-the-middle attacks capturing email communications in transit.

High Threat
FFinancial & File-based Attacks

Fake Invoice Scams

Fraudulent billing requests designed to trick organizations into making payments.

High Threat

Financial Fraud

Email-based schemes targeting banking information and financial transactions.

Critical Threat

File-less Malware

Malicious code that operates in memory without leaving traditional file traces.

High Threat
GGift Card & Google Attacks

Gift Card Scams

Requests for gift card purchases under false pretenses, often impersonating executives.

Medium Threat

Google Docs Phishing

Malicious sharing requests for fake Google Docs to harvest credentials.

Medium Threat
HHoliday & HTML Attacks

Holiday Scams

Seasonal phishing campaigns exploiting holiday themes and shopping behaviors.

Medium Threat

HTML Smuggling

Embedding malicious payloads within HTML attachments to bypass security filters.

High Threat
IIdentity & Internal Attacks

Identity Theft

Email campaigns designed to steal personal identifying information for fraudulent use.

High Threat

Internal Phishing

Attacks originating from compromised internal accounts to target other employees.

Critical Threat
JJob-related Scams

Job Scams

Fake employment opportunities used to collect personal information or advance fees.

Medium Threat
KKeylogger Attacks

Keylogger Distribution

Email delivery of software designed to capture keystrokes and steal credentials.

High Threat
LLink & Lottery Scams

Link Manipulation

Disguising malicious URLs to appear legitimate and bypass user scrutiny.

High Threat

Lottery Scams

Fake lottery winnings notifications requesting fees or personal information.

Low Threat
MMobile & Malware Attacks

Mobile Phishing

Phishing attacks specifically designed for mobile email clients and smaller screens.

Medium Threat

Malware-as-a-Service

Commercially available malware distributed through email campaigns.

High Threat
NNigerian & Network Attacks

Nigerian Prince Scams

Classic advance fee fraud schemes promising large financial rewards.

Low Threat

Network Reconnaissance

Email-based intelligence gathering about network infrastructure and security.

Medium Threat
OOffice 365 Attacks

Office 365 Phishing

Targeted attacks against Microsoft Office 365 users and administrators.

High Threat
PPhishing & Pretexting

Phishing

Deceptive emails designed to steal credentials, install malware, or commit fraud.

High Threat

Pharming

Redirecting users from legitimate websites to fraudulent ones through DNS manipulation.

High Threat

Pretexting

Creating false scenarios to manipulate victims into divulging information.

High Threat
QQR Code Attacks

QR Code Phishing

Malicious QR codes in emails leading to phishing sites or malware downloads.

Medium Threat
RRansomware & Romance Scams

Ransomware Distribution

Email delivery of ransomware payloads that encrypt systems for financial extortion.

Critical Threat

Romance Scams

Long-term relationship building to eventually request money or personal information.

Medium Threat
SSpear Phishing & Supply Chain

Spear Phishing

Highly targeted phishing attacks using personal information about specific victims.

Critical Threat

Supply Chain Attacks

Compromising trusted vendors to attack their customers through email communications.

Critical Threat

Social Engineering

Psychological manipulation to trick users into compromising security.

High Threat
TTax, Tech Support & Typosquatting

Tax Scams

Impersonating tax authorities to steal personal information or payments.

Medium Threat

Tech Support Scams

Fake technical support requests leading to system compromise or fraud.

Medium Threat

Typosquatting

Registering domains with common typos of legitimate sites to intercept emails and steal credentials.

High Threat
UURL Manipulation

URL Shortening Abuse

Using shortened URLs to hide malicious destinations and bypass security filters.

Medium Threat
VVendor & VIP Attacks

Vendor Email Compromise (VEC)

Compromising supplier email accounts to attack their business partners.

Critical Threat

Vishing (Voice Phishing)

Phone calls supporting email-based attacks or gathering information for future attacks.

High Threat

VIP Impersonation

Impersonating high-profile individuals to gain trust and bypass security measures.

Critical Threat
WWatering Hole & Whaling

Watering Hole Attacks

Compromising websites frequently visited by target organizations.

High Threat

Whaling

Sophisticated phishing attacks targeting high-value individuals like executives.

Critical Threat

WiFi Phishing

Fake WiFi networks used to intercept email communications and credentials.

Medium Threat
XXML Exploits

XML External Entity (XXE)

Exploiting XML processing vulnerabilities through malicious email attachments.

High Threat
YYear-End Attacks

Year-End Scams

Seasonal fraud campaigns exploiting financial year-end processes and deadlines.

Medium Threat
ZZero-Day & Zero-Click

Zero-Day Exploits

Attacks leveraging unknown vulnerabilities before patches are available.

Critical Threat

Zero-Click Attacks

Malware delivered via email that executes without any user interaction required.

Critical Threat