The Ultimate Guide to Phishing
A curated Kiwi edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Phishing.
What to know about Phishing
Phishing, a pervasive form of cybercrime, continues to evolve in sophistication and scale, posing significant risks to individuals and organisations worldwide. This tag gathers extensive insights into phishing tactics, including traditional email scams, spear-phishing, SMS phishing (smishing), and emerging AI-assisted attacks that exploit human vulnerabilities and trusted brand impersonations.
Recent stories highlight the increasing frequency and complexity of phishing attacks, such as operations targeting specific sectors like finance, industrial engineering, and healthcare. Reports reveal how cybercriminal groups adapt by leveraging multi-factor authentication exploits, brandjacking, and sophisticated social engineering to compromise credentials and infiltrate networks.
Readers exploring this tag will gain valuable understanding of how phishing attacks are conducted, who the most vulnerable targets are—from individual contributors to C-suite executives—and what measures organisations and individuals can take to mitigate risks. The tag also delves into cybersecurity solutions, training programs, and industry collaborations designed to bolster phishing resistance, emphasizing the critical role of combining technology, awareness, and proactive defense to combat this ever-changing threat landscape.
Kiwi Phishing News
Regional stories with direct local relevance
Hatch warns customers of DriveWealth data exposure
Customer contact details and portfolio data were exposed in a breach at Hatch's US broker partner, though no holdings or transactions were affected.
New Zealand SMEs face rising cyber threats, study finds
Nearly three-quarters of medium-sized firms have faced a cyber threat in six months, as AI scams and weak staff training heighten risk.
AI shrinks exploit window to zero days, ESET warns
Businesses have almost no time to patch flaws now, as ESET says the median gap between disclosure and exploitation fell to zero days in 2026.
ChatGPT search links New Zealanders to unsafe sites
New Zealand users risk fake login pages and scam sites after ChatGPT search results were found pointing to unsafe links and downloads.
Cybersecurity experts raise alarm after back-to-back data breaches
Schools and payroll users face heightened phishing and identity-theft risks after breaches exposed sensitive data at multiple firms.
Half of New Zealand agencies miss email security bar
Spoofed emails could still reach public servants and citizens, as 50% of more than 200 New Zealand agencies have not met the DMARC standard.
Analyst Insights
Research and market analysis connected to Phishing
Financial firms face rising AI cyber risk, survey says
Financial services breach risk rises as AI adoption surges
KnowBe4 wins Frost & Sullivan email security award
Phishing costs rise to USD $51,948 per analyst yearly
TrendAI named Gartner endpoint leader for 21st time
Featured News
Mimecast CEO: Agentic AI threat novel but not entirely new
Hidden AI risks are already widespread in workplaces, with Mimecast saying users are driving shadow tools and most exposure still starts with people.
AI models expose new attack surfaces through misconfiguration
Misconfigured models are giving attackers a fresh route into cloud systems, raising the risk of data theft and service compromise.
SonicWall boosts endpoint security for SMBs and mid-market
SMBs and mid-market firms facing AI-driven attacks are set for tighter device controls as SonicWall prepares a new endpoint security product.
Check Point: Be the best, or get out the way
Rising AI-driven attacks are compel security buyers to cut vendor sprawl, though Check Point warns over-consolidation can still raise risk.
Archaic payment processes costing SMEs time and money
Australian SMEs are missing working capital gains as manual invoicing and EFTs leave payments slower and less secure.
AI reshaping cybersecurity - on defence and attack
Criminals are using AI to scale phishing and hunt flaws faster, forcing firms to harden defences as alert volumes and risks rise.
Reviews
Expert Columns
Mathspace Breach Exposes 1 Million Students, Parents, and Teachers
Weaponizing trust: How AI and social engineering bypass personal security boundaries
Phantom Deal: Inside an Imposter Scam Targeting an Avast Employee
When AI accelerates the threat, identity governance cannot afford to stand still
Identity the new security perimeter in the age of autonomous AI
How can phishing-resistant authentication strengthen AML compliance across the accounting sector?
Why a heartbreaking post in your feed deserves a second look before you share
Cyber criminals are not breaking in - they're logging in
Why financial services now leads email deliverability
AI does not invent cyber risk, it accelerates it
Interviews
Interviews and video coverage from the networkRecent Phishing News
Blackpoint adds identity threat tools to CompassOne
The update gives Microsoft 365, Google Workspace and Cisco Duo users faster containment and clearer evidence as identity attacks rise.
Proofpoint launches AI security against trusted attacks
Targeted phishing and payment fraud are getting harder to spot as attackers mimic routine business workflows and trusted contacts.
New Zealanders fall into AI confidence trap, Avast says
Many New Zealanders are sharing sensitive data with chatbots despite fearing AI fakes, leaving them exposed to scams and data leaks.
Two-thirds of US telecoms in elevated cyber risk band
Smaller operators are carrying much of the danger as a new study finds 66% of assessed US telecoms fall into an elevated risk band.
AI security incidents expose new criminal tradeoffs
Criminals are increasingly using AI for ransomware and credential theft, while flaws in test models are exposing production systems and data.
Whitepaper links water hacks to telecom cyber risk
With most operators exposed to basic flaws, the paper warns telecom networks could face the same low-effort intrusions seen in US water systems.
Microsoft & Google use shared exchange to hit RedVDS
Criminal access to thousands of Microsoft accounts was cut off after the companies shared threat data through the Global Signal Exchange.
AI systems expose sensitive data in ANZ, report finds
Downstream AI alerts in Australia and New Zealand are rising as agents and MCP links create fresh routes for sensitive data leakage.
IT pros say password sharing is top security lapse
User behaviour remains IT's biggest vulnerability, with 65% of professionals saying password sharing is the worst security lapse.
Check Point warns of rising cyber attacks & AI risk
Organisations faced 2,422 cyber attacks a week in August as ransomware and phishing intensified, while AI use created fresh data exposure risks.
Check Point warns of rising attacks & AI data leak risk
Rising phishing, ransomware and AI misuse are leaving organisations exposed, with weekly attacks up 22% from a year earlier.
Google warns of AI-powered cyberattacks in live ops
Defenders now have minutes, not hours, as attackers use agentic AI to automate credential theft, scanning and extortion across live operations.
Zscaler launches Agentic SOC to fight AI-driven attacks
Security teams under pressure from faster intrusions can now use Zscaler's new platform to spot and contain AI-driven attacks at machine speed.
Google warns cyber attackers are moving to agentic AI
Attackers are compressing intrusions into hours, leaving defenders less time to spot and stop credential-harvesting campaigns.
MrBeast tops impersonation scams, Malwarebytes says
Fraudsters are timing texts for lunch and Fridays, as MrBeast led impersonation scams in Malwarebytes' three-month global study.
AI-generated cyber attacks to hit firms soon, warn experts
Many firms lack the capacity to fix existing flaws fast enough, leaving them exposed as AI-generated attacks scale up, experts warn.
Netpoleon ANZ expands Cofense phishing defence pact
Rising AI-driven phishing attacks are pushing ANZ organisations towards post-perimeter defences, as Netpoleon widens Cofense access through its channel network.
KnowBe4 launches Google Workspace email security Defend
For Google Workspace users, the new Defend release adds phishing detection, AI verdicts and employee coaching against business email compromise.
Abnormal AI adds email controls & phishing training
Businesses face broader email risk as Abnormal adds outbound data-loss controls and adaptive phishing training to its security platform.
Bitdefender warns of school scams across Asia-Pacific
Families across Asia-Pacific are being lured by fake grants, scholarships and delivery alerts as scammers exploit rising education costs and AI tools.