Cybercriminelen misbruiken menselijke psychologie door middel van phishing-e-mails, nepinlogpagina's en imitatietechnieken. Deze aanvallen omzeilen technische verdedigingen door gebruikers te manipuleren zodat zij gevoelige informatie onthullen, op schadelijke koppelingen klikken of geïnfecteerde bestanden downloaden.
Typische signalen
- Lookalike domains, OAuth consent phishing, MFA-prompt bombing
- Adversary-in-the-Middle (AitM) proxy flows (token/session theft)
- Smishing/QR-phishing + "CAPTCHA" lures naar credential harvesters
Actueelheidscheck
- Shift van attachments naar URL's en "malwareless" credential theft
- Bescherm collaboration tooling (Teams/SharePoint) en IdP portals
- Controls: phishing-resistant MFA, URL isolation, DMARC enforcement