Netcraft identified nearly 40,000 #phishing URLs targeting U.S. financial services in H1 2026.
Our latest report explores shifts in phishing infrastructure, the emergence of Omegatech, and the growing influence of #AI.
eu1.hubs.ly/H0ywDpF0
Think you can spot a fake login page?
From AI-recommended #phishing links to BiTM attacks that serve the real Microsoft login page, modern phishing campaigns are harder to detect than ever.
See 5 real examples and the warning signs to watch for: eu1.hubs.ly/H0yt_940
Netcraft's automated detection cuts average phishing URL availability to ~2 hours and gets takedowns done in ~2.4 hours, giving security teams their time (and weekends) back.
See what that looks like in practice: eu1.hubs.ly/H0yt_jF0#phishing#casestudy#cybersecurity#ROI
After President Trump proposed renaming AI to "super intelligence" (SI), registrations of Slovenian .si domains overtook .ai. Netcraft's latest research explores the surge, domain speculation, and the cybersecurity implications. eu1.hubs.ly/H0yB8TJ0#domains#AI#SI
#Phishing takedowns can fail for a variety of (predictable) reasons.
We broke down how to identify the right abuse contact, build a report that doesn't get punted back, and escalate when it stalls. eu1.hubs.ly/H0yt_6L0
Phishing campaigns are now living on Padlet and Scribe — legit collaboration tools turned into fake "secure document" lures. One variant skips credential theft entirely and just installs ScreenConnect malware instead.
Hi @RadicDavydov, our Provider Relations team would love to get in touch to discuss our reporting of malicious URLs inadvertently hosted on RealiableSite. Are you able to send us a DM or send an email to providers@netcraft.com for us to discuss further?
The tricky part about Australia's SPF is that the six principles are already law, but the fine print for banks, telcos, and platforms is still being written. So we built a checklist for that gap. Self-assess now instead of waiting on final rules: eu1.hubs.ly/H0ygrCh0
Attackers don't publish an asset inventory.
They use #cloaking, #geofencing, and redirect chains specifically so they don't show up in the feeds everyone already monitors.
64% of our takedowns in 2026 relied on data OSINT alone wouldn't have found. eu1.hubs.ly/H0yl0Gj0
Netcraft now protects 7 of the top 12 U.S. banks after adding 5 more this year — and passed 4.1 million takedowns in 2026, already surpassing our 2025 total. In case you missed it earlier this week: eu1.hubs.ly/H0ygrqF0
Evaluating #DigitalRiskProtection providers?
We put together a guide covering key capabilities, considerations, and some of the leading solutions in the market.
eu1.hubs.ly/H0y8BD20
Ox Alpha appeared on #OpenRouter under a stealth release policy — the developer stayed anonymous while requests were routed to the real model behind the scenes.
It exploded: 5+ trillion tokens processed in a single day at its peak.
The lesson? An unclaimed identity is an exploitable one. With no rights holder to name, there was no one who could request a takedown without de-anonymizing themselves first.
Treat any stealth model like an unattributed dependency: test it, don't trust it with anything sensitive. And treat "easier access" sites as unknown third parties — no matter what they claim.
Full writeup: netcraft.com/blog/nobody-cla…