---
title: The Latest Phishing Attacks & How Businesses Fall for Them
description: Did you know that 90% of successful data breaches begin with phishing scams? Since the term as we know it was first used in the late 1990s, phishing has evolved into cyber criminals’ most tried and true methods of stealing sensitive information or data from unsuspecting users and their businesses. They are costly, they are […]
---

[Skip to main content](https://bluelayer.com/blog/phishingattacks#main)

[![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_white.png) ![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_color.png)](https://bluelayer.com/)

- [Home](https://bluelayer.com/)
- [Managed Services](https://bluelayer.com/managed-services/)
- [Advisory Services](https://bluelayer.com/advisory-services/) 
    - [Servers & Cloud Services](https://bluelayer.com/servers-cloud-hosting/)
    - [Communications](https://bluelayer.com/communications/)
    - [Networking & SD WAN](https://bluelayer.com/networking/)
    - [Cybersecurity](https://bluelayer.com/cybersecurity/)
    - [Disaster Recovery](https://bluelayer.com/disaster-recovery/)
    - [Physical Security](https://bluelayer.com/physical-security/)
- [Cybersecurity](https://bluelayer.com/cybersecurity/)
- [About Us](https://bluelayer.com/about-us/)
- [Blog](https://bluelayer.com/blog/)
- [Support](https://bluelayer.com/support/)
- [Contact Us](https://bluelayer.com/contact/)

[Client Portal](https://portal.bluelayer.com/)

![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_color.png)

- [Home](https://bluelayer.com/)
- [Managed Services](https://bluelayer.com/managed-services/)
- [Advisory Services](https://bluelayer.com/advisory-services/) 
    - [Servers & Cloud Services](https://bluelayer.com/servers-cloud-hosting/)
    - [Communications](https://bluelayer.com/communications/)
    - [Networking & SD WAN](https://bluelayer.com/networking/)
    - [Cybersecurity](https://bluelayer.com/cybersecurity/)
    - [Disaster Recovery](https://bluelayer.com/disaster-recovery/)
    - [Physical Security](https://bluelayer.com/physical-security/)
- [Cybersecurity](https://bluelayer.com/cybersecurity/)
- [About Us](https://bluelayer.com/about-us/)
- [Blog](https://bluelayer.com/blog/)
- [Support](https://bluelayer.com/support/)
- [Contact Us](https://bluelayer.com/contact/)

[Client Portal](https://portal.bluelayer.com/)

# The Latest Phishing Attacks & How Businesses Fall for Them

 Dec 20, 2022, 12:17:13 PM [Admin](https://bluelayer.com/blog/author/admin)

Did you know that 90% of successful data breaches begin with [phishing scams](https://www.knowbe4.com/phishing)? Since the term as we know it was first used in the late 1990s, phishing has evolved into cyber criminals’ most tried and true methods of stealing sensitive information or data from unsuspecting users and their businesses. They are [costly](https://blog.knowbe4.com/whats-the-information-stolen-in-a-phishing-attack-really-worth), they are constantly [evolving into new shapes](https://blog.knowbe4.com/phishing-attacks-continue-to-grow-more-sophisticated), and they aren’t going anywhere. Some of the most recent and most prevalent attempts at phishing that we’ve seen have included:

Email phishing: Phishing emails are the most common form of attack and one of the oldest in the book. Most attempts use a trustworthy email address and format that the recipient will recognize. The emails contain clickable links that contain a malicious link, document, or image that’s used to obtain personal information or download malicious code. 

Spear phishing: Spear phishing is a more targeted attack that gathers public information used to target entire businesses or departments. 

CEO Fraud: Also known as “whaling,” this scam targets high-level executives of organizations, as opposed to those that they serve.

Business Email Compromise (BEC): This method is similar to whaling, but instead of attacking high-level executives, it impersonates them.

HTTPS phishing: These attacks are URL-based and an attempt to trick users into clicking what appears to be a safe link. In the past, HTTPS protocol required certain certificates that protected against these kinds of attacks. However, hackers are now able to obtain and apply those certificates to their scam sites for free. 

While they may appear different at face value, most phishing schemes essentially work the same way and have the same goal: stealing information from your business.

So, if they’ve been around for years and we know so much about them, then why are the latest phishing attacks still posing threats to businesses?

![](https://bluelayer.com/hs-fs/hubfs/Imported_Blog_Media/4uvqozZaVQWYplJ2me8XVdaH4vE0Sj9RHZfCU1wL4b279TEC0VCv05vqKLWBnclxarS_4XmenuX5F7lv_9n431H7fpkD39ZOgFtnPxzjjSCn5yIjRkkYCtOyWrj5ZFkpkKM9Hz_LNbOC4FJgAdaBo.jpg?width=624&height=416&name=4uvqozZaVQWYplJ2me8XVdaH4vE0Sj9RHZfCU1wL4b279TEC0VCv05vqKLWBnclxarS_4XmenuX5F7lv_9n431H7fpkD39ZOgFtnPxzjjSCn5yIjRkkYCtOyWrj5ZFkpkKM9Hz_LNbOC4FJgAdaBo.jpg)

## Some businesses fail to emphasize the importance of cybersecurity etiquette.

It’s easy to throw around words like “cybersecurity” or “phishing” or “cybercriminals,” but what do they actually mean for a business and its information? They can’t be that dangerous, right?

Wrong.

When employees are constantly bombarded with overstimulation of messages on a daily basis, it becomes all too easy for them to become detached from the grim reality that these types of threats pose. It’s also easy to let your guard down when work gets busy and you’re operating on autopilot. “Out of sight, out of mind” just doesn’t cut it when it comes to the latest phishing scams, and employees must be on guard at all times. How? With cybersecurity awareness training.

## Some businesses fail to properly train employees on cybersecurity awareness.

Suppose an employee doesn’t know how to identify and avoid phishing scams. How can they be expected to stand on the front lines between their business and cybercriminals who are constantly changing and evolving the way they attack? [Cybersecurity awareness training](https://bluelayer.com/blog/service-spotlight-cybersecurity-awareness-training/) puts everyone on the same page and teaches them how to identify and avoid malicious content, even when it is indiscernible from the rest of the messages flooding their inboxes.

## Some businesses fail to make cybersecurity awareness a natural part of their employees’ workday rhythms.

Cybersecurity awareness is the only way to combat the latest phishing attacks, and refining it should become as natural as opening your email in the morning. The same way hackers are constantly updating their methods, we have to continually update our knowledge. Becoming stagnant can mean leaving your business vulnerable.

Phishing attacks may be evolving and becoming [more sophisticated](https://bluelayer.com/blog/covid-19-cybersecurity-scams-to-look-out-for/), but that doesn’t mean your business has to fall for them. [Contact Blue Layer today to learn how our cybersecurity awareness training can transform your employees into impenetrable human firewalls!](https://bluelayer.com/contact-us/)

[Previous Post](https://bluelayer.com/blog/ittrendsin2023) [Next Post](https://bluelayer.com/blog/blue-layer-acquires-texas-computer-works)

Search

Search

## Recent Post

- Jul 30, 2026, 5:32:45 PM [“We Have Backups” Isn’t Enough](https://bluelayer.com/blog/we-have-backups-isnt-enough)
- Jul 30, 2026, 5:29:54 PM [The 3-2-1 Backup Rule Still Matters](https://bluelayer.com/blog/the-3-2-1-backup-rule-still-matters)

## Categories

- [Advancements and Trends](https://bluelayer.com/blog/tag/advancements-and-trends)
- [Blue Layer News](https://bluelayer.com/blog/tag/blue-layer-news)
- [Security Alerts](https://bluelayer.com/blog/tag/security-alerts)
- [Uncategorized](https://bluelayer.com/blog/tag/uncategorized)
- [Cybersecurity](https://bluelayer.com/blog/tag/cybersecurity)
- [Inc. 5000](https://bluelayer.com/blog/tag/inc-5000)
- [MSP](https://bluelayer.com/blog/tag/msp)
- [Partnership](https://bluelayer.com/blog/tag/partnership)
- [Phishing](https://bluelayer.com/blog/tag/phishing)
- [RingCentral](https://bluelayer.com/blog/tag/ringcentral)
- [Zoom Phishing](https://bluelayer.com/blog/tag/zoom-phishing)

## Tags

[Advancements and Trends](https://bluelayer.com/blog/tag/advancements-and-trends) [Blue Layer News](https://bluelayer.com/blog/tag/blue-layer-news) [Security Alerts](https://bluelayer.com/blog/tag/security-alerts) [Uncategorized](https://bluelayer.com/blog/tag/uncategorized) [Cybersecurity](https://bluelayer.com/blog/tag/cybersecurity) [Inc. 5000](https://bluelayer.com/blog/tag/inc-5000) [MSP](https://bluelayer.com/blog/tag/msp) [Partnership](https://bluelayer.com/blog/tag/partnership) [Phishing](https://bluelayer.com/blog/tag/phishing) [RingCentral](https://bluelayer.com/blog/tag/ringcentral) [Zoom Phishing](https://bluelayer.com/blog/tag/zoom-phishing)

## Archives

- [July 2026](https://bluelayer.com/blog/archive/2026/07)
- [March 2026](https://bluelayer.com/blog/archive/2026/03)
- [February 2026](https://bluelayer.com/blog/archive/2026/02)
- [December 2025](https://bluelayer.com/blog/archive/2025/12)
- [October 2025](https://bluelayer.com/blog/archive/2025/10)
- [June 2025](https://bluelayer.com/blog/archive/2025/06)
- [May 2025](https://bluelayer.com/blog/archive/2025/05)
- [October 2024](https://bluelayer.com/blog/archive/2024/10)
- [April 2024](https://bluelayer.com/blog/archive/2024/04)
- [January 2023](https://bluelayer.com/blog/archive/2023/01)
- [December 2022](https://bluelayer.com/blog/archive/2022/12)
- [November 2022](https://bluelayer.com/blog/archive/2022/11)
- [October 2022](https://bluelayer.com/blog/archive/2022/10)
- [July 2022](https://bluelayer.com/blog/archive/2022/07)
- [June 2022](https://bluelayer.com/blog/archive/2022/06)
- [March 2022](https://bluelayer.com/blog/archive/2022/03)
- [February 2022](https://bluelayer.com/blog/archive/2022/02)
- [January 2022](https://bluelayer.com/blog/archive/2022/01)
- [December 2021](https://bluelayer.com/blog/archive/2021/12)
- [November 2021](https://bluelayer.com/blog/archive/2021/11)
- [October 2021](https://bluelayer.com/blog/archive/2021/10)
- [September 2021](https://bluelayer.com/blog/archive/2021/09)
- [August 2021](https://bluelayer.com/blog/archive/2021/08)
- [July 2021](https://bluelayer.com/blog/archive/2021/07)
- [June 2021](https://bluelayer.com/blog/archive/2021/06)
- [May 2021](https://bluelayer.com/blog/archive/2021/05)
- [April 2021](https://bluelayer.com/blog/archive/2021/04)
- [February 2021](https://bluelayer.com/blog/archive/2021/02)
- [January 2021](https://bluelayer.com/blog/archive/2021/01)
- [December 2020](https://bluelayer.com/blog/archive/2020/12)
- [November 2020](https://bluelayer.com/blog/archive/2020/11)
- [October 2020](https://bluelayer.com/blog/archive/2020/10)
- [September 2020](https://bluelayer.com/blog/archive/2020/09)
- [August 2020](https://bluelayer.com/blog/archive/2020/08)
- [July 2020](https://bluelayer.com/blog/archive/2020/07)
- [June 2020](https://bluelayer.com/blog/archive/2020/06)
- [May 2020](https://bluelayer.com/blog/archive/2020/05)
- [April 2020](https://bluelayer.com/blog/archive/2020/04)
- [March 2020](https://bluelayer.com/blog/archive/2020/03)
- [February 2020](https://bluelayer.com/blog/archive/2020/02)
- [January 2020](https://bluelayer.com/blog/archive/2020/01)
- [December 2019](https://bluelayer.com/blog/archive/2019/12)
- [November 2019](https://bluelayer.com/blog/archive/2019/11)
- [October 2019](https://bluelayer.com/blog/archive/2019/10)
- [September 2019](https://bluelayer.com/blog/archive/2019/09)
- [August 2019](https://bluelayer.com/blog/archive/2019/08)
- [July 2019](https://bluelayer.com/blog/archive/2019/07)
- [June 2019](https://bluelayer.com/blog/archive/2019/06)
- [June 2018](https://bluelayer.com/blog/archive/2018/06)
- [March 2018](https://bluelayer.com/blog/archive/2018/03)
- [February 2018](https://bluelayer.com/blog/archive/2018/02)
- [January 2018](https://bluelayer.com/blog/archive/2018/01)
- [December 2017](https://bluelayer.com/blog/archive/2017/12)
- [September 2017](https://bluelayer.com/blog/archive/2017/09)
- [June 2017](https://bluelayer.com/blog/archive/2017/06)
- [May 2017](https://bluelayer.com/blog/archive/2017/05)
- [March 2017](https://bluelayer.com/blog/archive/2017/03)
- [February 2017](https://bluelayer.com/blog/archive/2017/02)
- [January 2017](https://bluelayer.com/blog/archive/2017/01)

[![Blue Layer](https://bluelayer.com/hubfs/raw_assets/public/website-theme/images/blue-layer/bluelayer-logo_white.png)](https://bluelayer.com/)

Not sure where to start? Let's just meet for coffee and chat! Coffee is on us and we'd love to learn about you.

- <https://www.facebook.com/bluelayerit>
- <https://x.com/bluelayerit>
- <https://www.linkedin.com/company/blue-layer>
- <https://www.youtube.com/@bluelayerit4754>

## Company

- [About Us](https://bluelayer.com/about-us/)
- [Blog](https://bluelayer.com/blog/)
- [Support](https://bluelayer.com/support/)
- [Contact Us](https://bluelayer.com/contact/)

## Services

- [Managed Services](https://bluelayer.com/managed-services/)
- [Advisory Services](https://bluelayer.com/advisory-services/)
- [Cybersecurity](https://bluelayer.com/cybersecurity/)

## Contact Info

Toll Free: [866.430.2647](tel:8664302647)  
Lubbock: [806.687.4765](tel:8066874765)  
South TX: [210.686.5877](tel:2106865877)  
North TX: [214.884.3555](tel:2148843555)

**Corporate Office:**  
6102 82nd St #13  
Lubbock, TX 79424

**Operations Office:**  
6119 79th St  
Lubbock, TX 79424

## Support & Operations Hours

Mon-Thu 8am-6pm  
Friday 8am-5pm  
Sat-Sun 9am-5pm

Emergency Support  
Toll Free 24/7: [866.430.2647](tel:8664302647)

© 2026 **Blue Layer.** All Rights Reserved. | Security License# B25182501

- [Terms](https://bluelayer.com/terms-and-conditions/)
- [Privacy](https://bluelayer.com/privacy-policy/)
- [Support](https://bluelayer.com/support/)

[Remote Support](https://remote.bluelayer.com/)

[Verify Agent](https://bluelayer.com/blog/phishingattacks#verify-agent)

×

## Verify a Blue Layer agent

Always **verify who you are speaking with.** Whether we initiate a call or visit your location, use this tool to confirm the person is a verified Blue Layer agent.

Enter the 6-digit ID Token the agent gave you.

Verify

Invalid token

## Agent verified

The ID Token is valid. You are speaking with a  
**Verified Blue Layer Agent.**

Verify another agent

Trust, but verify all contacts.

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Admin",
    "url" : "https://bluelayer.com/blog/author/admin"
  },
  "dateModified" : "2026-09-08T21:36:50.758Z",
  "datePublished" : "2022-12-20T17:17:13.000Z",
  "headline" : "The Latest Phishing Attacks & How Businesses Fall for Them",
  "mainEntityOfPage" : {
    "@id" : "https://bluelayer.com/blog/phishingattacks",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject"
    }
  }
}
```

```json
{
  "@context" : "https://schema.org",
  "@id" : "",
  "@type" : "Organization",
  "address" : {
    "@type" : "PostalAddress",
    "addressCountry" : "",
    "addressLocality" : "",
    "postalCode" : "",
    "streetAddress" : ""
  },
  "description" : "",
  "logo" : "",
  "name" : "",
  "sameAs" : [ "", "", "" ],
  "url" : ""
}
```