Breaking
April 4, 2025

Watch out – those PDFs lurking in your inbox could be a major security risk | usagoldmines.com


  • Phishing emails carrying PDF attachments are on the rise, report warns
  • Check Point highlights how hackers love PDFs for customization
  • Social engineering attacks using PDFs are also on the rise

At least one in every five phishing emails carries a .PDF attachment, researchers are saying, warning that the popular file format is being increasingly used in social engineering attacks.

A new report from Check Point Research claims PDF-based attacks now account for 22% of all malicious email attachments, making them particularly concerning for businesses sharing large quantities of these files every day.

In earlier years, many of the attacks relied on JavaScript or other dynamic content being embedded within the files. While this approach is still seen in the wild, it has become less common, since JavaScript-based attacks tend to be “noisy” and easier to detect by security solutions.

Email remains one of the most popular attack vectors out there, with more than two-thirds (68%) of cyberattacks beginning this way.

Monitor your credit score with TransUnion starting at $29.95/month

TransUnion is a credit monitoring service that helps you stay on top of your financial health. With real-time alerts, credit score tracking, and identity theft protection, it ensures you never miss important changes. You’ll benefit from a customizable online interface with clear insights into your credit profile. Businesses also benefit from TransUnion’s advanced risk assessment tools.

Preferred partner (What does this mean?)View Deal

Customizing the link

Today, cybercriminals are pivoting towards a simpler, more effective approach, Check Point says – social engineering.

Generally speaking, the attacks don’t differ much from your usual phishing email. The PDF attachment would serve as a launch pad, often carrying a link that would redirect a person to a malicious landing page or a website hosting malware.

That way, the malicious links are hidden from security filters, making sure the files are received straight to the inbox.

Furthermore, placing the link in a PDF gives the attackers full control – they can change the text, the image, or any other aspect of the link, making it more trustworthy.

The files are often designed to mimic trusted brands like Amazon, DocuSign, or Acrobat Reader.

“Even though these attacks involve human interaction (the victim must click the link), this is often an advantage for attackers, as sandboxes and automated detection systems struggle with tasks that require human decision-making,” Check Point concluded.

You might also like

​ 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Microsoft’s guidance for non-upgradeable Windows 10 PCs is inadequate | usagoldmines.com

The Nintendo Switch 2 almost makes PC gaming look cheap | usagoldmines.com

This Ryzen 7 mini PC with triple 4K ports is super cheap now: $249 | usagoldmines.com

I Answered a Job Scam Text on Purpose, and Here’s What I Learned Stephen Johnson | usagoldmines.com

This Garmin Venu 2 Plus Is $190 Off Right Now Pradershika Sharma | usagoldmines.com

Dolby Atmos in Apple Music Now Available for Windows PCs Hartley Charlton | usagoldmines.com

The iPad mini could be the next Apple tablet to get an OLED display – and I think that makes perfect...

Amazon's Starlink rival is ready for lift-off next week –and promises to deliver satellite broadband...

NSA chief and US Cyber Command head ousted | usagoldmines.com

Windows 11 is getting a very handy change to the taskbar, as Microsoft takes a leaf from Apple’s Mac...

FBI, CISA warns of new Fast Flux DNS evasion being used by cyber gangs | usagoldmines.com

Old faces in unexpected places: The Wheel of Time season 3 rolls on Andrew Cunningham & Lee Hutc...

Best PDF editors 2025: Our top picks | usagoldmines.com

Best laptops for video editing 2025: Work faster with these expert picks | usagoldmines.com

Microsoft’s 50th anniversary Windows wallpapers are actually pretty great | usagoldmines.com

Today’s best laptop deals: Save big on work, school, home use, and gaming | usagoldmines.com

Microsoft's new thin client Windows 365 cloud PC is on sale now | usagoldmines.com

Detailed Google Pixel 10 camera specs have seemingly leaked, pointing to an extra lens and worse sen...

Are modern smartphone designs boring? We asked 1,500 people, and the results are damning axel.metz@f...

Every Microsoft Windows operating system, ranked | usagoldmines.com

Microsoft turns 50! Here are its 25 most important products and milestones | usagoldmines.com

iOS 18.4: Access Hidden Ambient Music Playlists Tim Hardwick | usagoldmines.com

Why is Nintendo Switch 2 so expensive? Analysts think the price of the console isn't the problem as ...

The rise of APIs | usagoldmines.com

iOS 18.4 has broken CarPlay for some iPhone users – and it's hitting multiple carmakers alexblake.te...

The Nintendo Switch 2 could have one advantage over handheld gaming PCs - and it's probably not what...

OpenAI just made its first major cybersecurity investment | usagoldmines.com

Marvel Rivals Season 2 release date, Emma Frost, and upcoming changes | usagoldmines.com

Got Philips Hue lights? This free update gives you 8 new scenes for an instant makeover | usagoldmi...

CinemaCon 2025 teaser for The Fantastic Four: First Steps just confirmed a big fan theory about Sue ...

A future Samsung Galaxy Ring could get a unique and intriguing new way of charging stephen.warwick@f...

Google co-founder says 60-hour working week is "sweet spot" | usagoldmines.com

Rocket Report: Next Starship flight to reuse booster; FAA clears New Glenn Eric Berger | usagoldmine...

iPhone Users Report CarPlay Connectivity Issues With iOS 18.4 Update Tim Hardwick | usagoldmines.com

Kaleidescape's new Blu-ray quality movie streamer is half the price, but has a huge 4K catch – and m...

Australia's largest pension funds hit by hackers, thousands of dollars stolen | usagoldmines.com

The Samsung Galaxy S25 Edge’s new release date could be May 13 | usagoldmines.com

Microsoft could make a huge change to an iconic part of Windows 11 that you use every day, and I can...

New sneak peek at James Gunn's Superman movie reveals a jaw-dropping first look at the Fortress of S...

Google Messages is finally going to get better at handling your lengthy texts | usagoldmines.com

How the rise of machine identities is reshaping cybersecurity | usagoldmines.com

Sony's new OLED TV gets first price and release date, and it's great news for us, bad news for LG |...

Businesses are losing millions to fraud every year | usagoldmines.com

This Android-compatible GPS tracker slips into your wallet and ID lanyard — Ships free! | usagoldmi...

Digital Transformation starts with data transformation | usagoldmines.com

Does A Minecraft Movie have a mid-credits or post-credits scene? tom.power@futurenet.com (Tom Power)...

Striking the right balance – AI’s role in HR transformation | usagoldmines.com

I tried using AI to create the background music for a podcast, but I may stick to music libraries fo...

Spotify is about to be flooded with AI-made ads, and I wonder if it will make much of a difference t...

Apple Sending WWDC 2025 Invites to Special Event Lottery Winners Juli Clover | usagoldmines.com

Apple Releases Safari Technology Preview 216 With Bug Fixes and Performance Improvements Juli Clover...

Apple Supplier TSMC May Operate Intel’s Chipmaking Facilities Juli Clover | usagoldmines.com

DeepMind has detailed all the ways AGI could wreck the world Ryan Whitwam | usagoldmines.com

Wealthy Americans have death rates on par with poor Europeans Beth Mole | usagoldmines.com

How to Play Original Switch Games on the Switch 2 Michelle Ehrhardt | usagoldmines.com

Google unveils end-to-end messages for Gmail. Only thing is: It’s not true E2EE. Dan Goodin | usagol...

I use Windows Task Manager daily. Here are 9 tips I wish I’d known sooner | usagoldmines.com

I ditched Google Search. Now I’m saving the planet with Ecosia instead | usagoldmines.com

Google Says Magic Editor Will Properly Save Photo Edits After Fix Kellen | usagoldmines.com

The Garmin Instinct 2 Solar Smartwatch Is $170 Off Daniel Oropeza | usagoldmines.com

Latest Android Auto update could turn your car’s cameras into a free dash cam hamish.hector@futurene...

Nvidia confirms the Switch 2 supports DLSS, G-Sync, and ray-tracing Andrew Cunningham | usagoldmines...

Bonobos’ calls may be the closest thing to animal language we’ve seen Jacek Krywko | usagoldmines.co...

The 50 Best '80s Movies You Can Stream Right Now Ross Johnson | usagoldmines.com

Nine Ways to Make Your DIY Paint Job Look Professional Jeff Somers | usagoldmines.com

Apple's Latest Update May Be Installing Previously Deleted Apps on iPhones Jake Peterson | usagoldmi...

The Nintendo Switch 2 Might Be Compatible With the Webcam You Already Own Pranay Parab | usagoldmine...

Businesses still haven’t stopped using weak passwords, and it’s getting super risky benedict.collins...

I tried the latest update to NotebookLM and it’s never been easier to make an AI podcast out of othe...

Monkeys are better yodelers than humans, study finds Jennifer Ouellette | usagoldmines.com

Microsoft releases its own AI search engine, called Copilot Search | usagoldmines.com

Thursday Question: It’s Been a While, Still Using Your Pixel’s Built-in Thermometer? Tim | usagoldmi...

Garmin's Paid-Tier AI Doesn't Seem to Be Doing Much Beth Skwarecki | usagoldmines.com

JetKVM is an exciting, tiny open source KVM over IP module that sold almost 100,000 units and it eve...

Samsung is being weirdly cagey about supporting Netflix's big HDR upgrade that's basically custom-ma...

Bill Gates just published the ‘coolest code’ he ever wrote for Microsoft | usagoldmines.com

Microsoft’s revamped Copilot app for Windows goes truly native | usagoldmines.com

Report: Pixel 10 Cameras Get Downgrade in Exchange for New Telephoto Lens Tim | usagoldmines.com

My Favorite Amazon Deal of the Day: These Bose QuietComfort Ultra Earbuds Daniel Oropeza | usagoldmi...

Video: Choosing the Best Mac For You Juli Clover | usagoldmines.com

The Nintendo Switch 2 will feature DLSS and ray tracing, but we don't know which games support it |...

Why you should replace your Kaspersky antivirus benedict.collins@futurenet.com (Benedict Collins) | ...

SpaceX just took a big step toward reusing Starship’s Super Heavy booster Stephen Clark | usagoldmin...

Critics suspect Trump’s weird tariff math came from chatbots Ashley Belanger | usagoldmines.com

Foxit PDF Editor 13 review: Ready for business | usagoldmines.com

This mini PC is stacked with 32GB RAM and a 1TB SSD for under $330 | usagoldmines.com

Verizon Commits to 3-Year Price Lock, But Only on myPlan Plans Kellen | usagoldmines.com

Google Will Reduce Battery Capacity for the Pixel 9a, and There’s Nothing You Can Do About It Khamos...

You Can Now Get Visual Intelligence on iPhone 15 Pro – Here's How Tim Hardwick | usagoldmines.com

Apple Updates iWork Apps With New iOS 18.4 and macOS 15.4 Features Joe Rossignol | usagoldmines.com

Everything new on Prime Video in April 2025, including Oscar winner Conclave and nominee Nickel Boys...

Google Keep could get a fresh redesign soon – including two features that’ll make it much easier to ...

The Nintendo Switch 2 is backward compatible but a ton of original Switch games have 'start up' and ...

This unique bi-copter drone could actually disrupt DJI's drone dominance – and now we know its tempt...

Do I really need antivirus for Windows 11? benedict.collins@futurenet.com (Benedict Collins) | usago...

Dodgy Android smartphones are being preloaded with Triada malware | usagoldmines.com

Tuta Mail could soon be your default iOS mail app – but only after filing a complaint against Apple ...

Apple patents motion-predicting technology that can count reps and identify exercises during a worko...

How automakers like Ford, VW, Stellantis are reacting to Trump’s 25% tariff Jonathan M. Gitlin | usa...

Google gives NotebookLM a “Discover” button to search the web Ryan Whitwam | usagoldmines.com

Leave a Reply