Phishing Attacks Surge: Malaysia on High Alert, Kaspersky Warns

Kaspersky’s cybersecurity data reveals an alarming surge in email phishing attacks in Malaysia, with millions of malicious emails blocked in 2022 and substantial financial losses recorded as of early 2023. Vigilance and cybersecurity measures are crucial to thwart these threats and protect individuals and businesses from falling victim to phishing scams.


18 July 2023 – Kaspersky, a leading cybersecurity company, has revealed concerning data indicating that email phishing attacks in Malaysia maintain a distressingly high rate. In 2022 alone, Kaspersky’s Anti-Phishing System blocked an astounding 8,267,013 malicious emails, and the country has sustained significant losses amounting to RM27 million as of February 2023, according to The National Scam Response Centre (NSRC).

Methodology: The number represents the malicious mailings blocked by Kaspersky Anti-Phishing system in 2022 in Malaysia, for both individual and enterprise users.

The global surge in phishing attacks has made the situation even more critical, with a staggering 507,851,735 attempts to follow phishing links thwarted by Kaspersky’s system last year. Malaysia, ranking among the top three in Southeast Asia for blocked malicious emails, remains highly targeted due to the effectiveness and ease of conducting phishing attacks as a social engineering technique.

Delivery service impersonations accounted for the highest percentage of clicks on phishing links blocked by Kaspersky solutions (27.38%) in 2022, while online stores (15.56%), payment systems (10.39%), and banks (10.39%) also faced significant threats. Additionally, the corporate sector is expected to witness a rise in targeted phishing attacks, signaling the evolution of tactics and an increased profit motive for cybercriminals in 2023.

To safeguard against phishing attacks, Kaspersky urges users to be vigilant and follow these precautionary steps:

  1. Familiarize yourself with the various types of phishing attacks to recognize them promptly and delete suspicious emails upon receipt.
  2. Report phishing attacks to assist companies in enhancing security measures and safeguarding customer accounts.
  3. Invest in reliable antivirus and anti-phishing software to detect and filter out phishing messages, while also protecting against potential malware threats and data breaches.

As phishing attacks continue to pose a significant risk to individuals and businesses alike, proactive measures and heightened awareness are essential in defending against this pervasive cyberthreat.

Author: Terry KS

Share This Post On