Phishing Activity: Key Statistics
Quarter over Quarter comparison:
August 1, 2020 - October 2020

Each reporting period, we analyze URLs, domain names, and IP addresses reported for phishing. We use these and other metadata – domain and IP address registration data, ICANN registry and registrar monthly reports, routing data, attack type, and other indicators – to report key statistics for each reporting period.

Analysis of over 300,000 phishing reports collected during the August-October 2020 period show a significant increase in phishing attacks and brands targeted compared to the May-July period. 

Domain names reported for phishing activity increased by 18%.

During the three-month period August to October 2020, we noted a modest rise in the number of phishing reports, which is the number of URLs and domains that were collected from our phishing feeds during the study period — in other words, reports of newly found (reported) phishing incidents. However, the number of phishing attacks, and the number of domain names used in phishing attacks increased more significantly over the previous May to July 2020 period.

A comparison of key statistics from May - July 2020 and August - October 2020 appear in Table 1.


Measurement May to
July 2020
August to
October
2020
Change
in
Measurement
Total number of phishing reports (per quarter) 298,012303,922+5,910
Phishing attacks reported126,439 160,876+34,437
Unique domain names reported for phishing 99,821117,633+17,812
Top-level Domains (TLDs) where we observed phishing439 455+16
Registrars that had domains under management reported for phishing414 552+138
Hosting Networks (ASNs) where phishing web sites were reported2,1692,315 +146
Brands targeted in phishing attacks 695887+192