Callback Phishing Avoids Filters - Technicalities

Callback Phishing Avoids Filters

A new form of phishing is appearing and it has the ability to avoid email filtering programs.

Phishing is the fraudulent practice of sending emails or other messages purporting to be from reputable companies in order to entice individuals to reveal personal information, such as passwords and credit card numbers.

Unlike traditional phishing, callback phishing does not include malicious links, attachments or phone numbers in plain text. Instead, its main feature is a phone number urging the recipient to call for an urgent matter.

The email will contain a convincing message along the lines of; incorrect charge or an overdue account. This is designed to alarm the user into calling the number provided. Calling the number will lead to a call centre where the operators are prepared to convince you to install ransomware or other malicious software.

How these phishing campaign avoid filtering is by embedding an image. The image prominently displays the message and the number to call. There are no links, no text, just the image. Most filtering software analyses text, URL links and attachments to determine the safety of the email. Having the entire scam in an image makes it very difficult to detect.

There are still ways to avoid these phishing campaigns. The best is cyber security awareness.

  • Be aware of emails that ask users to perform unusual activities.
  • Be aware of emails that contain just an image
  • Be aware of emails with a prominent phone number displayed multiple times.

Having other cyber security defences in place will also assist. Technicalities’ highest recommended cyber defence software is called ‘Application Whitelisting’. This will block any attempt to install any unapproved software from your PCs and laptops. Remote desktop software, ransomware or any other malicious software will be blocked with Application Whitelisting in place.

Other news & articles

Why Choose Technicalities as your MSP?

About Technicalities Why Choose Technicalities as Your IT Partner? Established 1998  ·  Melbourne, VIC 1998 Established in Melbourne 25+ Years serving Melbourne businesses 15+ Years — our longest-serving engineers Our Philosophy Choosing an IT partner is a bigger decision than it might first appear. You’re not just buying a service — you’re deciding who picks…

AI Phishing attacks Microsoft

Cyber Security AI Is Now Driving 86% of Phishing Attacks — and Microsoft Is the Primary Target May 2026  ·  Technicalities 86% of phishing attacksnow AI-driven +139% increase in reverse proxyattacks stealing M365 credentials 41% of AI phishing attacksnow target Microsoft Teams Key Takeaway Phishing has moved well beyond suspicious emails with bad grammar. AI-powered…

Stryker Cyberattack: Lessons for Business Security

🚨 Cyber Alert The Stryker Attack:No One Is Too Big to Fall Published: March 2026  ·  By: Technicalities ⚡ Key Takeaway A US Fortune 300 company with 56,000 employees and a USD$25 billion revenue just had tens of thousands of devices remotely wiped in a matter of hours. The attack vector wasn’t exotic — and…