<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Spear-Phishing on IT Comparison</title><link>https://comparison.metacog.co.kr/tags/spear-phishing/</link><description>Recent content in Spear-Phishing on IT Comparison</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 03 Aug 2026 04:28:36 +0900</lastBuildDate><atom:link href="https://comparison.metacog.co.kr/tags/spear-phishing/index.xml" rel="self" type="application/rss+xml"/><item><title>Phishing vs Spear Phishing: Mass Deception or Targeted Attack</title><link>https://comparison.metacog.co.kr/posts/2026-08-03-phishing-vs-spear-phishing-mass-deception-or-targeted-attack/</link><pubDate>Mon, 03 Aug 2026 04:28:36 +0900</pubDate><guid>https://comparison.metacog.co.kr/posts/2026-08-03-phishing-vs-spear-phishing-mass-deception-or-targeted-attack/</guid><description>&lt;h2 id="overview"&gt;Overview&lt;/h2&gt;
&lt;p&gt;Phishing and spear phishing are both social-engineering attacks that trick victims into revealing credentials or installing malware, but they differ in scope and craftsmanship. Phishing casts a &lt;strong class="kw"&gt;wide net&lt;/strong&gt; using generic, templated lures sent to as many people as possible, while spear phishing is a &lt;strong class="kw"&gt;researched, personalized&lt;/strong&gt; attack aimed at one specific person or organization.&lt;/p&gt;
&lt;h2 id="comparison-diagram"&gt;Comparison Diagram&lt;/h2&gt;
&lt;div class="compare-diagram"&gt;
&lt;svg viewBox="0 0 640 360" xmlns="http://www.w3.org/2000/svg"&gt;
&lt;line x1="320" y1="10" x2="320" y2="350" style="stroke:var(--border)" stroke-width="1" stroke-dasharray="4 4"/&gt;
&lt;text x="150" y="28" text-anchor="middle" style="fill:var(--primary)" font-size="18" font-weight="bold"&gt;Phishing&lt;/text&gt;
&lt;text x="490" y="28" text-anchor="middle" style="fill:var(--primary)" font-size="18" font-weight="bold"&gt;Spear Phishing&lt;/text&gt;
&lt;circle cx="70" cy="80" r="18" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;text x="70" y="85" text-anchor="middle" style="fill:var(--content)" font-size="10"&gt;Atk&lt;/text&gt;
&lt;text x="70" y="112" text-anchor="middle" style="fill:var(--secondary)" font-size="10"&gt;Attacker&lt;/text&gt;
&lt;rect x="50" y="135" width="40" height="26" rx="2" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;path d="M50 135 L70 152 L90 135" style="fill:none;stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;text x="70" y="178" text-anchor="middle" style="fill:var(--secondary)" font-size="10"&gt;Generic template&lt;/text&gt;
&lt;line x1="70" y1="98" x2="70" y2="135" style="stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;line x1="90" y1="148" x2="235" y2="55" style="stroke:var(--compare-a)" stroke-width="1"/&gt;
&lt;line x1="90" y1="148" x2="235" y2="110" style="stroke:var(--compare-a)" stroke-width="1"/&gt;
&lt;line x1="90" y1="148" x2="235" y2="165" style="stroke:var(--compare-a)" stroke-width="1"/&gt;
&lt;line x1="90" y1="148" x2="235" y2="220" style="stroke:var(--compare-a)" stroke-width="1"/&gt;
&lt;line x1="90" y1="148" x2="235" y2="275" style="stroke:var(--compare-a)" stroke-width="1"/&gt;
&lt;rect x="235" y="48" width="26" height="16" rx="2" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;rect x="235" y="103" width="26" height="16" rx="2" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;rect x="235" y="158" width="26" height="16" rx="2" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;rect x="235" y="213" width="26" height="16" rx="2" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;rect x="235" y="268" width="26" height="16" rx="2" style="fill:var(--compare-a-soft);stroke:var(--compare-a)" stroke-width="1.5"/&gt;
&lt;text x="180" y="320" text-anchor="middle" style="fill:var(--secondary)" font-size="10"&gt;Mass, unknown recipients&lt;/text&gt;
&lt;circle cx="410" cy="80" r="18" style="fill:var(--compare-b-soft);stroke:var(--compare-b)" stroke-width="1.5"/&gt;
&lt;text x="410" y="85" text-anchor="middle" style="fill:var(--content)" font-size="10"&gt;Atk&lt;/text&gt;
&lt;text x="410" y="112" text-anchor="middle" style="fill:var(--secondary)" font-size="10"&gt;Attacker&lt;/text&gt;
&lt;line x1="410" y1="98" x2="410" y2="135" style="stroke:var(--compare-b)" stroke-width="1.5"/&gt;
&lt;circle cx="410" cy="150" r="12" style="fill:none;stroke:var(--compare-b)" stroke-width="1.5"/&gt;
&lt;line x1="419" y1="159" x2="428" y2="168" style="stroke:var(--compare-b)" stroke-width="2"/&gt;
&lt;text x="410" y="188" text-anchor="middle" style="fill:var(--secondary)" font-size="10"&gt;Researches target (OSINT)&lt;/text&gt;
&lt;line x1="428" y1="168" x2="518" y2="215" style="stroke:var(--compare-b)" stroke-width="1.5"/&gt;
&lt;polygon points="518,215 508,211 512,222" style="fill:var(--compare-b)"/&gt;
&lt;rect x="520" y="190" width="80" height="60" rx="4" style="fill:var(--compare-b-soft);stroke:var(--compare-b)" stroke-width="1.5"/&gt;
&lt;circle cx="545" cy="210" r="9" style="fill:var(--compare-b-soft);stroke:var(--compare-b)" stroke-width="1.5"/&gt;
&lt;line x1="560" y1="205" x2="595" y2="205" style="stroke:var(--content)" stroke-width="1"/&gt;
&lt;line x1="560" y1="215" x2="590" y2="215" style="stroke:var(--content)" stroke-width="1"/&gt;
&lt;line x1="535" y1="230" x2="595" y2="230" style="stroke:var(--content)" stroke-width="1"/&gt;
&lt;line x1="535" y1="238" x2="580" y2="238" style="stroke:var(--content)" stroke-width="1"/&gt;
&lt;text x="560" y="278" text-anchor="middle" style="fill:var(--secondary)" font-size="10"&gt;Specific, known individual&lt;/text&gt;
&lt;/svg&gt;
&lt;/div&gt;
&lt;h2 id="comparison-table"&gt;Comparison Table&lt;/h2&gt;
&lt;table&gt;
&lt;thead&gt;
&lt;tr&gt;
&lt;th&gt;Aspect&lt;/th&gt;
&lt;th&gt;Phishing&lt;/th&gt;
&lt;th&gt;Spear Phishing&lt;/th&gt;
&lt;/tr&gt;
&lt;/thead&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;Target selection&lt;/td&gt;
&lt;td&gt;Random, mass audience with no vetting&lt;/td&gt;
&lt;td&gt;Specific individual or organization chosen in advance&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Reconnaissance effort&lt;/td&gt;
&lt;td&gt;None; same message sent to everyone&lt;/td&gt;
&lt;td&gt;Significant OSINT on the target&amp;rsquo;s role, contacts, and habits&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Message content&lt;/td&gt;
&lt;td&gt;Generic, templated (fake bank alert, prize notice)&lt;/td&gt;
&lt;td&gt;Personalized, referencing real names, projects, or events&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Sender impersonation&lt;/td&gt;
&lt;td&gt;Generic brand or authority (bank, IT helpdesk)&lt;/td&gt;
&lt;td&gt;A specific known contact (manager, vendor, colleague)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Delivery volume&lt;/td&gt;
&lt;td&gt;Thousands to millions of identical emails&lt;/td&gt;
&lt;td&gt;One or a handful of tailored emails&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Detection difficulty&lt;/td&gt;
&lt;td&gt;Often caught by spam filters and obvious red flags&lt;/td&gt;
&lt;td&gt;Bypasses filters more easily; looks legitimate to the recipient&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Per-attempt success rate&lt;/td&gt;
&lt;td&gt;Low click-through rate, offset by sheer volume&lt;/td&gt;
&lt;td&gt;Much higher, since the message exploits real trust and context&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Typical impact&lt;/td&gt;
&lt;td&gt;Scattered credential theft across many accounts&lt;/td&gt;
&lt;td&gt;High-value breach: wire fraud, data exfiltration, network access&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;h2 id="key-differences"&gt;Key Differences&lt;/h2&gt;
&lt;ul&gt;
&lt;li&gt;Spear phishing depends on &lt;strong class="kw"&gt;reconnaissance&lt;/strong&gt;, phishing needs none&lt;/li&gt;
&lt;li&gt;Phishing scales through &lt;strong class="kw"&gt;volume&lt;/strong&gt;, spear phishing scales through credibility&lt;/li&gt;
&lt;li&gt;Spear phishing messages are &lt;strong class="kw"&gt;personalized&lt;/strong&gt; to the recipient, phishing uses generic templates&lt;/li&gt;
&lt;li&gt;Spear phishing has a far higher &lt;strong class="kw"&gt;success rate&lt;/strong&gt; per message sent&lt;/li&gt;
&lt;li&gt;Phishing is filtered out more easily; spear phishing often evades automated &lt;strong class="kw"&gt;detection&lt;/strong&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="when-to-use-each"&gt;When to Use Each&lt;/h2&gt;
&lt;p&gt;&lt;strong&gt;Phishing&lt;/strong&gt;&lt;/p&gt;</description></item></channel></rss>