Opens in a new tab
vmblog logo 2024 wht (updated)

NordVPN’s Next-Gen Antivirus blocks 96% of phishing websites

Share: 

David Marshall | Published: June 12, 2026

AV-Comparatives released its 2026 Anti-Phishing Comparative Test results. The test, which took place between 11th and 22nd May 2026, assessed the phishing detection capabilities of the most recent product version of NordVPN’s next-gen antivirus available at time of testing.

The feature achieved a 96% phishing detection rate with zero false positives in independent testing. Since the last test of this sort in May of 2025, NordVPN’s detection has improved by 6%. The evaluation covered 275 active phishing URLs targeting personal data across platforms like PayPal, online banking, email, and social networks, with an additional 200 legitimate banking URLs used to validate the false positive results.

“Phishing sites today are sophisticated enough to fool almost anyone, and most people shouldn’t have to become cybersecurity experts just to stay safe online,” says Domininkas Virbickas, product director at NordVPN. “Results like these are exactly the kind of protection that makes a real difference in people’s daily lives.”

In June 2024, NordVPN became the first VPN service provider to be approved by AV-Comparatives for anti-phishing protection. To earn the AV-Comparatives anti-phishing protection badge, at least 85% of the phishing URLs used must be detected and blocked without causing any false alarms with legitimate online banking and related sites.

How to recognize phishing websites and protect yourself

While next-gen antivirus is a powerful safeguard, phishing attacks are always evolving. Practicing good cyber hygiene is just as important.

Here are a few simple tips to stay safe online:

  • Verify the URL. Always check the URL in your browser’s address bar. Look for variations in the domain name that might indicate it’s a fake site. Did it send you to a subpage, even though you should be on the homepage? Does it have a suspicious prefix?
  • Read the text carefully. If you have even the slightest suspicion, go over the email or message once more. Was it unsolicited? Is it urging you to do something, trying to induce panic? Does it have any typos or other mistakes?
  • Enable two-factor authentication (2FA). 2FA adds an extra layer of security by requiring an additional authentication step, like a one-time code sent to your phone, before you can log in. Even if a hacker gets your password, they won’t be able to access your account without this second factor.
  • Check the website’s protocol. Ensure that the website you’re on uses the HTTPS protocol. Legitimate websites prioritize security and will have a padlock icon in the address bar, but a website with a spoofed URL might only use HTTP.

NordVPN’s next-generation antivirus is available with a Complete subscription, helping users browse more securely every day.