↪ Replying to @eff.org
You might want to add ClickFix-Style attacks in that, since many people don't realize, they are running commands in run/terminal/powershell/file explorer.
Also this has only grown in popularity in the last 3 years and is adopted in many a phishing kit.