Nothing new
Most of us have been seeing 0-day phishing since 2002, so this is really nothing new. Except of course to the folks that really don't monitor their network and let this fly under the radar.
This really comes down to application control. If you let users install unchecked software on their systems, they are going to get 0wn3d. It amazes me how many Admins will still initially react with "Oh no, we can't stop users from installing software in this environment". By running the software in monitoring mode I can usually show them that users need access to < 20 well known apps. Lock down installation to only these select programs and suddenly Malware and 0-Day are far less of an issue.