Trust exploited in widespread ongoing phishing operation

Share:

Hackread reports that more than 30 government, telecommunications, aerospace, finance, energy, manufacturing, and fashion organizations around the world had their employees targeted by an ongoing sophisticated phishing campaign that sought to compromise login credentials through the exploitation of trusted platforms.

ADVERTISEMENT

Intrusions involved the exploitation of trusted domains, such as Adobe.com and Google AMP, to evade detection, according to a report from Group-IB. Aside from leveraging fraudulent Adobe and DocuSign notifications to deceive targets into opening purportedly important files, threat actors also crafted highly convincing phishing pages that contain the targeted firms’ logo and branding as a means to exfiltrate user credentials to Telegram bots or command-and-control servers. “The Telegram bot’s history log revealed that the collected credentials were not limited to a single company. Instead, they spanned a wide range of business email addresses belonging to various brands and countries, all impacted by an ongoing email phishing campaign,” said Group-IB researchers.

SC Staff

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

loader-image
Austria, AT
8:46 pm, Dez. 27, 2024
weather icon 1°C
L: 1° H: 1°
few clouds
Humidity 81 %
Pressure 1035 mb
Wind 6 mph SSE
Wind Gust Wind Gust: 4 mph
UV Index UV Index: 0
Precipitation Precipitation: 0 mm
Clouds Clouds: 23%
Rain Chance Rain Chance: 0%
Visibility Visibility: 10 km
Sunrise Sunrise: 7:53 am
Sunset Sunset: 4:22 pm
DailyHourly
Daily ForecastHourly Forecast
Nach oben scrollen