Blog | G5 Cyber Security

Making phishing more complex on purpose

An intriguing phishing sample shows the reuse of an old social engineering trick. The latest attack takes a similar strategy to many recent phish campaigns, where the email contains a HTML attachment which the recipient is enticed into opening. The brand being targeted in the phish campaign is Poste Italiane, a well known Italian group that includes financial and payment services in its product portfolio. There is reference to some password protection within the attachment, and a password is provided in the message body. The code behind this is simple JavaScript to prompt the user for a password, which is then used to decode a string.”]

Source: https://nakedsecurity.sophos.com/2013/10/18/making-phishing-more-complex-on-purpose/

Exit mobile version