Security Experts at Sophos have detected a new phishing campaign against the Italian brand Poste Italiane that makes use of an efficient social engineering technique. The number of attacks against the brand is remarkable, the purpose is always to induce its customers into unwittingly submitting their credentials to fake login sites. In the recent attack criminals sent the classic email containing an HTML attachment which the recipient is enticed into opening. The smart aspect of this attack is the use of a password protected attachment, a technique already seen in the past by security firms.”]
Source: http://securityaffairs.co/wordpress/18883/cyber-crime/complex-fishing-poste-italiane.html