Article 66C3M Attackers Keep Phishing Victims Under Stress

Attackers Keep Phishing Victims Under Stress

by
hubie
from SoylentNews on (#66C3M)

fab23 writes:

https://isc.sans.edu/diary/Attackers+Keep+Phishing+Victims+Under+Stress/29270

Phishing campaigns are very common today, we receive many phishing attempts per day. Why attackers are still flooding our mailboxes with such emails? Because it still works, and the "return on investment" of sending millions is reached even if only a few victims are lured. However, attackers are always looking for new techniques to make people confident that the message is legit. Many phishing campaigns are pretty well prepared, and the fake mail you receive looks exactly like an official one. Multiple times, I was pretty close to click on a link... Yes, we are all poor humans!

Another technique used by attackers is to try to make the victim scared and increase stress. When we are under stress, we are prone to make wrong decisions! That's the technique used by a phishing campaign that I spotted yesterday.

If the victim follows the provided link, a message will ask the user to update his/her email account within 24h (a counter is running), but the funny fact is that the page displays a fake real-time list of disabled accounts.

[...] If you are located in the United States, Happy Thanksgiving! But keep an eye on your systems because the long weekend (tomorrow is also Black Friday!) is a good opportunity for bad guys to launch waves of attacks...

[Ed.: Obviously not out before Black Friday, but a good thing to warn any of your tech-stressed friends and family about. --hubie]

Original Submission

Read more of this story at SoylentNews.

External Content
Source RSS or Atom Feed
Feed Location https://soylentnews.org/index.rss
Feed Title SoylentNews
Feed Link https://soylentnews.org/
Feed Copyright Copyright 2014, SoylentNews
Reply 0 comments