The lure is a fake email on an email closure. It contains a link to update the account via a login page. Also this one is false. The only aim is to steal credentials.
The “Threat Landscape 2020” has just been released. Malware is in first place, followed by web-based attack and phishing. COVID-19 fuelled cyber aggressions.
The lure is a supposed change of IP, that requires a confirmation of the account. This passes through a fake page. The objective is to steal credentials.
CISA-MS-ISAC cyber security experts: Roughly 16,000 alerts related to the malware and significant increase in state-local governments targeted by the malware with phishing.
The cyber security expert JAMESWT: With the lure of (fake) account access attempts, victim is conviced to click the link and “validate” it, digiting the credentials.
Microsoft cyber security experts: Foreign activity stepped up targeting the 2020 vote. It’s the work of well known actors as Strontium, Zirconium and Phosphorus.
Cofense cyber security experts: A mail alerts the victim on three messages at risk and asks to click a link. This leads to a real company’s page with a fake login panel.