Difference between revisions of "Tis the season for shipping and phishing"

From Botnets.fr
Jump to navigation Jump to search
 
Line 1: Line 1:
{{Publication
{{Publication
|Target=DHL, FedEx,
|Year=2015
|Year=2015
|Date=2015-12-23
|Date=2015-12-23
Line 6: Line 7:
|Author=Andrey Kostin
|Author=Andrey Kostin
|Type=Blogpost
|Type=Blogpost
|Abstract=The fraudsters have a clear aim: to trick unwitting users into downloading a malicious program or entering their confidential data on a phishing site. For example, one scam message detected by Kaspersky Lab asked the user to fill in and sign a delivery form in order to receive a shipment. The message had a DOC file attached to it containing the exploit Exploit.MSWord.Agent.gg, which allowed the cybercriminal to, among other things, gain remote access to the infected computer.
}}
}}

Latest revision as of 11:54, 19 March 2016

(Publication) Google search: [1]

Tis the season for shipping and phishing
Botnet
Malware
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target DHL, FedEx
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2015 / 2015-12-23
Editor/Conference Kaspersky Securelist
Link https://securelist.com/blog/phishing/73174/tis-the-season-for-shipping-and-phishing/ (Archive copy)
Author Andrey Kostin
Type Blogpost

Abstract

The fraudsters have a clear aim: to trick unwitting users into downloading a malicious program or entering their confidential data on a phishing site. For example, one scam message detected by Kaspersky Lab asked the user to fill in and sign a delivery form in order to receive a shipment. The message had a DOC file attached to it containing the exploit Exploit.MSWord.Agent.gg, which allowed the cybercriminal to, among other things, gain remote access to the infected computer.

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2015BFR4838,
   editor = {Kaspersky Securelist},
   author = {Andrey Kostin},
   title = {Tis the season for shipping and phishing},
   date = {23},
   month = Dec,
   year = {2015},
   howpublished = {\url{https://securelist.com/blog/phishing/73174/tis-the-season-for-shipping-and-phishing/}},
 }