Spear Phishing Handlers for Username/Password, (Sat, Feb 18th)

Reviewing my ISC mail inbox, I noticed that I had been receiving multiple phishing email that were very similar. Putting my cursor over each embedded pictures, I noticed the domain involved was the same for all of them. I copied the URL and started checking around for known threat intel on ipfs[.]io against various sites and found on urlscan.io [1], there was over 10000+ samples listed.

Continue reading Spear Phishing Handlers for Username/Password, (Sat, Feb 18th)→

Posted in Uncategorized

HTML phishing attachment with browser-in-the-browser technique, (Thu, Feb 16th)

Although the browser-in-the-browser (BitB) technique has been with us for a while now[1], it is far from what one might call ubiquitous. Simply put, the technique is based on displaying a simulated browser pop-up window (usually a login prompt) within the confines of an HTML page opened in a browser. The simulated pop-up may look almost indistinguishable from a real browser window and since it may contain an arbitrary URL in the simulated address bar, the use of the BitB technique for phishing can be quite effective, as most people have been repeatedly taught that they should “check the URL, and if it is the right one, the page should be genuine” during security awareness courses.

Continue reading HTML phishing attachment with browser-in-the-browser technique, (Thu, Feb 16th)→

Posted in Uncategorized