US financial regulator warns of ‘widespread’ phishing campaign
An influential financial oversight organization is urging U.S. brokerage firms and securities organizations to be on the lookout for an ongoing email scam that aims to steal usernames and passwords. The Financial Industry Regulatory Authority, an industry-run organization overseeing brokers and exchange markets, published an alert Monday about an “ongoing” phishing campaign in which attackers are posing as FINRA executives. The messages typically include the name of the target organization in the subject line, and encourage recipients to download an attachment that requires “immediate attention.” In fact, the attachment may direct a user to a website that prompts them to enter their credentials for Microsoft Office or SharePoint, a corporate collaboration software. The notice did not cite any specific security incidents that may have inspired the bulletin. “FINRA reminds firms to verify the legitimacy of any suspicious email prior to responding to it, opening any attachments or clicking on any embedded links,” the advisory […]
The post US financial regulator warns of ‘widespread’ phishing campaign appeared first on CyberScoop.
Continue reading US financial regulator warns of ‘widespread’ phishing campaign