• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
phishing attacks targeting us government have evolved in sophistication, confense

Phishing attacks targeting US government have evolved in sophistication, Confense reports

You are here: Home / General Cyber Security News / Phishing attacks targeting US government have evolved in sophistication, Confense reports
September 20, 2022

Getty Photos

Phishing attacks focusing on the US Departments of Labor, Commerce, or Transportation have evolved to come to be a lot more convincing and evasive, Confense Intelligence discovered.

The credential phishing campaigns, energetic given that mid-2019, have been viewed in environments guarded by secure email gateways (SEGs), the firm included. 

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


The e-mail have created in excess of time to include authentic-hunting logos, signature blocks, and constant formatting, which include more specific recommendations in PDF documents. Typically, the email messages involved bid requests for profitable govt tasks that lured recipients to phishing web pages that mimicked respectable federal company web-sites.

Cybersecurity company INKY detailed one particular this kind of incident in January 2022, when risk actors used PDF attachments with directions for bidding on the US Division of Labor initiatives.

Incorporating to the trickery, threat actors have also included for a longer period area names, such as “transportation[.]gov[.]bidprocure[.]protected[.]akjackpot[.]com” in an attempt to make the web-site handle seem reputable when accessed from cell browsers that are unable to display screen whole-length URLs.

On top of that, on the phishing site that entices site visitors into entering their Microsoft Place of work 365 account qualifications, the danger actors have now extra a Captcha Challenge stage to avert bots from participating.

“The only area in which the threat actors slide a little driving is their spoofed internet pages can be out of date, which will most likely go unnoticed by most victims,” mentioned Cofense in its report.

“Given the enhancements noticed in each region of the phishing chain, it is likely the menace actors powering these strategies will continue to innovate and improve on their by now believable strategies,” included Cofense.


Some elements of this article are sourced from:
www.itpro.co.uk

Previous Post: «Cyber Security News Revolut Breach May Have Hit 50,000+ Customers
Next Post: American Airlines hit by data breach american airlines hit by data breach»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.