US-CERT received a phishing email message for analysis. The email contains a link to track a shipment. When the victim clicks on the link, the victim is directed to a malicious domain. The webpage prompts the victim to confirm their email address and password to confirm the delivery address. When the victim initiates the login, the webpage initiates a POST request to exfiltrate the victim’s credentials.
Created: 2026-02-23
Indicatorsは見つかっていない。
このPulseに見つかったCVEはありません。