Phishers cast wide net with spoofed Google Calendar invites
ID: 1673db29-4960-5dc2-891c-dfa307de0049
STIX ID: report--1673db29-4960-5dc2-891c-dfa307de0049
Feed Name: The Register (Security)
Check Point researchers reported a financially motivated phishing campaign that spoofs Google Calendar invites (via modified sender headers and .ics attachments) to lead recipients to malicious Google Forms/Drawings and fake cryptocurrency support pages that request authentication, personal data, and payment information; about 4,000 emails impacted ~300 organizations over four weeks. Recommended mitigations include cautious handling of unexpected calendar invites, hovering over links or typing URLs manually, and enabling two-factor authentication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
