logo

Sophisticated Phishing Campaign Targets Corporate Credentials

ID: 2cbb13fa-a927-5f4a-8c79-7e50c2eef899

STIX ID: report--2cbb13fa-a927-5f4a-8c79-7e50c2eef899

Feed Name: Volexity Blog

Threat Score
70/100

Date Published: 2019-06-26

Date Updated: 2026-05-01

...
...

Volexity reports on a criminal Business Email Compromise (BEC) campaign that uses convincing Office 365-themed phishing emails and look-alike domains to harvest credentials, automatically validate them, and then create mailbox rules to exfiltrate or hide financial emails; the report includes phishing examples, attacker TTPs, and a list of associated domains and IP indicators.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.