logo

USPS Impersonators Tap Trust in PDFs in Smishing Attack Wave

ID: 419bb7a1-98db-5cf1-88e0-509c6d70edd7

STIX ID: report--419bb7a1-98db-5cf1-88e0-509c6d70edd7

Feed Name: Dark Reading

Threat Score
65/100

Date Published: 2025-01-27

Date Updated: 2026-04-21

Author: Elizabeth Montalbano, Contributing Writer

...
...

Researchers at Zimperium zLabs uncovered a large-scale USPS-themed smishing campaign that sends malicious SMS messages pointing victims to PDF files containing hidden phishing links; the landing pages harvest names, addresses, emails, phone numbers and payment-card data. The attackers employ a novel evasion technique by embedding clickable links without the standard /URI PDF tag, allowing many endpoint security products to miss the malicious URLs; investigators found 20 malicious PDFs, over 630 phishing pages, and infrastructure spanning more than 50 countries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.