logo

Q1 Goals to Gaps in Security: The Rise of HR-Themed Phishing

ID: 6ed452fc-ddd5-55f8-a9a3-0d5e06f7fcc5

STIX ID: report--6ed452fc-ddd5-55f8-a9a3-0d5e06f7fcc5

Feed Name: Cofense Blog

Threat Score
60/100

Date Published: 2025-04-04

Date Updated: 2026-04-27

Author: Cofense

...
...

Cofense observed a credential-harvesting phishing campaign that impersonates HR ('Human Capital') and leverages Q1 performance deadline urgency to trick employees into submitting information to a malicious JotForm and then entering Microsoft credentials on a spoofed login page. The blog provides the attack chain, screenshots, observed malicious URLs and IPs, and recommended mitigations including email filtering, MFA, realistic phishing simulations, and Cofense MPDR detection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.