Invitation to Trouble: The Rise of Calendar Phishing Attacks
ID: d3a9de0a-a95b-5ed4-95c7-ec49eeb55c45
STIX ID: report--d3a9de0a-a95b-5ed4-95c7-ec49eeb55c45
Feed Name: Cofense Blog
The Cofense Phishing Defense Center observed phishing campaigns leveraging spoofed Microsoft and Google Calendar invitations to harvest user credentials. Attackers use visually convincing calendar buttons and messages (including urgent language) that redirect victims to fake Microsoft login pages hosted on non-Microsoft domains; the report lists multiple infection and payload URLs and associated IP addresses observed in these campaigns and warns organizations to scrutinize sender addresses and links to prevent credential theft.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
