Is this the most dangerous phishing scam yet?
Tony Capewell
25+ years in IT Security & Support for Small Businesses and SaaS Software Development
#security #cybersecurity #endpointprotection? #itsecurity #itsupport #itprovider #msp #hacking #ransomware #empower #email #emailsecurity #emailprotection #phishing #CyberAttacks #CyberSecurity #SocialEngineering #PhishingScam #CyberSecurity #SubdoMailing
Picture this: You're going about your day, checking your emails, when suddenly you see a message from a company you trust.
You think, "Great! That’s safe to read”. But hold on just one minute… this email is not what it seems.?
It’s part of yet another scam created by cyber criminals to trick you into clicking malicious links or giving up sensitive info. It's called "SubdoMailing," and it's as dangerous as it sounds.
Remember, it looks just like an email that you would normally receive...
What's the deal??
Just like regular phishing attacks, cyber criminals pretend to be trusted brands.?
But here's how it works: These cyber criminals scour the internet for subdomains of reputable companies. You know those extra bits in a web address that come before the main domain? Such as experience.trustedbrand.com. That ‘experience’ bit is the subdomain.
They find a subdomain that the brand is no longer using and is still pointing to an external domain that’s no longer registered.
Then they buy the domain and set up the scam website.
领英推荐
So, you believe you’re clicking on experience.trustedbrand.com… but you have no idea it automatically redirects to scamwebsite.com.
The criminals are sending out five million emails a day targeting people in businesses just like yours.
But here's the real kicker: The human factor is increasingly becoming the main entry point for these cyber And because these emails are coming from what seems like a legit source, they often sail right past usual security checks and land in your inbox.
Here’s our advice to keep you and your data safe and sound:
As always, if you need help with this or any other aspect of your email security, get in touch.
If you’re interested in other areas of business cyber security, get in touch. As always if you would like to ask a question about this newsletter on 01908 410261 or better still let’s meet:? Here’s my live calendar