Rewterz Threat Alert – American Express Themed Phishing Campaigns

Tuesday, March 5, 2019

Severity

Medium

Analysis Summary


Two recent Phishing campaigns have been observed based on American Express theme. One of the campaigns has the email subject ‘Notice Concerning your Account’ and contains a malicious attachment. The other campaign uses the subject ‘WE DISC0NNECT Y0U’ and contains a URL which directs to American Express themed credential harvesting pages.

Impact


Malware Infection

Credential Theft

Indicators of Compromise

Email Subject

Notice concerning your Account

WE DISC0NNECT Y0U

Remediation

  • Scan and block the threat indicators at their respective controls.
  • Do not download attachments from unexpected emails.
  • Do not visit URLs sent to you via emails. Instead type the legitimate URL yourself if needed.
  • Never enter credentials on pages you’re redirected to by following links.

Data Sheets

Corporate Brochure


Our Story


Services


Solutions


Managed Security


Upcoming Rewterz Trainings/Events

Rewterz News

  • 22, August 2019 Rewterz Threat Advisory – CVE-2019-15295 – BitDefender Antivirus Free 2020 – Privilege Escalation to SYSTEM
  • 22, August 2019 Rewterz Threat Alert – Banks All over the World Attacked by Silence Advanced Hackers
  • 22, August 2019 Rewterz Threat Alert – Adwind Bypasses Microsoft ATP to Attack Utilities Industry
  • 21, August 2019 Rewterz Threat Advisory – Multiple vulnerabilities fixed in VLC media player

Copyright © Rewterz. All rights reserved.