Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Medium
A phishing campaign that pretends to be an Amazon AWS suspension notice for unpaid bills that looks good enough to trick many users.
A billing notice from a vendor, especially one like Amazon, that states that your account has been suspended for unpaid bills, may confuse a user enough to click on the email link.
Attackers are capitalizing on this confusion by sending emails that pretend to be from Amazon AWS Support at postmaster@amazon.com and that use a subject of “Your service has now been suspended”.
When you click on embedded link you will be brought to a fake Amazon AWS login page located at a site whose URL starts with aws.amazon.com, but is actually hosted on a different domain. If you are viewing the email on mobile, the full link won’t be shown and users may be more easily confused.
When a victim enters their credentials, the information will be saved for the phishers to retrieve later so that they can access your account. The user will then be redirected to the legitimate AWS login page.
Email Subject
Your service has now been suspended
From Email
postmaster[@]amazon[.]com
Amazon