Rewterz Threat Advisory – CVE 2019-0351 – SAP NetWeaver UDDI Server Remote Code Execution Vulnerability
August 16, 2019Rewterz Threat Alert – Remcos RAT Delivered via Phishing Campaign
August 19, 2019Rewterz Threat Advisory – CVE 2019-0351 – SAP NetWeaver UDDI Server Remote Code Execution Vulnerability
August 16, 2019Rewterz Threat Alert – Remcos RAT Delivered via Phishing Campaign
August 19, 2019Severity
Medium
Analysis Summary
FBR phishing campaign continues to target different users luring them to claim their refund for the year 2019 and asking for credentials as part of their annual tax paying scheme and will ask for your account details. This could lead to serious financial loss for the users who are unaware of the current situation or in ambiguity regarding the tax paying procedure.
Impact
- Credential theft
- Financial Loss
Indicators of Compromise
Email Address
fanjum@hec[.]gov[.]pk
Email Subject
Your 2019 Tax Refund Notice
Remediation
- Always be suspicious about emails sent by unknown senders.
- Never click on the links/attachments sent by unknown senders.