ADP Account Verification Credential Phishing Attack
Initial Email Content
Dear Valued ADP Client,
Account operator refused payroll operation on your ADP® Employee Access® account.
For your security, kindly verify your account by clicking on the button below.
This message and any attachments are intended only for the use of the addressee and may contain information that is privileged and confidential. If the reader of the message is not the intended recipient or an authorized representative of the intended recipient, you are hereby notified that any dissemination of this communication is strictly prohibited. If you have received this communication in error, notify the sender immediately by return email and delete the message and any attachments from your system.
Important: Please be advised that calls to and from your Service Team may be monitored or recorded.
Please do not respond to this message. It comes from an unattended mailbox.
Malicious Artifacts
Additional Indicators of Compromise
Type
Description
Attack Description
This link-based attack impersonates ADP using a free webmail account and an account verification theme to steal credentials.