Back to All Attacks
Attack Details
Attack Date:
May 27, 2022

Fake Invoice Credential Phishing Attack

Initial Email Content

Subject
INV-11473
Body

ATTN,


Please find attached invoice INV-11473 and forward to the appropriate party for payment processing.


Thanks,

Attack Screenshots

No items found.

Malicious Artifacts

Additional Indicators of Compromise

Type

Description

No items found.

Attack Description

This link-based attack impersonates a vendor/supplier using a fake attachment, an external compromised account, and a fake invoice theme to steal credentials.

Analysis Overview

Tactic
Fake Attachment
External Compromised Account
Goal
Credential Theft
Impersonated Party
External Party - Vendor/Supplier
Vector
Link-based
Theme
Fake Invoice
Language