Back to All Attacks
Attack Details
Attack Date:
May 10, 2022

External Third Party Fake Document Credential Phishing Attack

Initial Email Content

Subject
Price Change Notification for 000126554434
Body

[Compromised Sender Domain] sent you a document to review and sign.

REVIEW DOCUMENT

Thank you,

[Compromised Sender Signature]

Attack Screenshots

No items found.

Malicious Artifacts

Additional Indicators of Compromise

Type

Description

No items found.

Attack Description

This link-based attack impersonates an external third party using an external compromised account and a fake document theme to steal credentials.

Analysis Overview

Tactic
External Compromised Account
Goal
Credential Theft
Impersonated Party
External Party - Other
Vector
Link-based
Theme
Fake Document
Language