PostNord postal service impersonation
Hox rating: ★✩✩✩
Threat type: Bulk phishing
Payload: Malicious links
Region: Nordics
Analyst: Suvi Hakala
Date: 03.05.2023
This phishing email attempts to impersonate the postal service provider PostNord.

It claims the recipient has a package on hold due to unpaid customs and urges them to click the link to start the process.
Coworker impersonation and changes in payroll request
Hox rating: ★★✩✩
Threat type: Spear-phishing
Payload: Pretext
Region: Global
Analyst: Reetta Sainio
Date: 05.05.2023
This spear-phishing email involves a coworker impersonation, where the coworker asks to update their bank details for the next payroll round. The email contains the actual name and role of the coworker, which adds credibility to the message.
![Hi [First name], I want to change my banking information before the next payroll is finalized. What details do you need? Regards, [Coworker's name] [Coworker's role]](https://assets-global.website-files.com/6130a9118b1be9aebe2c2837/6475bbc1047c19fc94d02d3c_9775e53d.png)
The intention is for the recipient to reply to the email and help change the bank details to the attacker’s information.
Keep up with the threat feed
Don't miss the next threat feed, and subscribe to our newsletter for the latest feed and cybersecurity content. Stay informed and stay safe!