publishing date icon
July 14, 2023
read time icon
5 min. read

Threat feed week 28: MetaMask, Teams, Jira impressions, and fake fax notification

Author image
Threat Analyst Team
Post hero image

Table of contents

share this post

MetaMask impersonation

Hox rating: ★★✩✩

Threat type: Advanced

Payload: Malicious link

Region: Global

Analyst: Minna Herlevi

Date: 07.07.2023

This phishing email impersonates the crypto wallet MetaMask.

MetaMask impersonation

The recipient is prompted to check if they're eligible to win 1 million MetaMask coins.

Fake fax notification

Hox rating: ★✩✩✩

Threat type: Bulk phishing

Payload: Malicious link

Region: Global

Analyst: Minna Herlevi

Date: 07.07.2023

This phishing email impersonates a fax notification. It informs the user that they have a new fax available and they need to click on the provided link to access it.

Fake fax notification

In campaigns like this, malicious actors use curiosity to get people to interact with the email.

Microsoft Teams service impersonation

Hox rating: ★★★✩

Threat type: Spear-phishing

Payload: Malicious link

Region: Global

Analyst: Suvi Hakala

Date: 10.07.2023

This spear-phishing campaign impersonates Microsoft Teams with a copied template. It claims the recipient's been added to a new team, thus invoking curiosity and urging the recipient to click the link.

Microsoft Teams service impersonation

The email contains the recipient’s real job role. The campaign utilizes a compromised email addresses for sending.

Atlassian Jira service impersonation

Hox rating: ★★✩✩

Threat type: Advanced

Payload: Malicious link

Region: Global

Analyst: Suvi Hakala

Date: 12.07.2023

This phishing email attempts to impersonate Atlassian Jira. The email is a repurposed Jira comment notification: it now claims the recipient has an eSecure request pending for approval and includes malicious links.

Atlassian Jira service impersonation

Some real Atlassian links have been left in the email for legitimacy.

Keep up with the threat feed

Don't miss the next threat feed, and subscribe to our newsletter for the latest feed and cybersecurity content. Stay informed and stay safe!

Subscribe to All Things Human Risk

Subscribe to our newsletter for a curated digest of the latest news, articles, and resources on human risk and evolving phishing threats in the ever-changing landscape.

Hoxhunt needs the contact information you provide to us to contact you about our products and services. You may unsubscribe from these communications at anytime. For information on how to unsubscribe, as well as our privacy practices and commitment to protecting your privacy, check out our Privacy Policy.