Dropbox service impersonation
Hox rating: ★★✩✩
Threat type: Bulk phishing
Payload: Malicious attachment
Region: Europe
Analyst: Julia Kylmälä
Date: 17.07.2023
The email claims to be from Dropbox Business, and directs the recipient to download an attachment.

The attachment is a credential harvester.
Booking.com impersonation
Hox rating: ★★✩✩
Threat type: Advanced
Payload: Malicious link
Region: Global
Analyst: Reetta Sainio
Date: 17.07.2023
This phishing email attempts to impersonate the online travel agency Booking.com, exploiting its reputation to gain the trust of unsuspecting recipients. The email claims the recipient received a travel credit reward expiring shortly and asks them to claim it by clicking the provided link.

The theme of this phishing campaign is timely with the ongoing summer holidays.
Microsoft impersonation
Hox rating: ★✩✩✩
Threat type: Bulk phishing
Payload: Malicious link
Region: Global
Analyst: Minna Herlevi
Date: 21.07.2023
This phishing email warns the recipient that their Microsoft account's two-factor authentication needs to be updated.

In the email, the user is repeatedly prompted to update their account to avoid login interruptions. This tactic is commonly used to create a sense of urgency.
Keep up with the threat feed
Don't miss the next threat feed, and subscribe to our newsletter for the latest feed and cybersecurity content. Stay informed and stay safe!