ditchman Posted October 4, 2022 Report Share Posted October 4, 2022 (edited) got a text at 6.30 this morning about applying for energy rebate.............the address contact ends ".com"..........not "gov.uk"...think i read somewhere on PW that any coms from governmental department will end "gov.uk" this text starts (before the verbage)...."GOV.UK"...........which although confusing seems a bit strange i have treated it as a scam ......am i right ? Edited October 4, 2022 by ditchman bad grammer Quote Link to comment Share on other sites More sharing options...
Cosmicblue Posted October 4, 2022 Report Share Posted October 4, 2022 (edited) Assume to be a Scam. Also be aware of this published by our Security and Governance team yesterday: " There are increasing reports of malware masquerading as software updates to trick people into installing these purported “updates.” SocGholish is one such malware and this particular framework uses several social engineering themes that impersonate browser updates like Chrome and Firefox, or other applications such as Microsoft Teams. Please carefully read the email and verify the sender’s exact email address. Alert: Be on the lookout for emails requesting you to update your applications via an external website. This is called a Drive-by Attack and triggers a malicious malware download. SocGholish malware is on the rise. The term “Soc” in the “SocGholish” framework refers to the attack’s use of social engineering toolkits masquerading as a software update. Thus far, this particular framework using several social engineering themes that impersonate browser updates like Chrome and Firefox, or other applications such as Microsoft Teams." Edited October 4, 2022 by Cosmicblue Quote Link to comment Share on other sites More sharing options...
discobob Posted October 4, 2022 Report Share Posted October 4, 2022 13 minutes ago, Cosmicblue said: Assume to be a Scam. Also be aware of this published by our Security and Governance team published this yesterday: " There are increasing reports of malware masquerading as software updates to trick people into installing these purported “updates.” SocGholish is one such malware and this particular framework uses several social engineering themes that impersonate browser updates like Chrome and Firefox, or other applications such as Microsoft Teams. Please carefully read the email and verify the sender’s exact email address. Alert: Be on the lookout for emails requesting you to update your applications via an external website. This is called a Drive-by Attack and triggers a malicious malware download. SocGholish malware is on the rise. The term “Soc” in the “SocGholish” framework refers to the attack’s use of social engineering toolkits masquerading as a software update. Thus far, this particular framework using several social engineering themes that impersonate browser updates like Chrome and Firefox, or other applications such as Microsoft Teams." passing this to our security team who TBH are not very good in the pro-activce stakes Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.