Categories: Scams

Phishing Emails Lure Victims With Inside Info On Trump’s Health

https://open.spotify.com/show/3Gmj15x6cGrgJEzmGnDTTj

Phishing Emails Lure Victims With Inside Info On Trump’s Health

A phishing campaign pushing a network-compromising backdoor pretends to have the inside scoop on President Trump’s health after being infected with COVID-19.

With the United States 2020 Presidential elections being hyper-partisan, people from different sides of the aisle have become obsessed with Trump’s health for various reasons.

To capitalize on this, the threat actors behind the BazarLoader trojan have started a new phishing campaign that pretends to have insider information on Trump’s condition.

Phishing email infects you with a case of BazarLoader

The new phishing campaign spotted by researchers at cybersecurity firm ProofPoint is using a variety of different email subjects, including:

Recent materials pertaining to the president’s illness
Newest information about the president’s condition
Newest info pertaining to President’s illness

The spam email themselves tease that they have new insider information regarding Trump’s health, but require you to download a document using an embedded link.

Also Read: Trusted Data Sharing Framework IMDA Announced In Singapore

Phishing email about President Trump’s health

When a recipient clicks on the link they will be brought to a Google Doc stating that Google has scanned the file and it is safe. It then prompts the visitor to download the document.

When clicking on the download link, instead of downloading a Word doc, a BazarLoader executable will be downloaded instead.

BazarLoader landing page

BazarLoader is a backdoor trojan believed to be created by the notorious TrickBot gang.

When installed, BazarLoader will allow the threat actors to remotely access the victim’s computer, and use it to compromise the rest of the network.

These attacks ultimately lead to the deployment of the Ryuk Ransomware on a victim’s network, which turns the breach of a single computer into a corporate wide attack.

BazarLoader is not the only malware taking advantage of the 2020 election. Last week, ProofPoint also found emails pretending to be from the Democratic National Convention (DNC) that infected recipients with the Emotet trojan.

Also Read: Data Protection Authority GDPR: Everything You Need To Know

Privacy Ninja

Recent Posts

Role of Enhanced Access Controls in Safeguarding Personal Data in Telecommunications

Role of Enhanced Access Controls in Safeguarding Personal Data in Telecommunications that every Organisation in…

1 week ago

Role of Effective Incident Response Procedures in Strengthening Data Security

Effective Incident Response Procedures in Strengthening Data Security that every Organisation in Singapore should know…

2 weeks ago

Strengthening Your Cyber Defenses: The Crucial Role of Regular Vulnerability Scanning

Crucial Role of Regular Vulnerability Scanning that every Organisation in Singapore should know. Strengthening Your…

2 weeks ago

Enhancing Data Security with Multi-Factor Authentication

Enhancing Data Security with Multi-Factor Authentication that every Organisation in Singapore should know. Enhancing Data…

3 weeks ago

A Strong Password Policy: Your Organization’s First Line of Defense Against Data Breaches

Strong Password Policy as a first line of defense against data breaches for Organisations in…

3 weeks ago

Enhancing Website Security: The Importance of Efficient Access Controls

Importance of Efficient Access Controls that every Organisation in Singapore should take note of. Enhancing…

4 weeks ago