Seleziona una pagina
Retarus Press Release

Phishers are Posing as Contract Partners to Access Company Data

Fraudsters take aim at active directory passwords

Milano, 01/09/2020 // The CERT at Retarus has issued a warning regarding phishing emails in which recipients are instructed to edit important business partner contracts. The phishers pretend to make the document available on the otherwise reputable Dotloop platform, directing the recipients to a fake login page for their Microsoft account.

The fraudulent emails bear the Microsoft logo as well as Dotloop’s official email boilerplate. Dotloop is a US-based platform for conducting real estate transactions in a legally compliant manner. The phishing attack becomes apparent after the recipient has clicked on the button intended to open the contract document. The link leads to a fake Microsoft page, where victims are requested to log in using their email credentials. By looking closely at the browser’s address field, it become clear the address is not to be trusted.

Phishing

“With this password, users are not only granting access to their emails,” underlines Martin Mathlouthi, Product Line Manager Secure Email Platform at Retarus. “As single sign-on is commonplace, this is also likely to be the password for the active directory, allowing the phishers to gain access to other critical company data.”

Avoid online fraud

These phishing mails currently in circulation confirm a trend that security experts at Retarus had already been observing. Poorly designed phishing mails with long, cryptic links and clumsy instructions in error-ridden English are now a thing of the past. The new generation of phishing emails are technically sophisticated, well-formulated, and professionally designed. The shape-shifting scammers disguise themselves as colleagues, supervisors, and business associates, even addressing their victims in the name of official institutions, renowned financial service providers, and online portals.

The Retarus’ Anti-Phishing Guide, which is available for free download, details how employees can best protect themselves from phishing emails (even when working from home), which details to use to recognize well-crafted fraudulent emails, and the best practices for when it is unclear if a message is genuineThe analysts at Forrester also describe what to look out for in an anti-phishing service, and outline the various methods commonly used to defend against phishing in their Now Tech: Antiphishing Solutions, Q1 2019 report.

Advanced Threat Protection

Retarus’ Secure Email Platform provides comprehensive protection, even from highly deceptive phishing emails, by virtue of its Advanced Threat Protection. This includes Time of Click Protection, which checks links contained in emails in real time and effectively blocks phishing websites.

Retarus Time of Click Protection

Informazioni su Retarus

Retarus è un provider globale di soluzioni cloud in grado di modernizzare e proteggere la comunicazione digitale e lo scambio di dati di aziende e autorità pubbliche. I prodotti principali comprendono il Cloud Fax digitale, SMS, Transactional Email, Email Security, Supply Chain Integration e Intelligent Document Processing. Retarus dispone di data center distribuiti in tutto il mondo, che forniscono queste soluzioni con i massimi livelli di performance, sicurezza e protezione dei dati. Retarus, con sede a Monaco di Baviera, è stata fondata nel 1992, è gestita dai proprietari ed è orgogliosa della sua forza innovativa. L'azienda impiega circa 500 persone in 20 filiali su cuattro continenti. Oltre la metà delle aziende quotate nell'S&P Global 100 si affidano a Retarus e, al pari dei principali analisti, confermano l'eccezionale qualità e affidabilità dei suoi servizi. Retarus offre i suoi prodotti in modo diretto e in stretta collaborazione con partner selezionati. Per ulteriori informazioni, visitare il sito: www.retarus.it

Press Contact Form

  • Hidden
  • Hidden
  • Questo campo serve per la convalida e dovrebbe essere lasciato inalterato.

Sala stampa

Per vedere tutti i comunicati stampa, visita la nostra Sala stampa.

Condividi:

Download

Pictures // 500 KB
Insieme ad un rapporto redazionale online e in formato stampa vengono messi a disposizione immagini/media in ambito nazionale e internazionale.

Sempre aggiornati

Volete essere informati regolarmente sulle novità di Retarus? Nessun problema! Con newsletter siete sempre aggiornati.

Retarus – Contatti stampa

retarus (Italia) S.r.l.
Ufficio Stampa
Via Tonale 26
20125 Milano MI
Italia
 
+39 02 873178 60
+39 02 873178 70
press@it.retarus.com