Scammers have found a new way to bypass users' usual caution. They send emails disguised as contracts, documents for signature, and urgent notifications, and hide the malicious file inside a protected RAR archive. The password for opening it is thoughtfully provided directly in the email text.
According to "Mail Mail", over the past month, this scheme accounted for 13% of detected and blocked fraudulent messages. To make them more convincing, emails are designed in a business style, include links to legislation, and create the impression that the document needs to be opened as soon as possible.
The scheme works particularly well during reporting season, when there are already many invoices, contracts, and attachments in the mail. In this context, a person may not notice a suspicious sender's address and open the archive automatically.
After unpacking, a malicious program may be found inside, capable of accessing the device, credentials, and personal or corporate information. Mail advises not to open unexpected attachments and to separately check the sender, even if the email looks quite official.

Комментарии