A Nigerian Easter egg
Full article230 words · extracted from securelist.com · click to collapse
We’ve just come across a neat little phishing attack. The Equitorial Trust Bank seems to have a few issues with server security. Of course, the fact that the bank is located in Nigeria might ring a few warning bells, and we’re looking into this.
Currently, however, the bank doesn’t seem to have noticed the Easter egg that they’re hosting – a phishing page for eggTM banking customers.
The eggTM page differs from the legitimate eggTM log-in page only in the colours that it uses. Sadly, we know from experience that users often don’t notice differences like that.
Of course, we’ve notified the bank, and maybe they’ll be more security conscious in future.
Latest Webinars
Reports
Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.
Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.
Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.
Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.
Text extracted automatically; images, tables and formatting may be missing. Original: https://securelist.com/a-nigerian-easter-egg/30312/