Veeam Phishing via Wav File, (Fri, Jul 18th)
一篇关于网络钓鱼的文章描述了一次看似来自Veeam Software的语音信箱通知邮件,附件包含一个WAV文件,内容涉及过期的备份许可证。尽管接收者与Veeam无关,该邮件仍可能构成非定向钓鱼攻击。 2025-7-18 07:39:5 Author: isc.sans.edu(查看原文) 阅读量:16 收藏

A interesting phishing attempt was reported by a contact. It started with a simple email that looked like a voice mail notification like many VoIP systems deliver when the call is missed. There was a WAV file attached to the mail[1].

Here is a transcript of the recording:

"Hi, this is xxxx from Veeam Software. I'm calling you today regarding ... <not clear> ... your backup license which has expired this month. Would you please give me a call to discuss about it?"

This was not targeted because the person who received the mail was not involved with Veeam (or any IT environment). Did you receive such emails recently or in the past?

[1] https://blog.rootshell.be/stuff/veeam-voicemsg.wav

Xavier Mertens (@xme)
Xamecosys
Senior ISC Handler - Freelance Cyber Security Consultant
PGP Key


文章来源: https://isc.sans.edu/diary/rss/32120
如有侵权请联系:admin#unsafe.sh