Posts

Showing posts from May, 2018

Apple Phishing email leads to a fake Apple login page

Image
Today, I'm looking at a phishing email sent to my Hotmail account. At first glance, it looks pretty standard; set to "High Importance" and littered with exclamation points to create a sense of urgency, the Apple logo and a real Apple support link at the bottom for legitimacy, and an IP address to create a sense of technicality. However, there are a few giveaways: Misspellings and bad grammar throughout Apple link and boilerplate text at the bottom are for Apple Australia, which is the wrong country for the intended target IP address belongs to Comcast, which is not the ISP of the intended target Generic greeting (Dear Apple User!) rather than a personalized greeting The iPhone image is loaded from an external source that a legitimate Apple email would not be using (Wikimedia) and has Indonesian (i.e. Malay) alt text (alt="Hasil gambar untuk iphone 6" src="hxxps://upload.wikimedia.org/wikipedia/commons/thumb/0/01/IPhone6_silver_frontface.png/15