Forwarded from National Information Sharing and Analysis Center (NISAC) Security Alert NISAC-400-202601-00000012
The National Institute of Cyber Security (NICS) recently received external intelligence that attackers, using the “amendment of Article 5 of the Regulations for the Receipt, Disbursement, Custody and Utilization of the Employment Stability Fund” as a pretext, sent social engineering phishing emails containing malicious download links, inducing recipients to click on the links and download malicious files.
It is recommended that your unit strengthen precautions and notify all departments to increase vigilance, avoiding clicking on emails, phishing links, and attachments sent from these email accounts to prevent compromise.
Known characteristics of the attack-related emails are as follows: