Received a #phishing email directed at @Tutanota customers. The email redirects to a login portal. Already reported via the app.
=> View attached media | View attached media | View attached media
=> More informations about this toot | More toots from staticnoisexyz@infosec.exchange
@Tutanota The link in the email leads to v3068275-3es7rf4frozn.demo077[.]volusion[.]com which has a button leading to grapefruit21300526[.]temporary-demo[.]site. The credentials are send to leads[.]cloudpreview[.]online/form/submit
=> More informations about this toot | More toots from staticnoisexyz@infosec.exchange
@Tutanota Virustotal links for both websites:
https://www.virustotal.com/gui/url/c23babc4a1f6835aa8b479892a008f109a475a3177145625b6681e49fea557b4/detection
https://www.virustotal.com/gui/url/3fe8b2585f2bfeb80fc54ba8ccbf60e1f2fb740743f3556d2668ec8787b7b920
=> More informations about this toot | More toots from staticnoisexyz@infosec.exchange
text/gemini
This content has been proxied by September (3851b).