A New Phishing Tactic: Reply-Chain Attacks

The reason phishing attacks seem to be mentioned time and time again is because they are still the number one tactic cybercriminals use for cyberattacks.  They are becoming more difficult to detect since cybercriminals continue to evolve their tactics.  The newest tactic they are using is called reply-chain phishing.

 

What is Reply-Chain Phishing? A reply-chain email occurs when one person sends an email to multiple recipients, and each recipient responds to the same email which creates an email chain.  Reply-chain phishing is when a phishing email is tucked inside an ongoing email chain.  This is unusual because phishing emails are typically sent as a new email message.

 

How does a hacker gain access to a reply-chain email? A hacker can easily gain access to a reply-chain by hacking into one of the email accounts of a person involved in the email chain.

 

Why are reply-chain phishing attacks hard to detect?
–  It comes from a familiar email address that has already been participating in the email conversation.
–  It may reference items that are already mentioned in the discussion.
–  It may use personalization, such as names that the hacker has seen in the reply chain.

How do you lessen the risk of Reply-Chain Phishing?
–  Use a password manager so employees won’t use the same password across multiple platforms.
–  Have multi-factor authentication controls in place for extra security.
–  Make sure employees are aware of the signs of phishing emails.
–  Contact CATS Technology Solutions Group for more ways to keep your systems secure!

About CATS Technology

CATS Technology is a complete technology solutions provider, dedicated to providing solutions that will streamline operations, enhance productivity and drive innovation for businesses of all sizes. Our professionally trained and certified IT experts empower our clients to leverage the full potential of their IT investments to stay ahead of today’s rapidly evolving digital landscape. 

Our Services

Share the Post:

Related Posts

The Wire Fraud Epidemic: It’s Time to Get Defensive  

As the saying goes, “We know a thing or two because we have seen a thing or two.” In the past year alone, there has been a surge in the number of businesses falling victim to wire fraud. Many of these incidents occur because their emails have been left susceptible to email hacking. We are here to say… many of those incidents could have been prevented. Investing in proactive cyber security for your email systems is no longer an option, it is essential in mitigating against the cyber criminals that can potentially prey on your business. 

Read More