That unexpected ‘HIV test result’ email you just got is probably a scam
Reported today on TheNextWeb
For the full article visit: https://thenextweb.com/security/2020/03/10/hiv-test-email-phishing-scam/
That unexpected 'HIV test result' email you just got is probably a scam
Don't panic! That unexpected email about an HIV test result you got is probably just an attempt to trick you into downloading malware designed to steal your personal credentials and financial info.
Researchers from security firm Proofpoint have spotted a new phishing campaign which sends out fake HIV test results to lure recipients into loading a malicious Microsoft Excel file. To seem more credible, the attackers also pose as the Vanderbilt University Medical Center.
Ironically, the campaign spells Vanderbilt wrong ("Vanderbit").
[Read: Scientists need your computing power to find a cure for coronavirus]
Once downloaded the infected Excel document asks users to enable macros, which "allows the actor [to install another piece of malware] to take complete control over a user's system."
It remains unclear how widely spread the campaign is, but Proofpoint describes it as a "low volume" attempt. It mostly targeted "global insurance, healthcare, and pharmaceutical organizations."
"We encourage users to treat health-related emails with caution, especially those that claim to have sensitive health-related information," the researchers warn. "Sensitive health-related informatio