Hackers Utilize Legitimate PDF Editing Tool in Latest BEC Attack for Financial Gain

Today, researchers at Avanan, a Check Point Company published their latest blog post discussing how hackers are sending messages directly from Soda PDF, a popular PDF editing tool commonly seen in BEC 3.0 attacks, to send emails that encourage users to call a phone number, where money will be attempted to be stolen. 

In this attack, an email is sent directly via Soda PDF as an invoice, and contains a download link that goes directly to Soda PDF. In hopes of extracting finances, hackers provided a number for the end-users to call if they believed there had been an error. Calling the number not only leads victims to provide credit card information, but also saves the telephone number for future scams. 

You can find the blog post here: https://www.avanan.com/blog/using-legitimate-pdfs-for-bec-3.0-attacks?hs_preview=ZFbmDiTP-119400800417

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading