Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself

May 1, 2024, 11:07 p.m.

Description

Following the 2023 holiday season, Akamai researchers uncovered a significant amount of highly likely malicious activity and domains purporting to be associated with the United States Postal Service (USPS). Akamai researchers compared five months of DNS traffic to the legitimate domain, usps.com, with DNS traffic to illegitimate combosquatted domain names.

Date

Published Created Modified
April 29, 2024, 7:15 p.m. April 29, 2024, 7:15 p.m. May 1, 2024, 11:07 p.m.

Indicators

usps.solutions

172.86.125.227

155.94.156.254

155.94.151.28

155.94.135.202

107.150.7.53

104.223.16.2

Attack Patterns

Sharefinder

IcedID

Cobalt Strike

T1187

T1135

T1176

T1036

T1053

T1566

T1068

T1059