Today > | 2 Medium | 1 Low vulnerabilities   -   You can now download lists of IOCs here!

Phishing for Banking Information

Dec. 27, 2024, 3:51 p.m.

Description

A recent phishing campaign targeting Bank of Montreal (BMO) customers has been identified. The scam involves text messages purporting to be from BMO, asking recipients to verify their credit card information. Key indicators of the fraudulent nature include the use of a non-official SMS number, incorrect display of card numbers, and a malicious website with spelling errors. The domain 'bmo-securltyverlfy1.com' was registered on December 11, 2024, and is associated with an IP address linked to 81 other domains targeting various Canadian institutions. The campaign exploits the holiday season to deceive users into revealing sensitive banking information.

Date

Published: Dec. 27, 2024, 3:31 p.m.

Created: Dec. 27, 2024, 3:31 p.m.

Modified: Dec. 27, 2024, 3:51 p.m.

Indicators

c76cbf6e22734f177e024e1fee02ed17a53413e0dfee02c6a6601be28280b167

bmo-securltyverlfy1.com

Attack Patterns

T1583.001

T1589.002

T1566.002

T1566

Additional Informations

Finance

Canada