ET PHISHING Credito Emiliano Credential Phish Landing Page 2022-05-26
Sourceet/open
CreatedMay 26, 2022
UpdatedMay 26, 2022
Classificationsocial-engineering
alert http $EXTERNAL_NET any -> $HOME_NET any (msg:"ET PHISHING Credito Emiliano Credential Phish Landing Page 2022-05-26"; flow:established,to_client; http.stat_code; content:"200"; file.data; content:"|3c|title|3e|Mobile|20|Banking|20 2d 20|Accesso|3c 2f|title|3e|"; content:"jQuery|28 27 23|scadenza|27 29 2e|payform|28 27|formatCardExpiry|27 29 3b|"; fast_pattern; distance:0; content:"jQuery|28 27 23|carta|27 29 2e|payform|28 27|formatCardNumber|27 29 3b|"; distance:0; content:"method|3d 22|POST|22 20|action|3d 22|index|2e|php|22|"; distance:0; content:"type|3d 22|password|22|"; distance:0; reference:md5,ddae39f72f8e48fe26aa70dbbd8e660a; classtype:social-engineering; sid:2036702; rev:1; metadata:affected_product Windows_XP_Vista_7_8_10_Server_32_64_Bit, attack_target Client_Endpoint, created_at 2022_05_26, deployment Perimeter, confidence Medium, signature_severity Critical, tag Phishing, updated_at 2022_05_26, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T1566, mitre_technique_name Phishing;)
References
| md5 | ddae39f72f8e48fe26aa70dbbd8e660a |
Metadata
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!