216.73.216.6

The Return of Pharmacy-Themed Spam

· Published 26/04/2025 10:16 · Modified 28/04/2025 08:51

Export JSON

Essential information

Published
26/04/2025 10:16
Modified
28/04/2025 08:51
Tags
2025-04-26 compromised-servers dkim domain spoofing email security fraudulent-websites pharmacy phishing social engineering spam
Related entities
8 techniques (mitre), 2 others

Description

Pharmaceutical-themed campaigns continue to target individuals and organizations, particularly in the healthcare and pharmaceutical sectors. Recent observations reveal a bulk campaign using spoofed identities and compromised infrastructure to send deceptive emails. The attackers employ tactics such as , signature manipulation, and the use of compromised servers running malicious PHP scripts. The emails contain links that redirect users to fraudulent websites posing as legitimate Canadian pharmacies, often including a fake security verification step. These campaigns aim to trick recipients into revealing sensitive information or potentially installing malware. The persistence of -themed highlights the need for continued vigilance and awareness of common scam tactics.

External references