"SMTP/Sendmail Service is Disabled" Email Scam Tries to Snag Credentials
A new scam is being passed around, using malicious emails. The name given to the new campaign is the "SMTP/Sendmail Service is Disabled" scam.
The premise used by the threat actors behind the scam is pretty simple. Victims would receive an email with the subject line "SMTP/Sendmail Service is Disabled until you confirm ownership".
The full text of the malicious email goes as follows:
Secure Messaging
Notification
Dear [redacted]
Reason: Restricted Mail Service.
Report: SMTP/Sendmail Service is Disabled until you Verify ownership.
Date and Time : 5/24/2022 6:11:22 a.m.
Please kindly use the below button to continue with the same password.
Verify Ownership
Further message might be prevented if any of above actions are not performed.
This email was sent to [redacted].
Copyright © 2022 [redacted] Inc. All rights reserved.
This simple trick expects people to get in a flurry of panic about their mail server having serious issues and try to fix this as quickly as possible, but not by talking to the company's support or IT team and just blindly clicking the "Verify Ownership" button in the email.
Doing this will only open up a fake email login page which is used to phish out victim credentials and effectively gain access to the compromised email account.
Be very aware of what you are doing when handling similar emails and always contact your IT or cybersecurity team first, before taking any rash and potentially dangerous actions.








