"SMTP/Sendmail Service is Disabled" Email Scam Tries to Snag Credentials

A new scam is being passed around, using malicious emails. The name given to the new campaign is the "SMTP/Sendmail Service is Disabled" scam.

The premise used by the threat actors behind the scam is pretty simple. Victims would receive an email with the subject line "SMTP/Sendmail Service is Disabled until you confirm ownership".

The full text of the malicious email goes as follows:

Secure Messaging

Notification

Dear   [redacted]

Reason: Restricted Mail Service.

Report: SMTP/Sendmail Service is Disabled     until you Verify ownership.

Date and Time   : 5/24/2022 6:11:22 a.m.

Please kindly use the below button to continue with the same password.

Verify Ownership

Further message might be prevented if any of above actions are not performed.

This email was sent to   [redacted].

Copyright © 2022 [redacted] Inc. All rights reserved.

This simple trick expects people to get in a flurry of panic about their mail server having serious issues and try to fix this as quickly as possible, but not by talking to the company's support or IT team and just blindly clicking the "Verify Ownership" button in the email.

Doing this will only open up a fake email login page which is used to phish out victim credentials and effectively gain access to the compromised email account.

Be very aware of what you are doing when handling similar emails and always contact your IT or cybersecurity team first, before taking any rash and potentially dangerous actions.

May 26, 2022
Loading...

Cyclonis Password Manager Details & Terms

FREE Trial: 30-Day One-Time Offer! No credit card required for Free Trial. Full functionality for the length of the Free Trial. (Full functionality after Free Trial requires subscription purchase.) To learn more about our policies and pricing, see EULA, Privacy Policy, Discount Terms and Purchase Page. If you wish to uninstall the app, please visit the Uninstallation Instructions page.