Phishers Use HTML Attachments To Avoid Detection, Kaspersky Recommends This
Kaspersky has blocked nearly 2 million phishing emails containing HTML. (Photo: Unsplash)

Partager:

JAKARTA - In this digital era, of course you are already familiar with the word 'phishing'. Phishing is an attempt to obtain information on someone's data by using phishing techniques.

Recently in a release, Kaspersky said that the global cybersecurity company, which was founded in 1997, had blocked nearly 2 million phishing emails containing HTML.

This type of fraud trick is often not realized by many people. Using HTML files in phishing mail is one of the newest and popular tricks exploited by fraudsters.

Usually, such links are easily detected by anti-spam engines or antivirus software, but using HTML attachments has allowed cybercriminals to evade detection.

To protect yourself from phishing, Kaspersky recommends the following things you can do.

Check each link before clicking. Hover over to preview the URL and watch for spelling mistakes or other clutter. Enter only username and password over a secure connection. Look for the HTTPS prefix before the site's URL, which indicates that the connection to the site is secure. Keep in mind that even if a message or letter appears to be from one of your best friends, their account may have been hacked. Remain cautious in all situations and research all links and attachments even if they appear to be from a legitimate source. Pay particular attention to messages that appear to be from legitimate organizations, such as banks, tax agencies, online stores, travel agencies, airlines, and so on. Even internal messages from your own office. It is not difficult for cybercriminals to produce fake letters that look legitimate. Avoid opening unexpected files sent by online gaming friends or other online friends. They may contain ransomware or even spyware, such as attachments from legitimate-looking emails. Provide your staff with basic cybersecurity hygiene training. Perform a simulated phishing attack to ensure that employees know how to distinguish phishing emails from real emails. Use protection solutions for endpoints and email servers with anti-phishing capabilities. Protect your Microsoft 365 cloud services, if you use them.

The English, Chinese, Japanese, Arabic, and French versions are automatically generated by the AI. So there may still be inaccuracies in translating, please always see Indonesian as our main language. (system supported by DigitalSiber.id)

Nouvelles connexes