1 min read

Phishing ploy targets COVID-19 vaccine distribution

Circular cybersecurity badge with globe and repeating text reading Cyber Security
IBM security researchers have discovered an email phishing campaign targeted at companies involved with the cold chain distribution of the COVID-19 vaccine. The attack targeted organizations across multiple countries, including Germany, Italy, South Korea, Czech Republic, and Taiwan.

 

What happened?

The hacker impersonated a business executive from Haier Biomedical and sent phishing emails to organizations involved in the COVID-19 “cold chain” process that keeps mRNA-based SAR-CoV-2 vaccines at the right temperature during delivery. The attacks began in September 2020. The IBM security researchers believe the goal was to obtain credentials to access sensitive data related to the COVID-19 vaccine distribution efforts. The perpetrator remains unknown, but researchers say "the precision targeting and nature of the specific targeted organizations potentially point to nation-state activity."

 

Was any data compromised?

There's no evidence to determine if the hackers were successful or not. It's clear though that cyberattacks related to COVID-19 are still occurring on a large scale. Healthcare providers and business associates need to stay alert to protect their data.

 

SEE ALSO: Coronavirus Cyberattacks: How to Protect Yourself

 

How to prevent display name spoofing attacks

Hackers pretending to be high-level executives to gain access to sensitive information is not a new strategy, but it's an effective one. Employees will often open an email that appears to be from their boss without looking closely at the display name or email address. IBM and Paubox do have a few recommendations to prevent display name spoofing attacks. These tips include:

 

  • Multi-factor authentication: Your organization should consider using a second form of verification before granting access to data. Not only would a person need to know the login information of an account, but they will also need to enter a randomly generated PIN code sent to a different device or account.
  • Employee training: Humans can often be the weakest link in security defense. Employee awareness training regarding email scams can protect your business from cyberattacks.
  • ExecProtect: Paubox's patented ExecProtect feature stops display name spoofing emails from entering your employees' inboxes in the first place.

 

Paubox Email Suite Plus has robust inbound security tools to stop email threats, such as phishing emails , spam , viruses , and malware . It easily integrates with your current email provider, like Google Workspace and Microsoft 365 . This means that your employees can send encrypted, HIPAA compliant email directly to a patient's inbox without using client portals or third-party apps.
 
Try Paubox Email Suite Plus for FREE today.
Two people shaking hands in an office

Enforcing email policies with ExecProtect

This week we discovered a hospital in Illinois using ExecProtect to enforce corporate communication policies within their organization. This post is...

Read More
The word "security" displayed on a computer screen with a pixelated cursor

1.2 million patients' info exposed after MEDNAX phishing attack

MEDNAX is a healthcare business associate that provides revenue cycle management and other administrative services. The company recently announced

Read More
Two professionals working on laptops at a table in a modern office space

ExecProtect: A solution for display name spoofing

This month we steadily added customers to a new solution we've built to combat Display Name Spoofing. We're calling it ExecProtect.

Read More

Subscribe to Paubox Weekly

Every Friday we bring you the most important news from Paubox. Our aim is to make you smarter, faster.