September 26, 2019

Lookout Phishing AI Discovers Campaign Targeting Verizon Employees

A group of people in a modern office working together

Advanced phishing attack imitates internal login page for employees

Overview

On September 20th, 2019, Lookout Phishing AI discovered a new phishing campaign targeting Verizon employees. The attack targets employees when they attempt to login to the internal apps portal for Verizon with the intention of stealing login credentials and multi-factor authentication passcodes. Lookout Phishing AI was first to pick up on this campaign after the attack was launched.

Lookout identified the malicious URL based on this and other phishing activity originating from the source IP address. By quickly identifying, scoring, and convicting the URL as phishing, Lookout notified Verizon of the page, and Phishing AI was able to prevent a major security incident tied to the theft of corporate credentials.

Potential impact

Verizon employees would have risked having their corporate identities taken over, which would compromise personal and corporate data. This would expose employees to fraud and identity theft and put the entire company at risk if the attacker is able to leverage their credentials to steal internal corporate data.

Real Fake

Mobile screen showing NetScaler Unified Gateway login with fields for username, password, and passcode.

Authors

Abstract fan-shaped digital art with green and yellow gradient bars radiating from the center.

Lookout

Endpoint Security
Icon of a lined paper notebook sheet with top ring binder and shadow.
Entry Type
Threat Summary
Green abstract logo with radial fan-like shapes forming a semicircle.
Discovered By
Lookout
Red fishhook with a baited worm, symbolizing phishing cyber threat.
Threat Type
Phishing
Computer screen showing a code editor with Python code implementing a dictionary filter function.
Platform(s) Affected
Threat Summary
Lookout
Phishing
Abstract white wavy lines creating a smooth flowing pattern on a light background.

Stop Cyberattacks Before They Start With Industry-Leading Threat Intelligence.

HeaderHeaderHeaderHeader
CellCellCellCell
CellCellCellCell
CellCellCellCell
CellCellCellCell