Check Point Says to Expect More Shipping and Delivery Phishing Emails This Season

Shipping and Delivery PhishingWith in-person shopping still considered “high risk”, online shopping with home delivery and the need to meet delivery deadlines creates the perfect scenario for scammers.

U.S. consumers are projected to spend more this year online than ever before. And that means more prospective phishing victims as well. According to Check Point’s security researchers, there has been a 427% increase in shipping-themed phishing emails across the U.S. in November alone.

The breakdown of shipping vendors impersonated includes:

  • DHL (56%)
  • Amazon (37%)
  • Fedex (7%)

The emails, of course, use the story of some sort of delivery issue requiring the attention of the potential victim.

DHL Screenshot
Source: DHL

Many of these scams either direct the victim to a malicious attachment that likely uses the same tactic we saw in a recent scam pretending to be Windows Defender to enable malicious content. Other scams take victims to fake shipping vendor websites to trick victims out of personal information and, potentially, credit card details.

DHL Screenshot
Source: DHL

While most of these appear to be consumer-focused, it’s completely within the realm of possibility for these same scams to be sent to corporate email accounts, as organizations are still sending and receiving packages. Users need to be educated on this scam ASAP. Ideally, leveraging continual Security Awareness Training will better prepare users for phishing attacks using any themed scam.

Free Phishing Security Test

Would your users fall for convincing phishing attacks? Take the first step now and find out before bad actors do. Plus, see how you stack up against your peers with phishing Industry Benchmarks. The Phish-prone percentage is usually higher than you expect and is great ammo to get budget.

PST ResultsHere's how it works:

  • Immediately start your test for up to 100 users (no need to talk to anyone)
  • Select from 20+ languages and customize the phishing test template based on your environment
  • Choose the landing page your users see after they click
  • Show users which red flags they missed, or a 404 page
  • Get a PDF emailed to you in 24 hours with your Phish-prone % and charts to share with management
  • See how your organization compares to others in your industry

Go Phishing Now!

PS: Don't like to click on redirected buttons? Cut & Paste this link in your browser:

Topics: Phishing

Subscribe To Our Blog

Ransomware Hostage Rescue Manual

Get the latest about social engineering

Subscribe to CyberheistNews