New KnowBe4 Phishing Templates: A Summary 7/30/2016



Over the past few weeks our Phishing Templates Mistress Katie and her team have added 17 new templates for use by customers in their simulated phishing campaigns. 

These new templates are almost equally divided between templates based on current events and templates based on actual phishing emails used by the bad guys and forwarded to us through the Phish Alert Button (PAB). 

Vacation_request.png

Those following the Pokemon Go phenomenon will be pleased to find three new templates baiting users into clicking links for news and freebies related to the game.

Here's a summary of these new templates, broken down by the sections in which they are currently classified. (Please note that some of the new Current Events templates will eventually be moving to the Online Services or Brand Knock-offs sections after a month or two.)

BANKING

"Create your American Express Personal Safe Key (PSK)": fake Amex account security email requesting users click a malicious link to create a Personal Safe Key

BUSINESS

"Your order summary from 365 Electrical - Order number 85891": fake order confirmation email supplies users with a malicious attachment (Excel sheet)

"Payroll processing info attached": phishing email refers users to a malicious attachment (Word doc) containing payroll information

ONLINE SERVICES

"Update your account immediately": fake helpdesk email directs users to click malicious link to complete an account upgrade

"Help us improve Bitbucket": fake Bitbucket email invites users to click malicious link to complete survey

CURRENT EVENTS

"Confirm your delivery address": fake DHL email requests users click malicious link to enable package delivery

"A Message from Amazon Customer Service": fake customer service email offers users a malicious link to click in order to claim a credit

"Breaking: TN Plane Crash Caused by Pokémon GO": fake news message pushes a malicious link tied to Pokemon Go story

"Breaking News: Brexit Voter Fraud Found, Results to be Thrown Out": fake news update on Brexit vote pushes malicious link on users looking for the latest news

"Get your Free Amazon Prime Membership!": fake Amazon email invites users to click malicious link to receive free Prime membership

"Attention Pokémon Go Trainers": bogus email threatens Pokemon Go account cut-off unless users click malicious link

"Free Unlimited Pokecoins": bogus email offers users free Pokecoins via a malicious link

"You've Received Ticketmaster Vouchers - Confirm Now": fake Ticketmaster email offers users free tickets via malicious link

"Please secure your Pandora account": fake Pandora account security email instructs users to click malicious link

"Brexit Causes Historic Market Drop in United States, Check your Retirement Fund": bogus news alert offers more Brexit news via malicious link

"Homicide Suspect In Your Area": fake crime news alert pressures to click malicious link for more information

"Game Of Thrones Copyright Violation Notice": fake demand for a fine to be paid to HBO's copyright cops

HUMAN RESOURCES

Re: Your vacation request": fake HR email requests users click malicious link to receive more info on a denied vacation request

You can find them all at the KnowBe4 Phishing -> Email Templates -> System Templates Tab. Have fun phishing!

Not a KnowBe4 Customer Yet?

KnowBe4's integrated training and phishing platform has tons of easy-to-use features. Here is an example: you can send attachments with Word Docs with macros in them, so you can see which users open the attachments and then enable macros, which is one of the main ransomware infection vectors. 

See it for yourself and get a live, one-on-one demo.

Request A Demo

PS: Don't like to click on redirected buttons? Cut & Paste this link in your browser:

https://info.knowbe4.com/kmsat-request-a-demo

 

 


Topics: Phishing



Subscribe to Our Blog


Comprehensive Anti-Phishing Guide




Get the latest about social engineering

Subscribe to CyberheistNews