Phishers are sending malicious emails claiming to come from the Federal Deposit Insurance Corp., the agency said this week in an alert. The messages contain the subject line "check your Bank Deposit" and falsely inform users that the FDIC has taken control of their bank's assets. The emails include links that appear to point to FDIC forms, but clicking on one of them actually installs a malicious executable. The alert said the FDIC is not sure what the executable will do, but that recipients should consider it an attempt to steal personal information. – DK
One campaign posed as an HR department mandating vaccine information, another leveraged an XSS flaw to disguise a malicious download, and a third leveraged Verizon's Vzwpix service to mass-distribute emails.