Hackers targeted Wall Street firms with just a single phone call.
Google stated that hackers created 72 fake websites targeting employees of Blackstone, Bridgewater, Apollo, KKR, Bain Capital, TPG, CME Group, and Moody's.
Here is how it works:
- They called employees' personal phones, posing as the company's IT department.
- Real help desk numbers were sometimes displayed on the screen.
- They claimed passwords needed to be updated urgently.
- Employees were directed to a fake website named "passkeyhelpdesk".
- Once the password was entered, hackers requested SMS verification codes, and accounts were taken over before the call ended.
Google said some companies even paid ransoms.
These companies spend hundreds of millions of dollars annually on cybersecurity.
The copyright of this article belongs to the original author/organization.
The views expressed herein are solely those of the author and do not reflect the stance of the platform. The content is intended for investment reference purposes only and shall not be considered as investment advice. Please contact us if you have any questions or suggestions regarding the content services provided by the platform.
