{"id":1956,"date":"2024-03-01T12:10:35","date_gmt":"2024-03-01T20:10:35","guid":{"rendered":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/?p=1956"},"modified":"2024-03-01T12:10:35","modified_gmt":"2024-03-01T20:10:35","slug":"payment-confirmation-2","status":"publish","type":"post","link":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/2024\/03\/01\/payment-confirmation-2\/","title":{"rendered":"Payment Confirmation"},"content":{"rendered":"<p>Always be wary of unexpected or unsolicited emails that contain attachments as they may contain malware. The vagueness and generic nature of this message should be a red flag and may be a ploy to get you to click on the attachment. Since the message does not address the recipient by name and provides no information about the supposed payment, it&#8217;s likely that it was a mass mailout and therefore not a legitimate invoice.<\/p>\n<p>If you&#8217;re inclined to think that the attachment should be harmless because SVG is an image format, think again! SVG files can actually contain embedded scripts, meaning they can be laced with malware, which is definitely the case for this sample. If you clicked on this attachment, contact the Computer Help Desk or your department&#8217;s IT support staff immediately for assistance.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-1957\" src=\"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-content\/uploads\/sites\/4983\/2024\/03\/2024-03-01-payment-confirmation.png\" alt=\"Vague email claiming to be an invoice but the SVG attachment actually contains malware\" width=\"314\" height=\"330\" aria-describedby=\"phish_transcript\" srcset=\"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-content\/uploads\/sites\/4983\/2024\/03\/2024-03-01-payment-confirmation.png 314w, https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-content\/uploads\/sites\/4983\/2024\/03\/2024-03-01-payment-confirmation-285x300.png 285w\" sizes=\"auto, (max-width: 314px) 100vw, 314px\" \/><\/p>\n<blockquote id=\"phish_transcript\"><p>From: allen.lopez@o******.com<br \/>\nSubject: Payment Confirmation<\/p>\n<p>Attachment: [Generic file icon] RTVBAS05GDBA09.svg (2 KB)<\/p>\n<p>Payment Received, attached is your invoice.<\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>Always be wary of unexpected or unsolicited emails that contain attachments as they may contain malware. The vagueness and generic nature of this message should be a red flag and may be a ploy to get you to click on the attachment. Since the message does not address the recipient by name and provides no &hellip; <a href=\"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/2024\/03\/01\/payment-confirmation-2\/\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Payment Confirmation<\/span><\/a><\/p>\n","protected":false},"author":8719,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"image","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1956","post","type-post","status-publish","format-image","hentry","category-uncategorized","post_format-post-format-image"],"_links":{"self":[{"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/posts\/1956","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/users\/8719"}],"replies":[{"embeddable":true,"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/comments?post=1956"}],"version-history":[{"count":1,"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/posts\/1956\/revisions"}],"predecessor-version":[{"id":1958,"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/posts\/1956\/revisions\/1958"}],"wp:attachment":[{"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/media?parent=1956"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/categories?post=1956"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/onlineacademiccommunity.uvic.ca\/phishbowl\/wp-json\/wp\/v2\/tags?post=1956"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}