LinkedIn Phishing Scam Alert: How Cybercriminals Use Fake InMail to Deliver ConnectWise RAT!

Cofense has uncovered a LinkedIn phishing scam using fake InMail emails to deliver ConnectWise RAT. The scam creates urgency with a false sales query, prompting quick response. Despite outdated designs and failed authentication checks, it bypasses security measures, highlighting the need for vigilance against LinkedIn phishing attacks.

Pro Dashboard

Hot Take:

Who knew that LinkedIn would become the new catfish capital of the world? You think you’re getting a business proposal, but surprise! It’s actually a RAT trying to crash your computer party. These cybercriminals have taken networking to a whole new level—one you’d rather avoid at all costs. Next time you see a LinkedIn InMail, maybe think twice before clicking, unless you’re into downloading uninvited guests!

Key Points:

  • Cybercriminals are using fake LinkedIn InMail messages to distribute ConnectWise RAT.
  • The phishing emails use outdated LinkedIn templates to seem legitimate.
  • Emails bypass security checks despite failing SPF and DKIM authentication.
  • Recipients are tricked into downloading malware through buttons, not direct prompts.
  • Campaign has been active since May 2024 and leverages social engineering tactics.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?