Security News > 2020 > October > US brokerage firms warned of widespread survey phishing attacks

The U.S. Financial Industry Regulatory Authority has issued a notice warning member brokerage firms of widespread phishing attacks using surveys to harvest information.
FINRA is a non-profit organization and self-regulatory body authorized by the U.S. government to regulate exchange markets and brokerage firms.
The financial industry regulator said that the phishing messages are being sent from a fake FINRA domain and made to look like they were being sent by FINRA. Member firms are asked to fill a survey by October 13, with the information needed to FINRA would need to "Update its conduct and supervisory rules."
"FINRA reminds firms to verify the legitimacy of any suspicious email prior to responding to it, opening any attachments or clicking on any embedded links," the notice adds.
During August, FINRA warned members of attackers using registered brokers' info to create convincing phishing sites.
News URL
Related news
- Ransomware gangs pose as IT support in Microsoft Teams phishing attacks (source)
- Microsoft Teams phishing attack alerts coming to everyone next month (source)
- How to Prevent Phishing Attacks with Multi-Factor Authentication (source)
- Hacker pleads guilty to SIM swap attack on US SEC X account (source)
- US indicts 8Base ransomware operators for Phobos encryption attacks (source)
- Critical PostgreSQL bug tied to zero-day attack on US Treasury (source)
- Microsoft: Hackers steal emails in device code phishing attacks (source)
- Darktrace: 96% of Phishing Attacks in 2024 Exploited Trusted Domains Including SharePoint & Zoom Docs (source)
- Phishing attack hides JavaScript using invisible Unicode trick (source)
- FatalRAT Phishing Attacks Target APAC Industries Using Chinese Cloud Services (source)