Indian Postal System Users Targeted by Mobile Phishing Attack

Published:

spot_img

India Post Phishing Attacks Linked to China-Based Group Smishing Triad

A China-based hacking group identified as Smishing Triad has unleashed a wave of text message phishing attacks on individuals in India, using the government-operated postal system as bait. The threat actors are specifically targeting iPhone users with deceptive text messages claiming that a package is waiting for them at an India Post warehouse. These messages contain malicious URLs that lead victims to fake websites designed to steal personal information.

According to a recent Fortinet FortiGuard Labs report, over 470 domain registrations mimicking India Post’s official domain were identified between January and July 2024, with the majority registered through Chinese and American domain registrars. Additionally, researchers at FortiGuard Labs uncovered phishing emails sent via iMessage using third-party email addresses like Hotmail, Gmail, and Yahoo to deliver the malicious content.

This trend of text-based phishing attacks extends beyond India, with recent incidents involving the US Postal Service and smishing attacks in the US targeting individuals for unpaid road tolls. Experts like Stephen Kowski, field CTO at SlashNext Email Security+, emphasize the importance of implementing comprehensive mobile web threat protection to combat these evolving tactics used by cybercriminals.

As mobile-first attacks continue to rise, organizations are urged to educate users on how to recognize and report suspicious messages while implementing robust security measures to detect and mitigate threats in real-time. By enhancing security controls on mobile devices, organizations can better safeguard users from falling victim to these sophisticated phishing campaigns targeting personal and corporate information.

spot_img

Related articles

Recent articles

Dubai’s Traffic Revamp: New Bridges, Lane Expansions, and Upgrades to Reduce Travel Times

Major Traffic Intersection Upgrade in Dubai: Sheikh Zayed bin Hamdan Al Nahyan Street The Roads and Transport Authority (RTA) of Dubai has embarked on an...

ANGLE Vulnerability Raises Concerns About Browser Security

Critical Security Flaw Discovered in Google’s Chromium Browser Engine A significant security vulnerability in Google’s Chromium browser engine has raised alarms globally, as researchers have...

AI-Driven Phishing Kits Overcome MFA to Steal Credentials at Scale

The Evolution of Phishing Kits: How AI is Changing the Game Cybersecurity researchers have recently identified a new wave of advanced phishing kits that are...

CISA Warns of Critical RCE Vulnerability in Sierra Wireless Routers

Significant Vulnerability Found in Sierra Wireless Routers On December 13, 2025, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a warning regarding a critical...