Phishing Campaign on Cyber Space of Bangladesh

Published on 06-Aug-2025 18:00:00

A targeted phishing campaign was identified originating from the compromised government/law enforcement email accounts. The attacker leveraged legitimate credentials to gain unauthorized access and send fraudulent emails to a wide range of recipients, primarily within government organizations and law enforcement agencies. This campaign reflects a well-coordinated credential-based phishing operation, targeting critical sectors to exploit trust within intra-government communications.

The phishing emails typically include:

  1. Embedded phishing links within .jpeg or .png files disguised as document attachments.
  2. Password-protected .docx files, intended to bypass email security filters.

Most Targeted Sectors:

  1. Law Enforcement Agencies
  2. Government Organizations

Read full Details in the PDF Document