Nov 20 / Admin

New Scam Alert: Microsoft Visio Files Used for Phishing

Infosecurity Magazine reported:   

Discovered by Perception Point, the new attacks use Visio’s .vsdx format, a file type commonly employed for business diagrams, to disguise malicious URLs and bypass traditional security scans.

Unlike common attachments like PDFs or Word documents, Visio files are rarely flagged as threats, making them an ideal vehicle for delivering phishing links.

Attackers include a clickable link within the Visio file, usually disguised as a “View Document” button. Users are instructed to press the Ctrl key and click, a subtle prompt that circumvents automated security tools

Find the original article here.

Enroll in Training Sessions:  Last Thursday of Every Month is Training on Frauds and New Scam Alerts and How to Combat