Australia Post Survey Phishing Emails
Over the past few weeks I've been receiving a bunch of these emails masquerading as Australia Post. All have subtle differences, but are essentially the same, telling me I have won an exclusive reward.
Here is what the email looks like:
You will see a bunch of the usual indicators, an email address that isn't from Australia Post and all links referencing the acornmorning.xyz domain. I've written about acornmorning in a bunch of previous blog posts. From what I can see, its just performing verification of email addresses to use in later attacks.
There emails have actually stemmed form a bunch of domains and sender addresses being;
Some of these domains have been setup for these emails and have been shut down, others are not related,and possibly the emails sent from compromised mailboxes at these organisations.
An easy one to spot but keep an eye out for this one. Stay HackProof!