Case Study

Credential Theft: Following the Trail of a Spear Phishing Campaign

  • Attacker Objective: Steal Credentials
  • Threat Type: Credential Theft

A multi-billion dollar oil and gas company identified a phishing campaign that targeted 80 people within the organization and learned that nearly half of them clicked a link in the deceptive email.

Like many phishing incidents, the security team was first alerted to this attack by a user who called the help desk to report the suspicious email. After receiving that call, the Awake Security Platform enabled a swift and efficient response that would have taken days to accomplish for analysts using traditional tools.

The phishing email was designed to look like it had been sent from a high-ranking company executive. It contained an urgent message: “I don’t understand why this has not been settled yet. Please look into this ASAP.”

