Alerts •   Jul 29, 2021

Malware Spotted!

PO from GS Caltex

Last week, our artificial intelligence caught an email from yoon.bora@gscaltex.com with the subject saying that we owe them USD65,165,10, and it's an overdue invoice.
They also attached a PDF file with a payload

 

GS Caltex invoice email

GS Caltex is a South Korean oil refiner. The company changed its name from LG-Caltex Oil Corporation to GS Caltex Corporation on January 27, 2006. Chevron and GS Group jointly own it. GS Caltex was founded in May 1967 as the first private oil company in Korea. via Wikipedia

 

To the IT department of GS Caltex: better check all your systems and server fast! 모든 시스템과 서버를 빠르게 확인하는 것이 좋습니다!