QuickBooks Customers Being Targeted in Phishing Attacks – Intuit

Share post:

Tax software vendor Intuit cautioned QuickBooks users that they are being targeted in ongoing phishing attacks where threat actors pose as Intuit personnel to lure them with phony account suspension warnings.

“We’re writing to let you know that after conducting a review of your business, we have been unable to verify some information on your account. For that reason, we have put a temporary hold on your account. If you believe that we’ve made a mistake, we’d like to remedy the situation as quickly as possible. To help us effectively revisit your account please complete the below verification form. Once verification is completed, we will re-review your account within 24-48 hours,” said the hackers in their message to QuickBooks users. 

Once users click on the “Complete Verification” button in the phishing email,  they will be redirected to a landing site where their personal information is stolen or their system infected with malware.

Intuit emphasized that the sender “is not associated with Intuit, is not an authorized agent of Intuit, nor is their use of Intuit’s brands authorized by Intuit.”

Customers who received one of these phishing messages are strongly urged not to click on the embedded links or open any attachments.

Users are also advised to delete these emails from their inbox to prevent any data breach and to avoid malware from being installed on their systems.

Meanwhile, QuickBooks users who have already opened attachments or clicked links embedded on these phishing emails must immediately delete all downloaded files, scan their systems using an updated anti-malware solution, and change their passwords.

For more information, read the original story in Bleepingcomputer.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways