Original Release Date: 8/13/2020
The Cybersecurity and Infrastructure Security Agency (CISA) is currently tracking an unknown malicious cyber actor who is spoofing the Small Business Administration (SBA) COVID-19 loan relief webpage via phishing emails. These emails include a malicious link to the spoofed SBA website that the cyber actor is using for malicious re-directs and credential stealing.
This CISA Alert (AA20-225A) provides technical details, indicators of compromise, mitigation recommendations, and is being provided for potential use at the sole discretion of recipients in order to protect against cyber threats.
We encourage recipients who discover signs of malicious cyber activity to contact us via the cyber incident report form by clicking here.