Biz.Chosun Phishing Campaign Impersonates Korean Agencies to Steal Naver Credentials
Article Content
- •Phishing emails impersonate Korean government agencies to steal Naver account credentials.
- •Users are lured by urgent subject lines related to taxes and police requests.
- •Naver advises against clicking links in emails and recommends verifying through official channels.
On August 24, 2026, Naver issued a warning about phishing emails impersonating various Korean government agencies, including Wetax and the National Police Agency, aimed at stealing user account information. These emails feature deceptive subject lines related to tax bills and police requests, enticing users to click on malicious links. Clicking these links directs users to fake Naver login pages that appear legitimate but are designed to capture passwords. Naver emphasized that legitimate agencies do not request passwords via email and advised users to verify information through official channels. The phishing emails are crafted to look authentic, including logos and contact details of real agencies. Users are urged to avoid clicking links in suspicious emails and to enable two-step verification for added security. If users have already entered their passwords on these fake sites, they should change them immediately.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Naver in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…