{"id":2861,"date":"2021-08-16T13:40:32","date_gmt":"2021-08-16T08:10:32","guid":{"rendered":"https:\/\/xiarch.com\/blog\/?p=2861"},"modified":"2021-08-16T13:40:34","modified_gmt":"2021-08-16T08:10:34","slug":"us-brokers-alerted-of-active-phishing-attacks-act-like-finra","status":"publish","type":"post","link":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/","title":{"rendered":"US Brokers Alerted of Active Phishing Attacks Act like FINRA"},"content":{"rendered":"\n<p><p style=\"text-align: justify;\">The US Financial Industry Regulatory Authority (FINRA) alerts US contribute corporations and brokers of an active phishing operation impersonating FINRA officials and asking them to hand over critical data under the threat of penalties.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">FINRA is a non-profit organization supervised by the Securities and Exchange Commission (SEC) and authorized by the US government to adjust all publicly ongoing securities organizations and exchange markets. This independent, non-governmental securities regulator supervises over 600,000 brokers across the nation and preserves track of billions of market events every day.<\/p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Imitating FINRA Domain Names Used For Phishing<\/strong><\/h2>\n\n\n\n<p><p style=\"text-align: justify;\">In a notice issued on Friday, the US financial industry regulator said that the phishing message is being transmitted from multiple domains impersonating FINRA official sites. The attackers are using at least three different domains in this campaign (i.e., finrar-reporting org, finpro-finrarorg, and gateway2-finra.org).<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\"><strong>\u201c<\/strong>The email asks the beneficiary to click a link to \u2018view request\u2019 and provide data to \u2018complete\u2019 that request, noting that \u2018late submission may attract penalties\u2019, the regulatory notice reads.<strong>\u201d<\/strong> This technique is designed to add immediate to the attackers\u2019 demand, with the hope that the victims would answer their request before checking the emails\u2019 legitimacy.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">\u201cFINRA suggest that anyone who clicked on any link or image in the email urgently alerted the appropriate individuals in their organization of the incident,\u201d the regulator added.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">Brokerage Corporation and their employees are urged to verify the legitimacy of all suspicious emails before reverting, launching attachments, or clicking on embedded links. <\/p><\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img decoding=\"async\" loading=\"lazy\" width=\"1013\" height=\"758\" src=\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/08\/US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-featured-image.png\" alt=\"US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-image1\" class=\"wp-image-2863\" srcset=\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/08\/US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-featured-image.png 1013w, https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/08\/US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-featured-image-300x224.png 300w, https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/08\/US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-featured-image-768x575.png 768w\" sizes=\"(max-width: 1013px) 100vw, 1013px\" \/><\/figure><\/div>\n\n\n\n<p><p style=\"text-align: justify;\">The domains are utilized in these active phishing attacks were certified on Thursday, August 12, utilizing the services of the Hosting Concepts B.V. and NameCheap registrars.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">Before concerning the warn, FINRA asked the Internet domain registrar to suspend services for the malicious domains due to their utilization in ongoing phishing attacks.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">As per the US financial market regulator, none of the domain names utilized to transmit phishing messages are connected to FINRA. Firms getting phishing emails originating from these domain names are suggested to remove them urgently.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">&#8220;For more details, firms should review the resources facilitated on FINRA\u2019s Cybersecurity Topic Page, including the Phishing section of our Report on Cybersecurity Practices &#8211; 2018,&#8221; FINRA added.&nbsp; &nbsp;<\/p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Similar Phishing Attack Spotted in June<\/strong><\/h2>\n\n\n\n<p><p style=\"text-align: justify;\">While the financial regulator rarely issues such regulatory notices, it has posted three of them this year, all of them alerting brokers of phishing attacks targeting their information.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">In June, FINRA alerted of a very similar operation also threatening recipients with penalties following failure to submit the requested data in a timely fashion.<\/p><\/p>\n\n\n\n<p><p style=\"text-align: justify;\">Another alert, issued in March, alerted US brokers of a phishing campaign using fake compliance audit alerts to harvest brokers&#8217; information. Last year, brokerage firms were warned of spear-phishing attacks that redirected targets to a fake registration form hosted on the finnra.org copycat site.<\/p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The US Financial Industry Regulatory Authority (FINRA) alerts US contribute corporations and brokers of an active phishing operation impersonating FINRA officials and asking them to hand over critical data under the threat of penalties. FINRA is a non-profit organization supervised by the Securities and Exchange Commission (SEC) and authorized by the US government to adjust [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":2864,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[6],"tags":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.11 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>US Brokers Alerted of Active Phishing Attacks Act like FINRA - Xiarch Solutions Private Limited<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"US Brokers Alerted of Active Phishing Attacks Act like FINRA - Xiarch Solutions Private Limited\" \/>\n<meta property=\"og:description\" content=\"The US Financial Industry Regulatory Authority (FINRA) alerts US contribute corporations and brokers of an active phishing operation impersonating FINRA officials and asking them to hand over critical data under the threat of penalties. FINRA is a non-profit organization supervised by the Securities and Exchange Commission (SEC) and authorized by the US government to adjust [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\" \/>\n<meta property=\"og:site_name\" content=\"Xiarch Solutions Private Limited\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/xiarch\/\" \/>\n<meta property=\"article:published_time\" content=\"2021-08-16T08:10:32+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-08-16T08:10:34+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/08\/US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-feature-image.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1000\" \/>\n\t<meta property=\"og:image:height\" content=\"525\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Xiarch Security\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@xiarch\" \/>\n<meta name=\"twitter:site\" content=\"@xiarch\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Xiarch Security\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\"},\"author\":{\"name\":\"Xiarch Security\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c\"},\"headline\":\"US Brokers Alerted of Active Phishing Attacks Act like FINRA\",\"datePublished\":\"2021-08-16T08:10:32+00:00\",\"dateModified\":\"2021-08-16T08:10:34+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\"},\"wordCount\":477,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#organization\"},\"articleSection\":[\"Vulnerabilities\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\",\"url\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\",\"name\":\"US Brokers Alerted of Active Phishing Attacks Act like FINRA - Xiarch Solutions Private Limited\",\"isPartOf\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#website\"},\"datePublished\":\"2021-08-16T08:10:32+00:00\",\"dateModified\":\"2021-08-16T08:10:34+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/xiarch.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"US Brokers Alerted of Active Phishing Attacks Act like FINRA\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/xiarch.com\/blog\/#website\",\"url\":\"https:\/\/xiarch.com\/blog\/\",\"name\":\"Xiarch Solutions Private Limited\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/xiarch.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/xiarch.com\/blog\/#organization\",\"name\":\"Xiarch\",\"url\":\"https:\/\/xiarch.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png\",\"contentUrl\":\"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png\",\"width\":300,\"height\":300,\"caption\":\"Xiarch\"},\"image\":{\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/xiarch\/\",\"https:\/\/twitter.com\/xiarch\",\"https:\/\/www.linkedin.com\/company\/xiarch\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c\",\"name\":\"Xiarch Security\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/xiarch.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g\",\"caption\":\"Xiarch Security\"},\"sameAs\":[\"https:\/\/xiarch.com\/blog\/\"],\"url\":\"https:\/\/xiarch.com\/blog\/author\/vector\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"US Brokers Alerted of Active Phishing Attacks Act like FINRA - Xiarch Solutions Private Limited","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/","og_locale":"en_US","og_type":"article","og_title":"US Brokers Alerted of Active Phishing Attacks Act like FINRA - Xiarch Solutions Private Limited","og_description":"The US Financial Industry Regulatory Authority (FINRA) alerts US contribute corporations and brokers of an active phishing operation impersonating FINRA officials and asking them to hand over critical data under the threat of penalties. FINRA is a non-profit organization supervised by the Securities and Exchange Commission (SEC) and authorized by the US government to adjust [&hellip;]","og_url":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/","og_site_name":"Xiarch Solutions Private Limited","article_publisher":"https:\/\/www.facebook.com\/xiarch\/","article_published_time":"2021-08-16T08:10:32+00:00","article_modified_time":"2021-08-16T08:10:34+00:00","og_image":[{"width":1000,"height":525,"url":"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/08\/US-Brokers-Alerted-of-Active-Phishing-Attacks-Act-like-FINRA-feature-image.jpg","type":"image\/jpeg"}],"author":"Xiarch Security","twitter_card":"summary_large_image","twitter_creator":"@xiarch","twitter_site":"@xiarch","twitter_misc":{"Written by":"Xiarch Security","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#article","isPartOf":{"@id":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/"},"author":{"name":"Xiarch Security","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c"},"headline":"US Brokers Alerted of Active Phishing Attacks Act like FINRA","datePublished":"2021-08-16T08:10:32+00:00","dateModified":"2021-08-16T08:10:34+00:00","mainEntityOfPage":{"@id":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/"},"wordCount":477,"commentCount":0,"publisher":{"@id":"https:\/\/xiarch.com\/blog\/#organization"},"articleSection":["Vulnerabilities"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/","url":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/","name":"US Brokers Alerted of Active Phishing Attacks Act like FINRA - Xiarch Solutions Private Limited","isPartOf":{"@id":"https:\/\/xiarch.com\/blog\/#website"},"datePublished":"2021-08-16T08:10:32+00:00","dateModified":"2021-08-16T08:10:34+00:00","breadcrumb":{"@id":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/xiarch.com\/blog\/us-brokers-alerted-of-active-phishing-attacks-act-like-finra\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/xiarch.com\/blog\/"},{"@type":"ListItem","position":2,"name":"US Brokers Alerted of Active Phishing Attacks Act like FINRA"}]},{"@type":"WebSite","@id":"https:\/\/xiarch.com\/blog\/#website","url":"https:\/\/xiarch.com\/blog\/","name":"Xiarch Solutions Private Limited","description":"","publisher":{"@id":"https:\/\/xiarch.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/xiarch.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/xiarch.com\/blog\/#organization","name":"Xiarch","url":"https:\/\/xiarch.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png","contentUrl":"https:\/\/xiarch.com\/blog\/wp-content\/uploads\/2021\/06\/xi-logo-002.png","width":300,"height":300,"caption":"Xiarch"},"image":{"@id":"https:\/\/xiarch.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/xiarch\/","https:\/\/twitter.com\/xiarch","https:\/\/www.linkedin.com\/company\/xiarch"]},{"@type":"Person","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/person\/655d814a04eacce56942270cfdc5c59c","name":"Xiarch Security","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/xiarch.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d33699ed91b76568586dc1ae278ea568?s=96&d=mm&r=g","caption":"Xiarch Security"},"sameAs":["https:\/\/xiarch.com\/blog\/"],"url":"https:\/\/xiarch.com\/blog\/author\/vector\/"}]}},"_links":{"self":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts\/2861"}],"collection":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/comments?post=2861"}],"version-history":[{"count":1,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts\/2861\/revisions"}],"predecessor-version":[{"id":2865,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/posts\/2861\/revisions\/2865"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/media\/2864"}],"wp:attachment":[{"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/media?parent=2861"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/categories?post=2861"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/xiarch.com\/blog\/wp-json\/wp\/v2\/tags?post=2861"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}