SI-CERT has recently detected a wave of fraudulent emails impersonating the Statistical Office of the Republic of Slovenia (Surs). These deceptive mails are targeting organizations with a scheme purporting to mandate statistical reporting required by Eurostat. The communications instruct recipients that they must provide detailed business data concerning their partnerships with foreign entities.
The fraudulent emails are accompanied by documents and Excel forms designed to mimic official Surs documentation, lending an air of legitimacy to the requests. However, SI-CERT has issued warnings that while the accompanying files do not contain malicious code, their underlying purpose is the unauthorized collection of sensitive business information. According to the security agency, the phishing campaign relies on obtaining valuable corporate data.
The addresses receiving these suspicious mails were likely sourced from publicly accessible records and other readily available public contact information belonging to various companies. Authorities advise the public and businesses to exercise extreme caution when receiving such communications. Any requests demanding sensitive statistical information, particularly those citing mandatory reporting for international bodies, must be independently verified through official channels.
Organizations should be wary of any correspondence that appears to originate from official governmental sources but asks for proprietary operational data via unsolicited emails. SI-CERT recommends treating such suspicious mails with high suspicion to prevent the leakage of confidential business intelligence.
Topics: #data #mails #statistical