Malicious Email Campaign Threatens Recipients’ Physical Security

NJCCIC Alert

Original Release Date: 2017-12-14

This week, a Spiceworks forum user discovered an emerging email campaign in which the sender claims to have an order to kill the recipient, but offers to spare the recipient’s life in exchange for a Bitcoin payment. The sender also warns recipients not to contact law enforcement and claims the kill order will be executed after two days of non-payment. Analysis of the Bitcoin wallet address included in the email reveals that, as of now, no one has paid the sender; however, email users unfamiliar with cyber extortion tactics such as this could easily fall for the scam, especially as the campaign appears to be using compromised email accounts of legitimate organizations.

The NJCCIC recommends email users and administrators read the Sophos [report](https://nakedsecurity.sophos.com/2017/12/12/ransom-email-scam-from-hitman-demands-pay-up-or-die/?utmsource=Naked+Security+-+Sophos+List&utmcampaign=61a91dc41a-naked%252Bsecurity&utmmedium=email&utmterm=031623bb782-61a91dc41a-455160889), familiarize themselves with this cyber extortion scheme, and spread awareness to prevent others from potentially falling victim. Report any instances of this or other cyber extortion campaigns to your local police department, the FBI, and the NJCCIC._

New Jersey Cybersecurity & Communications Integration Cell

2 Schwarzkopf Dr, Ewing Township, NJ 08628

njccic@cyber.nj.gov

OUR COMMITMENT

The NJCCIC is a component organization within the New Jersey Office of Homeland Security and Preparedness. We are the State's one-stop-shop for cyber threat analysis, incident reporting, and information sharing and are committed to making New Jersey more resilient to cyber threats by spreading awareness and promoting the adoption of best practices.

Agency Seals of State of NJ, NJOHSP and NJCCIC

STAY CONNECTED:

View our Privacy Policy here.

View our Site Index here.