Skip to content

Services, Wiki-Artikel und Blog-Beiträge durchsuchen

↑↓NavigierenEnterÖffnenESCSchließen
New Emotet campaign works with links on websites!
Phishing Simulation

New Emotet campaign works with links on websites!

Newly, numerous CERTs, companies and organizations are recording a new emotet campaign that work with links to websites and download malware there. The conseque...

Chris Wojzechowski Chris Wojzechowski Geschäftsführender Gesellschafter
Updated: March 21, 2025 2 min read read
IT-Grundschutz-Praktiker (TÜV) IT Risk Manager (DGI) § 8a BSIG Prüfverfahrenskompetenz Ausbilderprüfung (IHK)

TL;DR

A new Emotet campaign variant was observed distributing malware via links to external websites rather than only email attachments, with multiple CERTs reporting the activity. The Berlin Supreme Court was among the victims, forced into emergency paper-based operations through 2020. Despite evolving delivery mechanisms, Emotet continues to rely on spear-phishing emails that appear to come from trusted contacts. Trained employees who recognize suspicious emails remain the most effective last line of defense.

Table of Contents (2 sections)

Newly, numerous CERTs, companies and organizations are recording a new emotet campaign that work with links to websites and download malware there. The consequences are encrypted data and horrendous ransom demands. Prevention is still the best protection.

Company networks are covered by the new Emotet campaign.

It is the nightmare for every company: When nothing works anymore because the IT has failed. Emotet is characterized by working with so-called dynamite phishing mails. We had already described this special type in an earlier blog post. However, the way it works is effective and requires increased attention in everyday life, not clicking on the appropriate links.

In the past, the Berlin Supreme Court has been the victim of the sophisticated malware. In the middle of October it was confirmed that the emergency operation at the court will last until 2020. Computers are currently used exclusively from typewriters. The head of the court admitted that the own IT was not so "trimmed" to withstand the attacks from the outside. The new installation of virus protection is now an obligatory measure, but only part of the solution.

For a high level of IT security, the human being is a decisive factor.

Emails that flutter into the mailbox on behalf of colleagues and friends are less sceptical. Being skeptical all day is also not a recommended setting. The attack vectors of the criminals change however only rarely. This knowledge enables every user to reliably assess their own risk, recognize phishing mails and report them accordingly.

A reworked Emotet Campaign also finds its place in our Live Hacking Shows. How are e-mails sent, received and above all: How can Emotet e-mails be reliably recognized? To all these questions we give answers and further tips and tricks to avoid damage by Emotet.

Next Step

Our certified security experts will advise you on the topics covered in this article — free and without obligation.

Free · 30 minutes · No obligation

Share this article

About the author

About the Author

Chris Wojzechowski
Chris Wojzechowski

Geschäftsführender Gesellschafter

E-Mail

Geschäftsführender Gesellschafter der AWARE7 GmbH mit langjähriger Expertise in Informationssicherheit, Penetrationstesting und IT-Risikomanagement. Absolvent des Masterstudiengangs Internet-Sicherheit an der Westfälischen Hochschule (if(is), Prof. Norbert Pohlmann). Bestseller-Autor im Wiley-VCH Verlag und Lehrbeauftragter der ASW-Akademie. Einschätzungen zu Cybersecurity und digitaler Souveränität erschienen u.a. in Welt am Sonntag, WDR, Deutschlandfunk und Handelsblatt.

10 Publikationen
  • Einsatz von elektronischer Verschlüsselung - Hemmnisse für die Wirtschaft (2018)
  • Kompass IT-Verschlüsselung - Orientierungshilfen für KMU (2018)
  • IT Security Day 2025 - Live Hacking: KI in der Cybersicherheit (2025)
  • Live Hacking - Credential Stuffing: Finanzrisiken jenseits Ransomware (2025)
  • Keynote: Live Hacking Show - Ein Blick in die Welt der Cyberkriminalität (2025)
  • Analyse von Angriffsflächen bei Shared-Hosting-Anbietern (2024)
  • Gänsehaut garantiert: Die schaurigsten Funde aus dem Leben eines Pentesters (2022)
  • IT Security Zertifizierungen - CISSP, T.I.S.P. & Co (Live-Webinar) (2023)
  • Sicherheitsforum Online-Banking - Live Hacking (2021)
  • Nipster im Netz und das Ende der Kreidezeit (2017)
IT-Grundschutz-Praktiker (TÜV) IT Risk Manager (DGI) § 8a BSIG Prüfverfahrenskompetenz Ausbilderprüfung (IHK)
Certified ISO 27001ISO 9001AZAV