---
title: Luna Moth Gang Invests in Call Centers to Target Businesses with Callback Phishing Campaigns
metaTitle: "Luna Moth's Callback Phishing Campaigns"
slug: luna-moth-call-centers
date: "2022-11-22T12:00:00-06:00"
image:
  src: "https://cdn.securelogix.dev/slx/images/luna-moth.webp"
sourcePublisher:
  name: The Hacker News
  url: thehackernews.com
sourceArticle:
  url: "https://thehackernews.com/2022/11/luna-moth-gang-invests-in-call-centers.html"
legacySlug: luna-moth-gang-invests-in-call-centers-to-target-businesses
tags: [Hackers, Phishing, Phone Scam, Remote Security]
status: published
---

The Luna Moth campaign has extorted hundreds of thousands of dollars from several victims in the legal and retail sectors.

The attacks are notable for employing a technique called callback phishing or telephone-oriented attack delivery (TOAD), wherein the victims are social engineered into making a phone call through phishing emails containing invoices and subscription-themed lures.

Palo Alto Networks Unit 42 said the attacks are the “product of a single highly organized campaign,” adding, “this threat actor has significantly invested in call centers and infrastructure that’s unique to each victim.”

The cybersecurity firm described the activity as a “pervasive multi-month campaign that is actively evolving...”
