This common form of attack uses emails that are intended to appear from a legitimate brand, relying on name recognition and even using email templates by that brand itself. *Brand impersonation* is often used in attempts to get users to log into their existing accounts, particularly for stores and bank accounts. They may also request payment, gather passwords or other sensitive information, or may simply have malware attached with instructions to access a file or run an executable.