Bitcoin Forum
May 03, 2024, 03:02:19 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: New phishing leverage to target crypto users, sms and voicemail, be on alert  (Read 60 times)
cryptomaniac_xxx (OP)
Hero Member
*****
Offline Offline

Activity: 1498
Merit: 564



View Profile
April 18, 2024, 09:26:11 AM
 #1

I might as well report this here, as there could be more attacks like this in the future, criminals. They are leveraging Federal Communications Commission (FCC) employees pages for Okta that appear similar to the original.

Code:
 fcc-okta[.]com



However, for us, this criminals already uses the same method to target and impersonate okta and uses phishing page for Binance, Coinbase, Kraken and Gemini.



Here is a sample message potential victims received from the groups.



And with that, I think the success of this kind of phishing attempts is very complicated but could be base on the following.

- they uses well crafted phishing URL that really looks similar to the original
- then the psychology of "sense of urgency", in SMS or voice calls from this threat actor.

https://www.lookout.com/threat-intelligence/article/cryptochameleon-fcc-phishing-kit

So it's better safe than sorry, as we need to be very cautious not only in email, now the attacks is thru SMS and voice mail.

.
 airbet 
██
██
██
██
██
██
██
██
██
██
██
██
██
 .

▄████▄▄▄██████▄
███████████████
███████████████
███████▀▀▀▀████
██████████████
▀███▀███████▄██
██████████▄███
██████████████
███████████████
███████████████
██████████████
█████▐████████
██████▀███████▀
▄███████████████▄
████████████████
█░██████████████
████████████████
████████████████
█████████████████
█████████████████
███████░█░███████
████████████████
█████████████████
██████████████░█
████████████████
▀███████████████▀
.
.
.
.
██▄▄▄
████████▄▄
██████▀▀████▄
██████▄░░████▄
██████████████
████████░░▀███▌
░████████▄▄████
██████████████▌
███░░░█████████
█████████░░░██▀
░░░███████████▀
██████░░░██▀
░░▀▀███▀

   
|.
....
██
██
██
██
██
██
██
██
██
██
██
██
██
.
 PLAY NOW 
The trust scores you see are subjective; they will change depending on who you have in your trust list.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714748539
Hero Member
*
Offline Offline

Posts: 1714748539

View Profile Personal Message (Offline)

Ignore
1714748539
Reply with quote  #2

1714748539
Report to moderator
1714748539
Hero Member
*
Offline Offline

Posts: 1714748539

View Profile Personal Message (Offline)

Ignore
1714748539
Reply with quote  #2

1714748539
Report to moderator
1714748539
Hero Member
*
Offline Offline

Posts: 1714748539

View Profile Personal Message (Offline)

Ignore
1714748539
Reply with quote  #2

1714748539
Report to moderator
Ambatman
Full Member
***
Offline Offline

Activity: 308
Merit: 143


★Bitvest.io★ Play Plinko or Invest!


View Profile WWW
April 18, 2024, 10:14:03 AM
 #2

Social engineering.The thing is how was the private information of the victim leaked.
This is why many are been warned against KYC but feel their security and privacy is worth a couple of bucks.
Their first victory is gaining access to the victims phone number /email
The Other steps just need minor work.
Many people tend to be SMS from reputable firms and won't even consider it a scam because of the formality of the text and the name attached.


un_rank
Hero Member
*****
Offline Offline

Activity: 714
Merit: 684


- Jay -


View Profile WWW
April 18, 2024, 10:54:53 AM
 #3

This is not new, scammers have for a very long time been using this as a means to get unsuspecting users to slip up and grant them access. This is why you should always stay calm in any situation. Panic is the top tool that scammers rely on. Do not also allow easy access to your contact details, if they do not have those details, scammers have no way of sending you phishing links.

- Jay -

██████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
██████████████████████
.SHUFFLE.COM..███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
█████████████████████
████████████████████
██████████████████████
████████████████████
██████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
██████████████████████
██████████████████████
██████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
███████████████████████
.
...Next Generation Crypto Casino...
Amphenomenon
Sr. Member
****
Offline Offline

Activity: 518
Merit: 326


Hope Jeremiah 17vs7


View Profile WWW
April 18, 2024, 11:25:21 AM
 #4

Data breach online is highly common and so we always have to be cautious of the type of platform we give access to our contact and email, since both are the two most common ways this type of phisping scam occur but it's quite ironic how many doesn't bother to check what kind of accessibility they give to apps or sites online and if it's possible will allow accessibility to every area on their device in order to avoid those pop up about giving these platforms access to any area of their device since they don't even read at first and this is the reason is alot to get a complete information about others online.

This scam is really common and I think only few people still fall from this scam since majority, if not all platforms especially exchanges specifically tell their customers they will never send messages relating to this. Though we can't just sleep on this since Hackers are also becoming more creative in every of their attempts to victimized others in anywhere possible.

freebitcoin       ▄▄▄█▀▀██▄▄▄
   ▄▄██████▄▄█  █▀▀█▄▄
  ███  █▀▀███████▄▄██▀
   ▀▀▀██▄▄█  ████▀▀  ▄██
▄███▄▄  ▀▀▀▀▀▀▀  ▄▄██████
██▀▀█████▄     ▄██▀█ ▀▀██
██▄▄███▀▀██   ███▀ ▄▄  ▀█
███████▄▄███ ███▄▄ ▀▀▄  █
██▀▀████████ █████  █▀▄██
 █▄▄████████ █████   ███
  ▀████  ███ ████▄▄███▀
     ▀▀████   ████▀▀
BITCOIN
DICE
EVENT
BETTING
WIN A LAMBO !

.
            ▄▄▄▄▄▄▄▄▄▄███████████▄▄▄▄▄
▄▄▄▄▄██████████████████████████████████▄▄▄▄
▀██████████████████████████████████████████████▄▄▄
▄▄████▄█████▄████████████████████████████▄█████▄████▄▄
▀████████▀▀▀████████████████████████████████▀▀▀██████████▄
  ▀▀▀████▄▄▄███████████████████████████████▄▄▄██████████
       ▀█████▀  ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀  ▀█████▀▀▀▀▀▀▀▀▀▀
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
▄█████
██
██
██
██
██
██
██
██
██
██
██
▀█████
.
PLAY NOW
█████▄
██
██
██
██
██
██
██
██
██
██
██
█████▀
NotATether
Legendary
*
Offline Offline

Activity: 1596
Merit: 6726


bitcoincleanup.com / bitmixlist.org


View Profile WWW
April 18, 2024, 11:30:56 AM
 #5

This scam is really common and I think only few people still fall from this scam since majority, if not all platforms especially exchanges specifically tell their customers they will never send messages relating to this. Though we can't just sleep on this since Hackers are also becoming more creative in every of their attempts to victimized others in anywhere possible.

Believe me when I say there way more dumb people on the planet now, who will fall for literally anything you tell them, even if you say something absurd like the sky is falling.

That's basically the reason why losses and health scares like depression and suicide have gone up among crypto users. Also most hackers are deploying punycode domains which are hard to distinguish from the real site.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
Husires
Legendary
*
Offline Offline

Activity: 1596
Merit: 1285



View Profile WWW
April 18, 2024, 11:37:19 AM
 #6

Stopping using SMS and voice mail as an additional layer of security may be necessary to protect your account because SMS can easily be swapped and many successful phishing attacks have occurred due to this.
Using two-factor authentication using a separate phone that is not connected to the Internet with an open source app is much better than securing accounts using SMS messages, which many  should stop relying on.

.BEST..CHANGE.███████████████
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
███████████████
..BUY/ SELL CRYPTO..
Alphakilo
Full Member
***
Offline Offline

Activity: 322
Merit: 133


Cashback 15%


View Profile
April 18, 2024, 11:55:51 AM
 #7

And with that, I think the success of this kind of phishing attempts is very complicated but could be base on the following.

- they uses well crafted phishing URL that really looks similar to the original
- then the psychology of "sense of urgency", in SMS or voice calls from this threat actor.

So it's better safe than sorry, as we need to be very cautious not only in email, now the attacks is thru SMS and voice mail.
I almost fell a hybrid phishing attack once. I was required to call a number provided via text but that is not the focus of this discussion.

In the digital world we are constantly being attacked and everyone should take a defensive position by being on high alert with their security infrastructure.

In addition, you do not need to wait for a phishing attack or attempt to happen to you or someone you know before adopting a zero-trust mindset. Get educated on the latest phishing tricks and use secure web gateways to block malicious links and sites.

Taskford
Hero Member
*****
Offline Offline

Activity: 2534
Merit: 786



View Profile
April 18, 2024, 11:58:15 AM
 #8

This scam is really common and I think only few people still fall from this scam since majority, if not all platforms especially exchanges specifically tell their customers they will never send messages relating to this. Though we can't just sleep on this since Hackers are also becoming more creative in every of their attempts to victimized others in anywhere possible.

This is classic attempt and the only people will fall for it are those who didn't experience the worst thing to happen if they believe on such scammers trying to target them by on any of those methods.

Also even if the exchange have certain warning regarding on that there are still lazy people fail to realize that they are dealing something illegal and realize when late when they are already been compromised.

That's the reason its better for people to do their own diligence upon dealing on what they receive thru mails or anything that can contact them and always think about verified first if those notice or warnings they read is legitimate or it is something illegal that should not meant to open.

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits.
▄▄█▄▄░░▄▄█▄▄░░▄▄█▄▄
███░░░░███░░░░███
░░░░░░░░░░░░░
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░░░░███▄█░░░
░░██▌░░███░▀░░██▌
█░██░░███░░░██
█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀
.
REGIONAL
SPONSOR
███▀██▀███▀█▀▀▀▀██▀▀▀██
██░▀░██░█░███░▀██░███▄█
█▄███▄██▄████▄████▄▄▄██
██▀ ▀███▀▀░▀██▀▀▀██████
███▄███░▄▀██████▀█▀█▀▀█
████▀▀██▄▀█████▄█▀███▄█
███▄▄▄████████▄█▄▀█████
███▀▀▀████████████▄▀███
███▄░▄█▀▀▀██████▀▀▀▄███
███████▄██▄▌████▀▀█████
▀██▄█████▄█▄▄▄██▄████▀
▀▀██████████▄▄███▀▀
▀▀▀▀█▀▀▀▀
.
EUROPEAN
BETTING
PARTNER
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!