Posts Tagged: phishing

Meta is trying to find the people who created more than 39,000 phishing sites

Meta is taking legal action to disrupt a large-scale phishing campaign. On Monday, the company filed a federal lawsuit to “uncover the identities” of a group of people that created more than 39,000 websites designed to trick Facebook, Instagram and WhatsApp users into coughing up their login credentials.

The company says the scammers used relay service Ngrok to redirect people to their websites in a way that allowed them to hide their actions. “This enabled them to conceal the true location of the phishing websites, and the identities of their online hosting providers and the defendants,” Meta said. Starting this past March, the company began working with the relay service to suspend “thousands” of URLs linked to the campaign.

This isn’t the first time has used the threat of legal action to try and stop a phishing campaign. In 2019 and 2020, the company filed lawsuits against OnlineNIC and Namecheap, two domain name registrars that had allowed cybersquatters to claim domains like instagrambusinesshelp.com and whatsappdownload.site. However, the scale of this campaign would appear to dwarf the ones OnlineNIC and Namecheap enabled. When Meta sued the latter company in 2020, it said it had registered 45 domains that were explicitly made to confuse people.

Engadget is a web magazine with obsessive daily coverage of everything new in gadgets and consumer electronics

GoDaddy phishing ‘test’ teased employees with a fake holiday bonus

They were promised a $ 650 holiday bonus from their company. It wasn’t an act of corporate goodwill, though, but a particularly tone deaf phishing test. And instead of extra cash, those who failed were assigned extra work. That’s what happened to arou…
Engadget

Google stats show how much a recovery number prevents phishing

In case you haven't already set up a recovery phone number for your Google account, and enabled extra security features like multifactor authentication, the search giant is using hard data to explain why you should. Interestingly, studies (1)(2) rese…
Engadget RSS Feed

DNC claims Russians launched more phishing attacks after midterms

The New York Times cites court documents filed by the Democratic National Committee that said it believes a Russian group launched a hacking attempt against it after last year's midterm elections. The lawsuit alleges a conspiracy between President Tr…
Engadget RSS Feed

Half of phishing sites trick you into thinking they’re ‘secure’

You can't assume that a site is honest because it has that "secure" padlock in the address bar, and PhishLabs just illustrated why. The anti-phishing company has determined that 49 percent of all known phishing sites used Secure Sockets Layer protec…
Engadget RSS Feed

Beware phishing emails posing as Google Docs invites

If you received an out-of-the-blue email purporting to share a Google Docs file, you're not alone — and whatever you do, don't click the link inside. Many people online, including more than a few journalists, have been bombarded with phishing email…
Engadget RSS Feed

After the election, hackers target think tanks with phishing attacks

Now that the election is over, the Russian teams of hackers suspected of breaking into the Democratic Party's systems have reportedly launched a new phishing attack on US political think tanks and non-government organizations. Incident response firm…
Engadget RSS Feed