The data from the study of phishing sites for the period from January to August 2023 was presented by Stanislav Goncharov, Director of Business Development (DRP) of the information security company FACCT, during the 16th International Conference of Administrators and Registrars of National Top-Level Domains of the CIS, Central and Eastern Europe TLDCON 2023.
"The main three are still the cyprus whatsapp resource same: online services, delivery services and financial institutions. Surprisingly, payment services and bookmakers have faded into the background. So [Internet fraudsters] have a clear scheme by which they operate, understanding that Russian brands engaged in import substitution of various foreign brands, having taken on the opportunity to develop, attract a larger audience and work in Russia and the CIS countries, are simultaneously taking on this big blow associated with parasitism on the brand, on various content," said Stanislav Goncharov.
of which 35% were online services, 28% were financial institutions, and 21% were delivery services. He noted that the share of phishing in the .ru zone is only 5% of the total number of detected phishing pages, and in the .РФ zone - less than 1% of these 5%, a total of about 50 domain names.
Stanislav Goncharov emphasized that the activity of about 300 scam groups has been recorded, which consist mainly of schoolchildren who dream of living in Moscow City by the age of 20 and driving expensive sports cars, not realizing that they are engaged in cybercrime."
Stanislav Goncharov said that phishing attacks on users of Telegram and WhatsApp messengers were carried out mainly under the guise of requests to support a "niece" at a music or dance competition. "Anyone who switches to this type of attack is faced with the need to enter their phone number and a code that will come to Telegram. This is how the Telegram channel is "hijacked". After the channel is "hijacked", the attackers send the same mailing to all the contacts of the captured user. Everyone works according to templates, everyone has scripts. They are all automated, you just need to put them on their tracks and start earning money. Click "go to voting", you get to authorization via the messenger, enter your data and lose access to your account," said Stanislav Goncharov.
According to him, scammers tailor phishing ads to the interests of users. "If you are interested in online games, you may be offered bonus game currency, game values, etc. If you are a lonely young man, you may be offered photos of various ladies - to receive them, you need to follow the link and enter your phone number," Stanislav Goncharov gave an example.
He added that some hosting providers have up
X the company has blocked more than 10 thousand phishing domains,
-
- Posts: 679
- Joined: Thu Jan 02, 2025 7:05 am