financetom
Technology
financetom
/
Technology
/
Fraud alert! That WhatsApp message from your boss might be a phishing campaign
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Fraud alert! That WhatsApp message from your boss might be a phishing campaign
Feb 7, 2023 2:19 AM

It's a Saturday, you are lazying around at your house, and suddenly your WhatsApp has an incoming message from your boss/CEO of the company and you drop everything else to react to it. However, depending on the content of the message, you may want to double-check that your boss is actually the one texting you.

Cybersecurity researchers on Monday found a spear phishing campaign targeting multiple corporations wherein scammers were sending messages to IT professionals through WhatsApp, pretending to be their CEOs.

According to a report by CloudSEK, "The research unveiled lead generation and business information tools being misused by these scammers to extract personal phone numbers.".

Also Read: App alert: This security search engine will help you spot high-risk applications

Modus Operandi

During investigation, it was found that the scam started with employees receiving an SMS-based message from an unknown number allegedly impersonating a top-ranking executive from the organisation. The reason for impersonating the top-ranking executive is to instill urgency and panic.

The scammers pretended to be the company's CEO and sent a WhatsApp message to employees (mostly top-level executives) on their personal phone numbers. They misused CEO’s publicly available pictures by using WhatsApp profile pictures as a social engineering tactic to convince the victim.

If the receiver of the SMS acknowledged the scammer with a response, the scammer requested the victim to complete a quick task which included purchasing gift cards for a client or employee and/or wiring funds to another business.

The scammers sent multiple messages asking when the request will be completed and stress the importance of this action. Similar to the "phishing" scams seen over email, this version relies on texts that lure potential victims into disclosing information or clicking on a link, said the report.

In some cases, the scammer may ask employees to send personal information (like PINs and passwords) to third parties, often providing a plausible reason to carry out the request.

Threat actors often use commanding and persuasive language to convince the email victim to respond.

Senior employees of the organisation can be looked up from LinkedIn.

Threat actors then use popular sales intelligence or lead generation tools such as Signalhire, Zoominfo, Rocket Reach to gather personal identifiable information (PII) like emails, phone numbers, and more.

"These online databases of businesses have their methodologies for obtaining, verifying, and then selling the employees' contact details of an entity," said the report.

Also Read: Budget 2023 | India allocates over Rs 600 crore to improve cybersecurity infra

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Glimpse Group Stock: A Deep Dive Into Analyst Perspectives (4 Ratings)
Glimpse Group Stock: A Deep Dive Into Analyst Perspectives (4 Ratings)
Dec 24, 2024
Throughout the last three months, 4 analysts have evaluated Glimpse Group ( VRAR ) , offering a diverse set of opinions from bullish to bearish. The table below provides a snapshot of their recent ratings, showcasing how sentiments have evolved over the past 30 days and comparing them to the preceding months. Bullish Somewhat Bullish Indifferent Somewhat Bearish Bearish Total...
Competitor Analysis: Evaluating Microsoft And Competitors In Software Industry
Competitor Analysis: Evaluating Microsoft And Competitors In Software Industry
Dec 24, 2024
In today's fast-paced and competitive business landscape, it is essential for investors and industry enthusiasts to thoroughly analyze companies before making investment decisions. In this article, we will conduct a comprehensive industry comparison, evaluating Microsoft ( MSFT ) against its key competitors in the Software industry. By examining key financial metrics, market position, and growth prospects, we aim to provide...
Market Analysis: NVIDIA And Competitors In Semiconductors & Semiconductor Equipment Industry
Market Analysis: NVIDIA And Competitors In Semiconductors & Semiconductor Equipment Industry
Dec 24, 2024
In the dynamic and fiercely competitive business environment, conducting a thorough analysis of companies is crucial for investors and industry enthusiasts. In this article, we will perform an extensive industry comparison, evaluating NVIDIA ( NVDA ) in relation to its major competitors in the Semiconductors & Semiconductor Equipment industry. By closely examining crucial financial metrics, market position, and growth prospects,...
Behind the Scenes of Taiwan Semiconductor's Latest Options Trends
Behind the Scenes of Taiwan Semiconductor's Latest Options Trends
Dec 24, 2024
Investors with a lot of money to spend have taken a bearish stance on Taiwan Semiconductor . And retail traders should know. We noticed this today when the positions showed up on publicly available options history that we track here at Benzinga. Whether these are institutions or just wealthy individuals, we don't know. But when something this big happens with...
Copyright 2023-2025 - www.financetom.com All Rights Reserved