LastPass warns of fake support centers trying to steal customer data

LastPass warns of fake support centers trying to steal customer data

November 1, 2024 at 01:55PM

LastPass is alerting users to a scam involving fake 5-star reviews promoting a fraudulent customer support number, 805-206-2892. Scammers trick users into providing remote access to their computers via a malicious website after calling the number, which is linked to a broader scheme targeting various companies. Users are advised not to share passwords.

### Meeting Takeaways: LastPass Security Warning

1. **Fake Customer Support Campaign**:
– LastPass has reported a fraudulent scheme where scammers are leaving 5-star reviews on the LastPass Chrome extension to promote a fake customer support phone number (805-206-2892).

2. **Nature of the Scam**:
– The scammers aim to trick users into calling this number, which is not associated with LastPass. Once contacted, a scammer impersonates customer support and directs victims to a fake support site (dghelp[.]top).

3. **Malicious Actions**:
– Individuals are prompted to enter a code on the website, leading to the download of a remote access program called ConnectWise ScreenConnect, giving scammers full control of the user’s computer.

4. **Data Theft and Manipulation**:
– While one scammer keeps the victim engaged with questions, another can install malware or access personal data.

5. **Avoiding Compromise**:
– LastPass advises users to never share their master password, even with supposed customer support, to protect their sensitive data.

6. **Wider Implications**:
– The same phone number has been linked to support scams for various well-known companies including Amazon, Adobe, Facebook, Netflix, and more, indicating a broader scam campaign.

7. **Ongoing Threat**:
– Scammers are active in posting these fake support numbers on various platforms, including company forums and community sites like Reddit, making it difficult for victims to identify genuine support.

8. **Recommendations for Users**:
– Stay vigilant and report any suspicious reviews or communications.
– Verify support numbers directly through the company’s official website before contacting support.

Full Article