Android malware “FakeCall” now reroutes bank calls to attackers

October 30, 2024 at 10:58AM The new FakeCall malware for Android hijacks users’ outgoing calls to banks, redirecting them to attackers. It features advanced voice phishing tactics, realistic interfaces, and can capture audio/video. Recent improvements include additional control functionalities and commands, making it a more dangerous banking trojan. Users are cautioned against installing APKs directly. … Read more

Red team hacker on how she ‘breaks into buildings and pretends to be the bad guy’

September 29, 2024 at 12:45PM Alethe Denis, a senior security consultant at Bishop Fox, specializes in physical security assessments and social engineering attacks. Denis and her team break into buildings by impersonating employees or vendors to access corporate networks and steal data. Despite AI and deepfake advancements, human interactions remain the most effective tactic for … Read more

Euro Vishing Fraudsters Add Physical Intimidation to Arsenal

July 5, 2024 at 01:16PM Europol announced the arrest of 54 individuals involved in a vishing scam targeting elderly Spanish citizens, using social engineering and physical threats. The criminals impersonated bank employees, extracted personal information, then physically targeted victims for payment and personal possessions. The unique approach of physically visiting victims adds complexity and danger … Read more

Widespread Vishing Effort Impersonates CISA Staff

June 14, 2024 at 10:09AM The US Cybersecurity and Infrastructure Security Agency (CISA) warned about a rise in impersonation scams where malicious actors pretend to be CISA representatives and request cash or cryptocurrency transfers. Individuals are advised to deny the request, report the incident to law enforcement, and contact CISA. Experts emphasize the need for … Read more

LastPass: Hackers targeted employee in failed deepfake CEO call

April 11, 2024 at 06:06PM LastPass recently reported an attempted deepfake audio attack on one of its employees impersonating the CEO, using WhatsApp, an uncommon business channel. The attack failed, but LastPass shared details to raise awareness of AI-generated deepfakes in executive impersonation fraud. The rise in deepfake attacks prompted alerts and advice from organizations … Read more

Sophisticated Vishing Campaigns Take World by Storm

March 11, 2024 at 07:06PM Voice phishing, known as vishing, is on the rise globally, including in South Korea, where recent scams have caused significant financial losses. These schemes involve sophisticated social engineering tactics and impersonation of law enforcement, exploiting cultural and legal understanding. Vishing operators are utilizing technology and apps, such as SecretCalls, to … Read more

Interpol operation arrests 3,500 cybercriminals, seizes $300 million

December 19, 2023 at 02:13PM ‘Operation HAECHI IV’ led to the arrest of 3,500 suspects for lower-tier cybercrimes, seizing $300 million in illicit proceeds. South Korea led the operation with 34 countries’ support. The operation targeted various cybercrimes, froze 82,112 bank accounts, and seized $199 million in hard currency and $101 million in digital assets. … Read more