Security News > 2021 > August > BazarCaller – the malware gang that talks you into infecting yourself

BazarCaller – the malware gang that talks you into infecting yourself
2021-08-03 15:12

They'll read out the number to call them back on, to re-iterate not only that it matches the number that shows up in your call history, but also that it's a local number, right there in your own town or country.

Firstly, Caller ID is easy to spoof, so crooks can disguise their real number, or make it look as though they're calling from somewhere you trust, such as your bank.

Secondly, if it's not spoofed, Caller ID doesn't tell you where a returned call will ultimately end up, but merely reports the last known phone number that it passed through on the way to you.

If a call centre calls you from overseas using a voice-over-IP service, where the call is transmitted cheaply over the internet until it reaches your country and only then redirected into the phone network, you will see a local number in your call history, but it won't actually be the caller's ID. Always keep in mind that the name Caller ID is misleading because it doesn't identify the person who called you at all.

Even calling line identification is an inaccurate name, given that the number that shows up can be modified and therefore doesn't reliably identify the calling line, either.

Caller ID can't be trusted, and unexpected phone calls, like unwanted emails, could by-and-large have come from anyone.


News URL

https://nakedsecurity.sophos.com/2021/08/03/bazarcaller-the-malware-gang-that-talks-you-into-infecting-yourself/