Security News

CryptoRom Scam Rakes in $1.4M by Exploiting Apple Enterprise Features
2021-10-14 15:17

Pyramid-scheme cryptocurrency scammers are exploiting Apple's Enterprise Developer Program to get bogus trading apps onto their marks' iPhones. They scammers are using a loophole that allows enterprise mobile device management programs to control corporate-owned iOS devices, according to Sophos' analysis, via Apple's Enterprise Developer program - specifically, the Apple Enterprise/Corporate Signature feature.

Romance scams with a cryptocurrency twist – new research from SophosLabs
2021-10-13 18:01

All those dubious excuses needed by traditional romance scammers to talk you into using wire transfer services to send money, or into buying them gift cards and sending through the redemption codes, are replaced by a sense of structure: there's a genuine app for this investment! The cryptorom scammers will even offer you an app if you have an iPhone, where Apple's "Walled garden" approach of requiring all consumer app downloads to come from the Apple App Store almost certainly persuades many victims that the cryptorom app must indeed have some sort of official authorisation or approval.

Bank of America insider charged with money laundering for BEC scams
2021-10-09 16:08

BEC scams use various tactics to compromise or impersonate business email accounts with the end goal of redirecting pending or future payments to bank accounts under a threat actor's control. One of the case examples in the indictment document seen by Bleeping Computer, mentions a single transaction of $356,954, sent by a victim in Boston to what they thought was the bank account of their business partner.

Ukraine takes down call centers behind cryptocurrency investor scams
2021-09-28 13:25

The Security Service of Ukraine has taken down a network of six call centers in Lviv, used by a ring of scammers to defraud cryptocurrency investors worldwide. Fraudsters behind these illegal call centers used VoIP phone numbers to hide their locations while scamming thousands of foreign investors.

Fake 'BT' caller fleeces elderly victim of £30k in APP app scam
2021-09-27 12:58

Police have issued an urgent warning after an elderly man was scammed out of £30,000 by phone fraudsters pretending to be from BT. The incident happened last Thursday, prompting West Mercia Police to issue a bulletin warning people to be on their guard against suspicious phone calls. Once the app was downloaded, they then convinced the man to log in using his online banking details and thereafter to transfer a sum of money to another account for "Safekeeping."

Bitcoin.org hackers steal $17,000 in 'double your cash' scam
2021-09-25 14:00

This week, threat actors hijacked Bitcoin.org, the authentic website of the Bitcoin project, and altered its parts to push a cryptocurrency giveaway scam that unfortunately some users fell for. Bitcoin.org hacked to run 'double your money' scam.

S3 Ep51: OMIGOD a gaping hole, waybill scams, and Face ID hacked [Podcast]
2021-09-24 18:06

" A scarily exploitable hole in Microsoft open source code. Memory lane: cool mobile devices from the pre-iPhone era.

New "Elon Musk Club" crypto giveaway scam promoted via email
2021-09-19 16:58

A new Elon Musk-themed cryptocurrency giveaway scam called the "Elon Musk Mutual Aid Fund" or "Elon Musk Club" is being promoted through spam email campaigns that started over the past few weeks. Before you dismiss these scams, saying that no one falls for them, similar crypto scams have been hugely successful and have generated hundreds of thousands of dollars in the past.

Something phishy: Tech recruiters jabbed by fake COVID-19 Passport scam
2021-09-17 16:42

An IT recruitment agency says a "Phishing scam" is behind a fake email sent to its customers with details on how to apply for a "Coronavirus Digital Passport." The email - sent to applicants and clients of Concept Resourcing, based in Dudley, England, on 14 September and seen by The Reg - claimed users could "Get your Digital Coronavirus Passports today" and showed recipients a big juicy link where they could do so.

FBI: $113 million lost to online romance scams this year
2021-09-16 16:54

The FBI warned today that a massive spike of online romance scams this year caused Americans to lose more than $113 million since the start of 2021. The scammers behind this type of online fraud trend - which can lead to significant financial losses and devastating emotional scars - use fake online identities to gain potential victims' trust on dating or social media platforms.