Security News

Scammers are sending fake replacement devices to Ledger customers exposed in a recent data breach that are used to steal cryptocurrency wallets. Ledger has been a popular target by scammers lately with rising cryptocurrency prices and the popularity of hardware wallets to secure cryptofunds.

Microsoft 365 Defender researchers have disrupted the cloud-based infrastructure used by scammers behind a recent large-scale business email compromise campaign. "The use of attacker infrastructure hosted in multiple web services allowed the attackers to operate stealthily, characteristic of BEC campaigns," Microsoft 365 Defender Research Team's Stefan Sellmer and Microsoft Threat Intelligence Center security researcher Nick Carr explained.

The Federal Bureau of Investigation warned private sector companies of scammers impersonating construction companies in business email compromise attacks targeting organizations from multiple US critical infrastructure sectors. BEC scammers use various tactics to compromise or impersonate business email accounts with the end goal of redirecting pending or future payments to bank accounts under their control.
![S3 Ep34: Apple bugs, scammers busted, and how crooks bypass 2FA [Podcast]](/static/build/img/news/s3-ep34-apple-bugs-scammers-busted-and-how-crooks-bypass-2fa-podcast-small.jpg)
Police arrest eight suspects in an online scamming ring. We explain how WhatsApp messages from hacked accounts are helping cybercrooks bypass 2FA. Oh! No! of the week.

Attackers are piggybacking off the booming market for meal-kit delivery services since the pandemic, and sending SMS phishing messages doctored up to look like they're legitimate correspondence from popular brand names - including HelloFresh and Gousto. "Data breaches, for example, have made it easier for scammers to access people's full names and phone numbers as details are made public.

The Federal Bureau of Investigation warned that scammers actively target the vulnerable families of missing persons attempting to extort them using information shared on social media. "These actors identify missing persons through social media posts and gather information about the missing person and family to legitimize their ransom demands without ever having physical contact with the missing person," the FBI said.

Let's explore a few scenarios and how AI and biometrics can help uncover and fight fraud. Without an AI-powered fraud prevention platform and biometric authentication, this type of fraud could easily go unnoticed.

Twitter scammers are jumping on Elon Musk's hosting of Saturday Night Live to push cryptocurrency scams to steal people's Bitcoin, Ethereum, and Dogecoin. For the past year, we have been reporting how scammers have been raking in hundreds of thousands of dollars by promoting fake giveaway scams from well-known people or companies, such as Elon Musk, Tesla, and Gemini Exchange.

Bernard found a constant stream of new marks by offering extraordinarily generous finders fees to investment brokers who could introduce him to companies seeking an infusion of cash. "Perhaps the leading reason for acquiring an aged entity in general is credibility," explains TBA & Associates, a company co-registered in the UK and New Zealand that has created hundreds of shelf companies for sale, including Hempton Business Management LLP in 2017.
![S3 Ep31: Apple zero-days, Flubot scammers and PHP supply chain bug [Podcast]](/static/build/img/news/s3-ep31-apple-zero-days-flubot-scammers-and-php-supply-chain-bug-podcast-small.jpg)
We look into Apple's recent emergency updates that closed off four in-the-wild browser bugs. We explain how the infamous "Flubot" home delivery scam works and how to stop it.