Researchers uncover Phishing Kits Used In Scamming Thousands Of People

Share post:

Researchers from vpnMentor have discovered two slightly modified versions of the same phishing kits that attackers use to defraud thousands of people worldwide.

The first scam involves a criminal outfit that uses the phishing kit to send text messages that appear to be from well-known global courier service UPS.

The second scam targets customers of Crédit Agricole, a French bank that is the world’s largest co-operative financial institute. Those behind the scam hacked a website unrelated to Crédit Agricole, modified it to mirror the company’s website and inserted code for the phishing kit.

The victims of the UPS scam were Israeli residents who were sent a text message claiming they had a package ready to be picked up.

Their activities were exposed after they failed to secure their server and forgot to disable a ‘directory listing’ running the phishing kit. Most of the 4,400 people whose records were stored in the directory listing were Israeli citizens. Other target countries are the U.S., Brazil, Saudi Arabia and countries in Europe.

Researchers believe the attacker is an Israeli criminal gang, as the scripts for the text sent to Israeli targets were written in broken Hebrew.

The sources for this piece include an article in VPNMENTOR.

Featured Tech Jobs

SUBSCRIBE NOW

Related articles

Cyber Security Today, Dec. 4, 2023 – A warning to water treatment utilities, a boot vulnerability could affect millions of PCs, and more.

This episode  reports on a campaign against critical infrastructure using PLCs, a vulnerability in PCs

Google delays launch of new AI model Gemini

Google's highly anticipated AI model, Gemini, has had its launch rescheduled to early 2024, as reported by The...

Cyber Security Today, Week in Review for Friday, December 1, 2023

This episode features a discussion on ransomware, the latest explanation from Okta of a support hack and a survey of infosec pros whose firms w

Cyber Security Today, Dec. 1, 2023 podcast – More on Booking.com compromises

This episode reports on the sanctioning of the Sinbad crypto mixe

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways