CALL TODAY! +1 212 222 7061
  • Home
  • Contact Us
  • Blog
  • 24×7 Cyber 911 Response
Report incident
  • IR & Forensics
    • Digital Forensics Services
    • Cyber Incident Response Retainer
    • Cyber Incident Response
    • Data Breach Response
    • Digital Forensics
    • Ransomware Response
    • Bitcoin Payments
  • Proactive Security
    • Proactive Cyber Defense Services
    • Managed Threat Hunting & Response
    • Remote Cybersecurity Suite
    • The Daily T.R.U.T.H.
    • Remote Worker Cyber Resilience
    • Post Ransomware Threat Hunting Services
    • Cyber Threat Hunting
    • Penetration Testing
    • Secure Code Review
    • Phishing Attack Simulation
    • Managed Detection and Response
    • Ransomware Protection Package
    • Business Email Compromise
  • Advisory
    • Cybersecurity Advisory Services
    • CISO as a Service
    • Gap Assessment
    • Cyber Resilience & Response
    • Compliance Advisory
    • Cloud Security Advisory
    • Project Management as a Service (PMaaS)
    • Tabletop Exercises
    • Cyber Resiliency Training
  • SecurityScorecard
    • Request a Demo
    • Security Data
    • Security Ratings
    • Market Place
    • Security Assessments
  • Resources
    • Case Studies
    • Technical Tools
    • Technical Guides
    • White Papers
    • Cyber Interviews, Tips & FAQ
  • Company
    • About LIFARS
    • About SecurityScorecard
    • Notable Cases and Evidence Contribution
    • Meet the Team
    • Clients Advisory Board
    • LISIRT – Computer Security IR Team
    • Cyber Alliances
    • Insurance Panels
    • Cyber Events & Webinars
    • Cyber Press Room
    • Career in CyberSecurity
    • Cyber Security Training Videos
    • LIFARS SMS Alerts
    • Hackbits Podcast

Russian Entrepreneurs Targeted by Instagram Phishing Scam

02/25/20
Fake Instagram Apps on Google Playstore

Instagram users have now become the target of a new phishing campaign that uses login attempt warnings and content similar to two-factor authentication (2FA) code to make the scam more credible. Scammers use phishing to trick potential victims, who use various social engineering techniques to control fraudulent websites to pass sensitive information and steal user information.

In this case, the phishing emails distributed by the attackers after this campaign used fake Instagram login alerts stating that someone was trying to log in to the target account, asking them to confirm their identity through the login page linked in the message. To further increase its illusion of being an official Instagram alert, the scammer also added a code that was used as a second authentication code for identity verification. Once entering the phisher’s landing page, the target will see a perfectly cloned Instagram login page that is protected with a valid HTTPS certificate and displays a green padlock to alleviate any doubts the user has about the transaction.

Recently, hackers were found to have embarked on a massive phishing campaign on Instagram to trick Russian entrepreneurs by promising them a substantial amount of money to start their business. Fraudsters mostly promote the scan based on the advertisements delivered on Instagram. Researchers found 2 relevant phishing websites and both phishing sites had valid digital certificates and claimed to be “official resources” of the Russian Ministry of Economic Development. Once a victim launches one of these websites, it needs to “check” if the victim is eligible for funding. Then, the victim is required to pay 300 rubles for the electronic application fee. Other than the registration fee, the information such as phone number and payment card (name, number, CVV code) is taken by the hackers on the checkout page. According to the report, more than 200,000 people received the message since the campaign started.

 

Contact LIFARS Today!

To Discuss Ways To Mitigate Against Threats

 

 


Credits:

https://cyware.com/news/instagram-phishing-scam-targets-russian-entrepreneurs-61369d0c

Related Posts

Share this:

  • Tweet
  • Pocket
  • WhatsApp
  • Email
  • Telegram
  • Share on Tumblr

subscribe for cybersecurity newsletter

LIFARS Cyber Security Training

  • Digital Forensics
    • Computer Forensics Services
    • LISIRT – LIFARS Computer Security Incident Response Team
    • Cyber Incident Response Retainer
    • Cyber Incident Response
    • Data Breach Response
    • Digital Forensics
    • Ransomware Response
    • Bitcoin Payments
  • Cybersecurity
    • Proactive Cyber Security
    • Managed Cybersecurity Threat Hunting & Response Service
    • Post Ransomware Threat Hunting Services
    • The Daily TRUTH
    • Remote Worker Cyber Resilience
    • Penetration Testing
    • Secure Code Review
    • Cyber Threat Hunting
    • Phishing Attack Simulation
  • Security Advisory
    • Cybersecurity Advisory and Consulting Services
    • CISO as a Service
    • Gap Assessment
    • Cyber Resilience Subscription
    • Compliance Advisory
    • Cloud Security Advisory Services
    • Tabletop Exercises
    • Cyber Resiliency Training
  • Resources
    • Case Studies
    • Technical Tools
    • Technical Guides
    • White Papers
    • Cyber Interviews, Tips & FAQ
    • Cyber Events
    • Webinars
    • QuBit Conference
  • Company
    • About Us
    • LIFARS Leadership
    • Alliances
    • Clients Advisory Board
    • Join US!
    • Video Gallery
    • Blog
    • Newsletter
    • Press Room
  • Contact Us
    contact@lifars.com
    (212) 222-7061
    LIFARS, LLC
    244 Fifth Avenue
    Suite 2035
    New York, NY 10001

© 2023 LIFARS, a SecurityScorecard company

  • Privacy Policy
  • Cookie Policy