{"id":1834,"date":"2020-03-17T16:19:10","date_gmt":"2020-03-17T12:19:10","guid":{"rendered":"https:\/\/www.techxmedia.com\/?p=1834"},"modified":"2025-04-18T02:26:46","modified_gmt":"2025-04-17T22:26:46","slug":"beware-scams-exploiting-coronavirus-fears","status":"publish","type":"post","link":"https:\/\/techxmedia.com\/en\/beware-scams-exploiting-coronavirus-fears\/","title":{"rendered":"Beware scams exploiting coronavirus fears"},"content":{"rendered":"\n<p><strong><em>By Tony Anscombe, Global\nSecurity Evangelist and Industry Ambassador at ESET<\/em><\/strong><\/p>\n\n\n\n<p>We\nare currently experiencing an unprecedented global event. The outbreak of\nCoronavirus Disease 2019 (COVID-19) \u2013 now officially a&nbsp;<a href=\"https:\/\/www.who.int\/dg\/speeches\/detail\/who-director-general-s-opening-remarks-at-the-media-briefing-on-covid-19---11-march-2020\" target=\"_blank\" rel=\"noreferrer noopener\">pandemic<\/a>&nbsp;\u2013 has caused\napprehension globally, ultimately resulting in lockdowns, travel bans, panic\nbuying, and financial market turmoil.<\/p>\n\n\n\n<p>Scammers,\ntoo, have taken notice. Emergencies offer golden opportunities for con artists\nto launch fraudulent campaigns that feed off, and cash in on, the climate of\nconcern. Against the backdrop of a disease that has so far&nbsp;<a href=\"https:\/\/www.who.int\/emergencies\/diseases\/novel-coronavirus-2019\/situation-reports\/\" target=\"_blank\" rel=\"noreferrer noopener\">caused more than 4,000 deaths<\/a>&nbsp;and continues to spread,\nscammers have wasted no time in playing on people\u2019s fears or evoking feelings\nof compassion.<\/p>\n\n\n\n<p>Some\ncybercriminals clearly think that all their Christmases have come at once: an\nanxious population, vulnerable people at the highest risk, excessive demand for\ngoods no longer in stock, and masses of disinformation sloshing around on\nsocial media \u2013 all this equates to a massive opportunity to prey on people and\nattempt to defraud them while they are at their most susceptible.<\/p>\n\n\n\n<p>The\nscams can take various forms, and the ESET research team has shared a few\nexamples of the despicable tactics seen in use recently.<\/p>\n\n\n\n<p><strong>Malicious news<\/strong><\/p>\n\n\n\n<p>Fraudsters pretend to offer important information about the virus in an attempt to get potential victims to click on malicious links. Typically, such links can install malware, steal personal information, or attempt to capture login and password credentials.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"768\" height=\"502\" src=\"https:\/\/www.techxmedia.com\/wp-content\/uploads\/2020\/03\/1.png\" alt=\"\" class=\"wp-image-1835\" srcset=\"https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/1.png 768w, https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/1-300x196.png 300w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/figure><\/div>\n\n\n\n<p>The\nWHO is aware that its brand is being used by scammers, so it provides advice on&nbsp;<a href=\"https:\/\/www.who.int\/about\/communications\/cyber-security\" target=\"_blank\" rel=\"noreferrer noopener\">its website<\/a>&nbsp;on how it communicates,\nand provides details of what it will or will not do in official emails. One of\nthe most important points to note reads:<\/p>\n\n\n\n<p><em>\u201cMake\nsure the sender has an email address such as \u2018person@who.int\u2019. If there is\nanything other than \u2018who.int\u2019 after the \u2018@\u2019 symbol, this sender is not from\nWHO. WHO does not send email from addresses ending in \u2018@who.com\u2019, \u2018@who.org\u2019 or\n\u2018@who-safety.org\u2019 for example.\u201d<\/em><\/p>\n\n\n\n<p>The\norganization also advises to check the URL for any links in emails and that all\nweb content will start with&nbsp;<a href=\"https:\/\/www.who.int\/\" target=\"_blank\" rel=\"noreferrer noopener\">https:\/\/www.who.int\/<\/a>&nbsp;and that no other domain\nis used. If there\u2019s any doubt, then directly type the address into your\nbrowser.<\/p>\n\n\n\n<p>Consider\nnavigating to the&nbsp;<a href=\"https:\/\/www.who.int\/emergencies\/diseases\/novel-coronavirus-2019\" target=\"_blank\" rel=\"noreferrer noopener\">dedicated WHO site<\/a>&nbsp;or to the sites of your\nrespective national health care institutions, such as the&nbsp;<a href=\"https:\/\/www.cdc.gov\/coronavirus\/2019-ncov\/index.html\" target=\"_blank\" rel=\"noreferrer noopener\">Center for Disease Control and Prevention<\/a>&nbsp;(CDC) in the United\nStates or the&nbsp;<a href=\"https:\/\/www.nhs.uk\/conditions\/coronavirus-covid-19\/\" target=\"_blank\" rel=\"noreferrer noopener\">National Health Service<\/a>&nbsp;in the United Kingdom.<\/p>\n\n\n\n<p>In\nanother example, the phishing website below is attempting to impersonate the\nWall Street Journal (WSJ) and is supposedly reporting the latest COVID-19 news.\nWe have redacted some of the URL for obvious reasons, but notice that it starts\nwith \u2018worldstreet\u2019 and the wording on the webpage states \u2018world street\u2019.<\/p>\n\n\n\n<p>Nevertheless, some visual consistency with WSJ branding is there in a clear attempt to subtly trick the visitor into thinking that this is the Wall Street Journal. The delivery of advertising on the site is generating revenue for the bad actors, even if no personal details are gleaned from the user.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"615\" height=\"461\" src=\"https:\/\/www.techxmedia.com\/wp-content\/uploads\/2020\/03\/2.png\" alt=\"\" class=\"wp-image-1836\" srcset=\"https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/2.png 615w, https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/2-300x225.png 300w, https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/2-272x204.png 272w\" sizes=\"auto, (max-width: 615px) 100vw, 615px\" \/><\/figure><\/div>\n\n\n\n<p><strong>Exploiting the charitable spirit<\/strong><\/p>\n\n\n\n<p>Another common type of scam doing the rounds is a tug on the heart strings that attempts to get the recipient to help fund the vaccine for children in China. There is, at the time of writing,&nbsp;<a rel=\"noreferrer noopener\" href=\"https:\/\/www.technologyreview.com\/s\/615331\/a-coronavirus-vaccine-will-take-at-least-18-monthsif-it-works-at-all\/\" target=\"_blank\">no vaccine available<\/a>&nbsp;and it is not expected to be ready for public use until next year.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"768\" height=\"753\" src=\"https:\/\/www.techxmedia.com\/wp-content\/uploads\/2020\/03\/3.png\" alt=\"\" class=\"wp-image-1837\" srcset=\"https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/3.png 768w, https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/3-300x294.png 300w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/figure><\/div>\n\n\n\n<p>The\ninteresting background to this is example is that the bad actor has repurposed\nan existing campaign infrastructure and process with COVID-19 content. In 2019\nwe published details of a&nbsp;<a href=\"https:\/\/www.welivesecurity.com\/2019\/03\/19\/i-didnt-see-what-you-did-redux\/\" target=\"_blank\" rel=\"noreferrer noopener\">sextortion scam campaign<\/a>&nbsp;attempting to scare\nvictims in an attempt to extort money from them.<\/p>\n\n\n\n<p>People\nwho receive the coronavirus-themed emails are asked to send bitcoins to the\nattackers\u2019 wallets. Despite this technique being only effective for a fraction\nof the users, when done on a global scale it can be financially attractive for\nthe criminals.<\/p>\n\n\n\n<p><strong>Unmasked<\/strong><\/p>\n\n\n\n<p>In another type of fraud, scammers send spam emails in a bid to dupe the victims into thinking they can order face masks that will keep them safe from the novel coronavirus. What happens instead is that the victims will unwittingly reveal their sensitive personal and financial information to the fraudsters.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"768\" height=\"635\" src=\"https:\/\/www.techxmedia.com\/wp-content\/uploads\/2020\/03\/4.png\" alt=\"\" class=\"wp-image-1838\" srcset=\"https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/4.png 768w, https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/4-300x248.png 300w\" sizes=\"auto, (max-width: 768px) 100vw, 768px\" \/><\/figure><\/div>\n\n\n\n<p>As\nyou would expect, Google Trends shows that search volumes for terms such as \u2018<a href=\"https:\/\/trends.google.com\/trends\/explore?date=today%201-m&amp;geo=US&amp;q=Hand%20Sanitizer\" target=\"_blank\" rel=\"noreferrer noopener\">hand sanitizer<\/a>\u2019 and \u2018face masks\u2019 and are\nreaching unprecedented levels. With demand for these products outstripping\nsupply, con artists have been increasingly targeting people who are looking to\ntake protective measures.&nbsp;<a href=\"https:\/\/news.sky.com\/story\/coronavirus-scammers-con-face-mask-buyers-out-of-800k-11953933\" target=\"_blank\" rel=\"noreferrer noopener\">According to Sky News<\/a>, fraudulent face mask\nsellers swindled people in the UK out of \u00a3800,000 (US$1 million) in February\nalone.<\/p>\n\n\n\n<p><strong>Final thoughts<\/strong><\/p>\n\n\n\n<p>These\nare just a few of the examples of how cybercriminals are attempting to\ncapitalize on the current climate surrounding the virus outbreak. This is an\napt time for individuals and businesses to learn, or be reminded of, some of\nthe most common ways criminals capitalize on people\u2019s emotions (not only)\nduring major events and emergencies.<\/p>\n\n\n\n<p>Remaining\nvigilant, identifying and ignoring the product of cybercriminals and\ncyber-nuisances involved in scams or fake news is essential. Here are some of\nthe basics that will help you stay safe:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Avoid clicking on any links or downloading any attachments in unsolicited emails or texts from unknown sources, or even in trusted sources unless you\u2019re absolutely sure that the message is authentic.<\/li><li>Ignore communications that ask for your personal information. If necessary, verify the contents of the message with the apparent sender or the organization that they (seemingly) represent, and do so via a different medium than the received message.<\/li><li>Be especially wary of emails that add to the sense of alarm and urge you to take immediate action or offer COVID-19 vaccines or cures.<\/li><li>Look out for fraudulent charities or crowdfunding campaigns.<\/li><li>Use reputable multi-layered security software that includes&nbsp;<a rel=\"noreferrer noopener\" href=\"https:\/\/www.welivesecurity.com\/2015\/01\/08\/phish-allergy-recognizing-phishing-messages\/\" target=\"_blank\">protection against phishing<\/a>.<\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Emergencies offer golden opportunities for con artists to launch fraudulent campaigns that feed off, and cash in on, the climate of concern. Against the backdrop of a disease that has so far caused more than 4,000 deaths and continues to spread, scammers have wasted no time in playing on people\u2019s fears or evoking feelings of compassion.<\/p>\n","protected":false},"author":8,"featured_media":1840,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[1595,9621,54,9624],"tags":[723,724,686,592,518,527,913,912],"contributor":[],"class_list":["post-1834","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-emerging-technologies","category-health-tech","category-smart-sectors","tag-coronavirus","tag-covid_19","tag-cyber_attack","tag-cyber_crime","tag-cyber_security","tag-cyber_threat","tag-global_security","tag-scamming"],"featured_image_src":"https:\/\/techxmedia.com\/en\/wp-content\/uploads\/2020\/03\/Tony-Anscombe-Global-Security-Evangelist-and-Industry-Ambassador-at-ESET-e1584447349816.jpg","author_info":{"display_name":"Rabab","author_link":"https:\/\/techxmedia.com\/en\/author\/rabab\/"},"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/posts\/1834","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/comments?post=1834"}],"version-history":[{"count":0,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/posts\/1834\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/media\/1840"}],"wp:attachment":[{"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/media?parent=1834"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/categories?post=1834"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/tags?post=1834"},{"taxonomy":"contributor","embeddable":true,"href":"https:\/\/techxmedia.com\/en\/wp-json\/wp\/v2\/contributor?post=1834"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}