Skip to main content
Advertisement
Live broadcast

DLBI service revealed a new scheme of fraudsters to steal accounts on "State Services"

DLBI: fraudsters started publishing fake numbers of "Public Services" support services
0
Photo: IZVESTIA/Sergey Lantyukhov
Озвучить текст
Select important
On
Off

Fraudsters began to fake reference sites and publish on them fake numbers of support services "Gosuslugi" to gain access to the accounts of portal users. This was told on December 23 in the Russian service of intelligence of vulnerabilities and data leaks DLBI.

"Fraudsters create fake reference sites, on which they publish fake phone numbers of the support service "Gosuslugi", and then with the help of search engine promotion achieve their appearance in the top 10 search engines," explained representatives of the service "RIA Novosti".

In addition, fraudsters can send SMS-messages about an allegedly unsuccessful login attempt or even account hacking, in which they prescribe a fake support number. Such fraud schemes, according to experts, are dangerous because people communicate allegedly with call-center operators and believe that they have contacted the portal support service. Thus, a person is ready in advance to fulfill the commands of fraudsters, the service explained.

DLBI founder Ashot Oganesyan noted that so far the high complexity of organizing large-scale SMS mailings, as well as the labor intensity and duration of search engine promotion of fake sites prevent the spread of this type of fraud.

"However, if those "tests" that we see now will show the fraudsters effectiveness, a technical solution will be found," he added.

Earlier, on December 22, Vadim Deryuzhinsky, head of the legal department of Sign.Me, in a conversation with Izvestia, noted that the most common cases of fraud in the field of electronic signature (ES) occur not because of flaws in the technology, but because of the violation of basic rules of digital hygiene by the users themselves. He said that not only a token, but also a mobile application can be the carrier of an electronic signature, and transferring access to it is also a gross violation of security techniques.

Переведено сервисом «Яндекс Переводчик»

Live broadcast