Skip to main content
Advertisement
Live broadcast

The expert spoke about a new fraudulent scheme involving marketplaces and "Public Services"

Verestnikova: scammers deceive Russians through fake delivery from PVZ
0
Озвучить текст
Select important
On
Off

The attackers are using a new fraud scheme in which they call Russian citizens on behalf of employees of marketplace pick-up points and offer to deliver previously ordered goods to their homes. In this case, the person is asked to name the SNILS, INN, or SMS code. This was announced on May 14 by Daria Verestnikova, CEO of the cybersecurity company SafeTech Group (STCrypt).

"Recently, a scheme has been gaining popularity when you receive a call allegedly from a marketplace pick-up point and are offered to deliver the ordered goods to your home. However, to arrange delivery, you need to provide personal information: SNILS, INN, and sometimes even an SMS code," she told RIA Novosti.

After talking to the alleged employee and transmitting information about personal data, "comrade major" calls and reports hacking of "Gosuslug". He begins to convince the person that his funds are in danger and the only way out of the situation is to transfer them to a special account or transfer cash into the hands of law enforcement officers. It is clarified that the user's account was not touched, and the SMS is sent from a fake number.

According to the expert, this fraudulent scheme works because it leaves people thinking that they can be left without money by using their Gosuslug account. Attackers take advantage of the fact that thanks to the service, people take out loans, sign documents, and so on, and all security depends on SMS.

"And in this case, scammers don't even need to get real access — it's enough just to mislead the citizen," the expert noted.

Earlier, on May 13, the Department for the organization of the fight against the illegal use of information and communication technologies (UBK) of the Ministry of Internal Affairs of Russia told about the data that cannot be disclosed to anyone. In particular, they include information related to the bank card, including the number, expiration date, CVC/CVV code, Internet banking logins and passwords, SMS codes, and confirmation push notifications.

Переведено сервисом «Яндекс Переводчик»

Live broadcast