Skype phishing attack targets remote workers

Skype video conferencing
(Image credit: Shutterstock)

Remote workers have been warned to take extra care when using video conferencing software after a new phishing scam was uncovered.

Researchers from security firm Cofense have revealed hackers are using emails pretending to be from Skype, the popular Microsoft-owned video calling tool, in order to trick home workers into handing over their login details.

Criminals could then use these logins to access corporate networks to spread malware or steal valuable information.

Skype security

The report, released by the Cofense Phishing Defense Center (PDC) saw attackers creating an email that looks eerily similar to a legitimate pending notification coming from Skype. If an unsuspecting recipient goes to “review” the notification, they are redirected via an app.link to a phishing page designed to harvest your password.

The use of .app top-level domains (TLD) adds an extra layer of deception to the attack, as this TLD is backed by Google to help app developers securely share their apps. 

An .app domain also requires the use of HTTPS to connect, adding security on both the user’s and developer’s end - in this case, making the victim consider they are clicking on a legitimate link.

Cofense says that such fake emails can be detected through checking the "sent from" field, as although the sender address may appear legitimate at first glance, the real sender can be found there, exposing them as a fraud. 

TechRadar Pro has contacted Skype for comment.

Video calling apps such as Skype have seen a huge rise in users over the past few weeks as employees around the world transition to working from home.

However this growth has also revealed a number of security worries, with Zoom in particular having several issues highlighted. Even though the platform has seen its users base surge to 200 million, it has been heavily criticised for failing to stop Zoombombing incidents and for sending data to Facebook and China.

Mike Moore
Deputy Editor, TechRadar Pro

Mike Moore is Deputy Editor at TechRadar Pro. He has worked as a B2B and B2C tech journalist for nearly a decade, including at one of the UK's leading national newspapers and fellow Future title ITProPortal, and when he's not keeping track of all the latest enterprise and workplace trends, can most likely be found watching, following or taking part in some kind of sport.

Latest in Security
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Image depicting a hand on a scanner
Hackers are targeting unpatched ServiceNow instances that exploit 3 separate year-old vulnerabilities
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Lock on Laptop Screen
Data breach at Pennsylvania education union potentially exposes 500,000 victims
Latest in News
Seth Milchick and Kier Eagan's animatronic speaking in Severance season 2 episode 10
Apple TV+ announces Severance has been renewed for season 3 after that devastating finale
Apple's Craig Federighi presenting customization options in iOS 18 at the Worldwide Developers Conference (WWDC) 2024.
iOS 19: new features, a new design, and everything you need to know
Spotify's new Concerts Near You playlist feature showing a list of songs by local touring artists
Spotify has launched a new Concerts Near You playlist, making it easier for you to see if your favorite artists are performing in your area
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
The new Dr. Squatch Call of Duty collection.
Latest Call of Duty collaboration finally lets you rub your body with Soap - and I can't believe I just wrote that
Samsung S95D with peacock feather on screen
Samsung says an OLED-beating new screen tech could come sooner than we thought – but I wouldn't expect it in 4K TVs right away