This huge typosquatting campaign is being used to run tech support scams

Fraud
Image Credit: Shutterstock (Image credit: Gustavo Frazao / Shutterstock)

A large typosquatting campaign has been detected abusing Amazon’s AWS cloud platform to lure people into tech support scams. 

After being tipped off by an actual computer technician working at a local shop, researchers at Malwarebytes discovered a “big typosquatting campaign” that started roughly a month ago.

The campaign is quite dangerous, too, as victims are not only “charged” for the “tech support” service they receive, but the scammers often end up accessing the victims’ bank accounts and later drain them out.

Faking a security issue

Typosquatting is a popular technique among cybercriminals, and relies on people making a typo in ignorance or by accident. If a person were to mistype a website they’re looking to visit - they would usually see a message saying the website doesn’t exist. However, some criminals obtain these mistyped domains and use them to plant malicious landing pages hosted on AWS. 

In this instance, unknown threat actors obtained a Wells Fargo lookalike domain - wellsfargo[.]cm (instead of .com). People visiting this website will get a popup saying their endpoint has numerous viruses and threats, that it’s “locked” for security reasons, and that they should call customer support via a phone number on the landing page. 

Besides the risk of talking to the fraudsters on the phone, giving them access to the devices and possibly even bank accounts - there is also the risk of the fraudsters knowing people’s phone numbers, which can later be used in identity theft scams.

The best way to protect against such attacks is to make sure you’re typing the addresses correctly and to be suspicious of any security pop-ups saying the device is “locked” and urging the user to act immediately. 

While Malwarebytes claims this is a major typosquatting campaign, it listed 10 domains that were recently hijacked, including Amazon, DuckDuckGo, Walmart, and Home Depot. We don’t know how many people might have been affected by this attack. 

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Illustration of a hooked email hovering over a mobile phone
AWS misconfigurations reportedly used to launch phishing attacks
Image depicting hands typing on a keyboard, with phishing hooks holding files, passwords and credit cards.
Microsoft warns about a new phishing campaign impersonating Booking.com
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Mac users targeted with new malware, so be on your guard
Fraude en ligne phishing
Google forced to step up phishing defenses following ‘most sophisticated attack’ it has ever seen
A padlock resting on a keyboard.
Understanding and avoiding malvertizing attacks
Fraude en ligne phishing
Google Search ads are being hacked to steal account info
Latest in Security
Data Breach
Thousands of healthcare records exposed online, including private patient information
China
Juniper patches security flaws which could have let hackers take over your router
Representational image depecting cybersecurity protection
GitLab has patched a host of worrying security issues
Ai tech, businessman show virtual graphic Global Internet connect Chatgpt Chat with AI, Artificial Intelligence.
AI agents can be hijacked to write and send phishing attacks
China
Volt Typhoon threat group had access to American utility networks for the best part of a year
Abstract image of cyber security in action.
MassJacker malware targets those looking for pirated software
Latest in News
Super Mario Odyssey
ChatGPT is the ultimate gaming tool - here's 4 ways you can use AI to help with your next playthrough
Brad Pitt looks over his right shoulder with 'F1' written behind him
Apple Original Films will take you behind-the-scenes of a racing cockpit in this new thrilling F1 movie trailer
AI writer
Coding AI tells developer to write it himself
Reacher looking down at another character from the Prime Video TV series Reacher
Reacher season 3 becomes Prime Video’s biggest returning show thanks to Hollywood’s biggest heavyweight
Finger Presses Orange Button Domain Name Registration on Black Keyboard Background. Closeup View
I visited the world’s first registered .com domain – and you won’t believe what it’s offering today
Image showing detail of the Leica D-Lux 8
Still can't get a Fujifilm X100VI? This premium Leica compact costs less, and it's in stock