Find news published in the date range below
and and
and and
and and
Clear
Euro
Arrow
53,9539
Dollar
Arrow
44,7319
Sterling
Arrow
63,0136
Gold
Arrow
6248,1352
BIST 100
Arrow
10.729

Termination fraud: Beware of phishing attacks!

Employment and work-from-home scams stand out as one of the most common methods among cybercriminals. The main reason for this is that most people are either currently employed or actively looking for work. Scammers often try to deceive their victims by offering attractive job or temporary employment opportunities. However, another lesser-known method is termination fraud. Cybersecurity company ESET has examined this type of fraud, where individuals' fear of losing their jobs is used as a threat element.

Don't leave your news choices to an algorithm - decide for yourself what you read. Add 12punto to your preferred sources!
Termination fraud: Beware of phishing attacks!

Termination fraud is a phishing attack designed to steal your personal and financial information or to trick you into downloading malicious software. This fraud method uses social engineering tactics to create a sense of urgency in victims, ensuring they act without thinking.

It usually appears as an email that seems to come from the human resources department or an authorized institution outside the company. The message tries to panic you by stating that your services are no longer needed. Scammers ask you to click on a link or open an attachment that they claim contains details about your alleged severance pay and termination. However, this action can lead to a hidden piece of malware being installed on your device or you being redirected to a fake phishing page.

WHY IS TERMINATION FRAUD AN EFFECTIVE METHOD?

Termination fraud becomes effective by exploiting people's good intentions. It aims to make victims act quickly by creating fear and panic. Victims may want to learn more about the reasons for their termination or the details of the allegations made against them.

Phishing continues to be one of the most common initial access methods for ransomware attackers. The fact that phishing tactics mediated a quarter (25%) of financially motivated cyberattacks in the last two years shows that this is no coincidence.


HOW TO IDENTIFY TERMINATION FRAUD?

As with any phishing attack, there are some important warning signs you should look out for when you receive such an email:

Suspicious sender address: Even if the sender's name looks familiar, check the email address. You can see the real address by hovering your mouse cursor over the “From” field. The address may be imitating an official domain or contain typos.

Use of generic greetings: For example, phrases like "Dear employee" or "Dear user" are not used in an official termination notice.

Links and attachments: Be careful if the email contains links or attachments that direct you to click. If the address that appears when you hover over the link is suspicious, do not click it under any circumstances.

Links or attachments asking you to log in: If you are asked to log in instead of accessing the content directly when you open a link, remember that this could be a phishing attempt.

Urgent and pressuring language: Phishing emails try to create a sense of urgency to panic you and force you to make a quick decision.

Spelling and grammar errors: Although such errors decrease as cyber scammers use artificial intelligence tools, be careful with emails that contain suspicious sentence structures and misspelled words.

AI-generated audio and video: Scammers can imitate the voices or images of real people using deepfake technology. Be cautious against such AI-supported scams and do not share information without verifying suspicious requests.

WHAT YOU SHOULD DO TO STAY SAFE

Set strong and unique passwords for each of your accounts and store them in a secure password manager.

Enable two-factor authentication (2FA) to provide extra security.

Ensure that security updates for your work and personal devices are performed regularly.

To become more aware of phishing attacks, participate in regular phishing simulations in line with the recommendations of your IT department.

When you receive a suspicious email, avoid clicking on the links in the email and opening the attachments.

If you have concerns, verify by contacting the sender through another communication channel; however, do not reply to the email directly or use the contact information listed in it.

Report suspicious emails to your workplace's IT department immediately.

Check if your colleagues have received the same message and remind them to be careful.


News Source: 12punto

scammer Fraud