Our young people are always learning. It’s a great time to expand their cyber education to help keep them safe in the classroom.

The school bell rings, kids of all ages take their seats, and there’s an atmosphere of anticipation. Students open their textbooks and laptops, ready to explore language, history, science, and math, and further expand their horizons. Yet, unbeknownst to many, there are people lurking behind the screens in the academic world, actors whose intentions are not at all noble. 

(lebih…)

Just because that link comes from [your search engine here] doesn’t mean it’s a legitimate website.

Summer is at its height, and it’s a good time to go sit by the pool with a glass of iced tea, go out and see that hugely promoted film in a nice cool theater, or maybe relax at home in your favorite chair…in front of the air conditioner. 

(lebih…)

Authored by: Vallabh Chole and Yerko Grbic

On July 23rd, 2023, Elon Musk announced that the social networking site, Twitter was rebranding as “X”. The news propelled Twitter and X to gain headlines and become the top trending topics on popular social media platforms. 

Scammers pounced on this opportunity and started renaming various hacked YouTube and other social media accounts to “twitter-x” and “twitter fund” to promote scam links with new X branding. 

Figure 1. Twitter-X-themed YouTube Live Stream by scammer 

 

Figure 2. Twitter X Crypto Scam 

 

This type of scam has been active for some time and uses an innovative approach to lure victims. To make this scam more authentic, attackers target famous Influencers with sponsorship emails that contain password-stealing malware as email attachments. When password stealer malware is executed, the influencers session cookies (unique access tokens) are stolen and uploaded to attacker-controlled systems. 

Figure 3. Malware Flow Chart  

 

After the influencers account has been compromised, the scammer starts to rename channels, in this case to “Twitter CEO” and then the scammers start to live stream an Elon Musk video on YouTube. They post web links for new scam sites in chat, and target YouTube accounts with a large number of subscribers. On other social media platforms, such as Instagram and Twitter, they use compromised accounts to follow users and post screenshots with captions, such as “Thanks Mr.Elon”. If we look for these terms on Instagram, we observe thousands of similar posts. Compromised accounts are also used to post videos for software/game applications, which are malware masquerading as legitimate software or games. These videos demonstrate how to download and execute files, which are common password-stealing malware, and distributed through compromised social media accounts.

Protection with McAfee+: 

 McAfee+ provides all-in-one online protection for your identity, privacy, and security. With McAfee+, you’ll feel safer online because you’ll have the tools, guidance, and support to take the steps to be safer online. McAfee protects against these types of scam sites with Web Advisor protection that detects malicious websites.

Figure 4. McAfee WebAdvisor detection 

 

Below is a detection heatmap for scam URL’s targeting twitter-x and promoting crypto scams  

Figure 5. Scam URL Detection Heatmap 

 

Figure 6. Password stealer Heatmap 

 

Indicators of Compromise: 

Scam Site  Crypto Type  Wallet   
twitter-x[.]org  ETH   0xB1706fc3671115432eC9a997F802aC79CD7f378a   
twitter-x[.]org  BTC   1KtgaAjBETdcXiAdGsXJMePT4AEGWqtsug   
twitter-x[.]org  USDT   0xB1706fc3671115432eC9a997F802aC79CD7f378a   
twitter-x[.]org  DOGE   DLCmD43eZ6hPxZVzc8C7eUL4w8TNrBMw9J   

 

Introducing McAfee+

Identity theft protection and privacy for your digital life


#Scammers #Follow #Rebranding #Twitter #Distribute #Malware

Salaku tétéla, scammers bener resep Barbie.

Nalika Barbie debut dina layar badag, scammers Tujuan kauntungan tina blockbuster usum panas. Runtuyan scams geus surfaced online, kaasup undeuran pilem palsu nu install malware, virus patali Barbie, jeung video palsu nu ngakibatkeun jalma pikeun tiket bébas-tapi malah ngakibatkeun Tumbu nu maok informasi pribadi kalawan spyware. Cybercriminals sok néangan kasempetan sangkan phishing jeung scams séjén leuwih pikaresepeun tur dipercaya, “ceuk Steve Grobman, CTO of McAfee, “Aranjeunna mindeng ngamangpaatkeun acara populér tur well-publicized kayaning premiere pilem, konser atawa acara olahraga pikeun nipu pamaké kana ngaklik link jahat.

Fans antrian ningali “Barbie” bisa nyingkahan onslaught ieu lamun maranéhna terang naon néangan. Ieu sababaraha conto naon anu kapanggih ku panalungtik urang.

Conto Barbies download palsu trik

Di India, Kami gaduh tingali sababaraha conto kampanye jahat éta nguji pikeun nipu korban pikeun ngaunduh “Barbie” dina basa béda:

Potret layar kampanye jahat anu ditujukeun pikeun pangguna anu nyarios basa Hindi

Ku ngaklik tautan, korban dipenta pikeun ngaunduh file .zip, anu dipak ku malware.

Malware nu patali Barbie naek

Dina 3 minggu ka tukang, urang ningali 100 malware anyar sareng nami file anu aya hubunganana sareng Barbie. Sakali deui, éta nunjukkeun kumaha panyerang ngamangpaatkeun hype pilem éta, ngaharepkeun jalma bakal ngaklik file jahat sabab nami Barbie nuju trending.

Jinis file rupa-rupa tapi kalebet jinis umum sapertos .html sareng .exe. Sacara umum, panyerang museurkeun kana AS, tapi nagara-nagara sanés ogé ditargetkeun. Di handap ieu anjeun tiasa ningali statistik nagara-demi-nagara dimana conto Barbie malware ieu muncul:

Distribusi malware dumasar nagara, ti 20 Juli 2023

Video palsu ngakibatkeun serangan branded Barbie

Video bakal alihan calon korban ka server Discord atanapi situs wéb. Di dinya, panyerang naroskeun ka sémah pikeun ngaunduh file .exe anu ageung. Sapertos sateuacana, filena dimuat ku malware, sapertos jinis anu katelah “Redline Stealer” anu nyéépkeun inpormasi pribadi, inpormasi login sareng seueur deui tina alat.

Conto pidéo tikét Barbie palsu dina YouTube

Ngabagikeun inpormasi pribadi sareng kauangan sareng situs-situs curang ieu nyababkeun maling identitas sareng panipuan. Penipu tiasa ngalaksanakeun kajahatan anu nuturkeun ieu nyalira, sareng aranjeunna ogé tiasa ngirimkeun inpormasi anu dipaling pikeun dijual deui dina pasar wéb anu poék-sadayana bahaya pikeun peminat pilem.

Sanaos pilem Barbie sareng Oppenheimer ngahasilkeun sensasi anyar anu panas, panipuan online anu aya hubunganana sareng aranjeunna mangrupikeun kabiasaan anu lami. Dina sajarahna, acara média utama naon waé anu nyababkeun seueur panipuan online. Urang tiasa nunjuk ka situs scam nu numbu ka Super Bowl di AS, scams cryptocurrency leveraging acara populér kawas Squid Games, sarta merchandising jeung streaming scams nu pop up salila Piala Dunya FIFA Lalaki jeung Awewe.

Cybercriminals sok néangan kasempetan sangkan phishing jeung scams séjén leuwih pikaresepeun tur dipercaya, “ceuk Steve Grobman, CTO of McAfee, “Aranjeunna mindeng ngamangpaatkeun acara populér tur well-publicized kayaning premiere pilem, konser atawa acara olahraga pikeun nipu pamaké kana ngaklik link jahat.

Kitu cenah, éta warta alus pikeun fans pilem. Anjeun tiasa nyingkahan panipuan “Barbie” sareng “Oppenheimer” ieu ku ningali sababaraha tanda sareng ngalaksanakeun sababaraha ukuran kaamanan anu sederhana.

Ngajaga diri tina scams pilem online

  1. Tetep sareng pangecér sareng streamer anu dipercaya. Ngajaga balanja anjeun sareng ningali luhureun pikiran, merek top tetep janten taruhan paling aman anjeun online. Pangecér anu dipercaya mawa barang anu sah. Sareng upami palsu sareng imitasi nyusup kana pasarna, kabijakan ngabalikeun duit masihan anjeun cara pikeun pulih karugian anjeun. Naon deui, streamer anu dipercaya ngan ukur bakal nampilkeun acara sareng acara anu aranjeunna dijudulan. Upami anjeun mendakan tawaran pikeun ngalirkeun data anu diskon ageung, gratis, atanapi henteu sayogi dina toko média anu terkenal, éta sigana scam. Sahenteuna, éta meureun eusi bajakan, nu bisa mawa ancaman malware kalawan eta.
  2. Mésér tikét ti ranté téater anu terhormat atanapi aplikasi anu ngajual tikét. Cara anu sanés scammers resep kas dina tiket panas nyaéta muka kotak kantor online palsu anu ngecas tikét. Tangtu, aranjeunna moal nganteurkeun. Éta ngan ukur nyandak artos sareng nomer kartu anjeun pikeun boot. Anjeun tiasa ngahindarkeun ieu ku cara ngagaleuh tikét anjeun sacara online langsung ti téater atanapi nganggo aplikasi tikét pilem online anu tiasa dipendakan dina Apple App Store atanapi Google Play.
  3. Waspada situs anu katingalina awon. Penipu online gaduh tingkat kecanggihan anu béda-béda nalika ngawangun sareng ngarancang situs anu curang. Sababaraha bisa kasampak geulis sah, tapi batur kasampak bit ditampar babarengan. Dina hal naon waé, perhatikeun desain wéb anu goréng, typos, sareng kasalahan gramatikal, sanaos sakedik. Ieu sering nunjukkeun situs scam, sabab pausahaan reputable nyieun unggal usaha pikeun nyadiakeun pangalaman beresih jeung profésional-pilari.
  4. Ningali tawaran, promosi sareng hadiah kalayan panon kritis. Kalawan acara média badag datangna usaha pamasaran badag, sarta scammers bakal ngalakukeun pangalusna maranéhna pikeun mingle sareng maranehna. Cara anu gancang pikeun ngahirupkeun panipuan nyaéta pikeun nengetan promosi. Upami anjeun naroskeun anjeun nyayogikeun inpormasi bank atanapi kartu anjeun pikeun cocog, cacah éta salaku panipuan. Kantun nempatkeun, ulah promosi nu menta hal di balik, utamana lamun éta duit atawa informasi pribadi Anjeun.
  5. Meunang panyalindungan online. software panyalindungan online komprehensif bakal salamet tina serangan virus, malware, spyware, sareng ransomware panganyarna. Tambih Deui, éta langkung saé ngajaga privasi sareng identitas anjeun. Utamana pikeun “Barbie” jeung “Oppenheimer” scams sirkulasi, panyalindungan online bisa mantuan nyegah anjeun ti ngaklik tumbu ka dipikawanoh atawa disangka situs jahat. Salaku tambahan, éta nawiskeun panyalindungan sandi anu kuat ku ngahasilkeun sareng nyimpen kecap konci anu kompleks sacara otomatis pikeun ngajaga kapercayaan anjeun langkung aman tina peretas sareng penjahat anu tiasa nyobian maksakeun jalan kana akun anjeun.


#Scammers #Cinta #Barbie #Video #Palsu #Ngamajukeun #Tawaran #Tikét #Palsu #Anu #Maok #Inpormasi #Pribadi

Ditulis ku: Sriram P Jeung Laksya Mathur

Salaku tétéla, scammers bener resep Barbie.

Nalika Barbie debut dina layar badag, scammers Tujuan kauntungan tina blockbuster usum panas. Seueur panipuan muncul sacara online, kalebet undeuran pilem palsu anu masang malware, virus anu aya hubunganana sareng Barbie, bahkan AI deepfakes anu ngarahkeun jalma pikeun ngabebaskeun tiket-tapi malah ngakibatkeun tautan anu maok inpormasi pribadi sareng spyware.

Tapi fans antrian ningali “Barbie” bisa nyingkahan onslaught ieu lamun maranéhna terang naon néangan. Di handap ieu sababaraha conto hasil panalungtikan urang di McAfee Labs.

Conto Barbies download palsu trik

Di India, Kami gaduh tingali sababaraha conto kampanye jahat éta nguji pikeun nipu korban pikeun ngaunduh “Barbie” dina basa béda:

Potret layar kampanye jahat anu ditujukeun pikeun pangguna anu nyarios basa Hindi

Ku ngaklik tautan, korban dipenta pikeun ngaunduh file .zip, anu dipak ku malware.

Malware nu patali Barbie naek

Dina 3 minggu ka tukang, urang ningali 100 malware anyar sareng nami file anu aya hubunganana sareng Barbie. Sakali deui, éta nunjukkeun kumaha panyerang ngamangpaatkeun hype pilem éta, ngaharepkeun jalma bakal ngaklik file jahat sabab nami Barbie nuju trending.

Jinis file rupa-rupa tapi kalebet jinis umum sapertos .html sareng .exe. Sacara umum, panyerang museurkeun kana AS, tapi nagara-nagara sanés ogé ditargetkeun. Di handap ieu anjeun tiasa ningali statistik nagara-demi-nagara dimana conto Barbie malware ieu muncul:

Distribusi malware dumasar nagara, ti 20 Juli 2023

Deepfake AI mingpin serangan bermerek Barbie

Ngadamel debutna dina toolkit hacker, AI. Kami parantos ngalaporkeun sakedik dina taun katukang-di sakuliah AI panipuan sora, panipuan média sosialJeung panipuan cinta. Ayeuna, deepfake AI parantos nyandak promo pitching pikeun tiket gratis pikeun ningali “Barbie”. Tangtu, éta scam a.

Video bakal alihan calon korban ka server Discord atanapi situs wéb. Di dinya, panyerang naroskeun ka sémah pikeun ngaunduh file .exe anu ageung. Sapertos sateuacana, filena dimuat ku malware, sapertos jinis anu katelah “Redline Stealer” anu nyéépkeun inpormasi pribadi, inpormasi login sareng seueur deui tina alat.

Conto AI palsu anu ngalungkeun tikét Barbie palsu dina YouTube

Ngabagikeun inpormasi pribadi sareng kauangan sareng situs-situs curang ieu nyababkeun maling identitas sareng panipuan. Penipu tiasa ngalaksanakeun kajahatan anu nuturkeun ieu nyalira, sareng aranjeunna ogé tiasa ngirimkeun inpormasi anu dipaling pikeun dijual deui dina pasar wéb anu poék-sadayana bahaya pikeun peminat pilem.

Sanaos pilem Barbie sareng Oppenheimer ngahasilkeun sensasi anyar anu panas, panipuan online anu aya hubunganana sareng aranjeunna mangrupikeun kabiasaan anu lami. Dina sajarahna, acara média utama naon waé anu nyababkeun seueur panipuan online. Urang tiasa nunjuk ka situs scam nu numbu ka Super Bowl di AS, scams cryptocurrency leveraging acara populér kawas Squid Games, sarta merchandising jeung streaming scams nu pop up salila Piala Dunya FIFA Lalaki jeung Awewe.

Kitu cenah, éta warta alus pikeun fans pilem. Anjeun tiasa nyingkahan panipuan “Barbie” sareng “Oppenheimer” ieu ku ningali sababaraha tanda sareng ngalaksanakeun sababaraha ukuran kaamanan anu sederhana.

Ngajaga diri tina scams pilem online

  1. Tetep sareng pangecér sareng streamer anu dipercaya. Ngajaga balanja anjeun sareng ningali luhureun pikiran, merek top tetep janten taruhan paling aman anjeun online. Pangecér anu dipercaya mawa barang anu sah. Sareng upami palsu sareng imitasi nyusup kana pasarna, kabijakan ngabalikeun duit masihan anjeun cara pikeun pulih karugian anjeun. Naon deui, streamer anu dipercaya ngan ukur bakal nampilkeun acara sareng acara anu aranjeunna dijudulan. Upami anjeun mendakan tawaran pikeun ngalirkeun data anu diskon ageung, gratis, atanapi henteu sayogi dina toko média anu terkenal, éta sigana scam. Sahenteuna, éta meureun eusi bajakan, nu bisa mawa ancaman malware kalawan eta.
  2. Mésér tikét ti ranté téater anu terhormat atanapi aplikasi anu ngajual tikét. Cara anu sanés scammers resep kas dina tiket panas nyaéta muka kotak kantor online palsu anu ngecas tikét. Tangtu, aranjeunna moal nganteurkeun. Éta ngan ukur nyandak artos sareng nomer kartu anjeun pikeun boot. Anjeun tiasa ngahindarkeun ieu ku cara ngagaleuh tikét anjeun sacara online langsung ti téater atanapi nganggo aplikasi tikét pilem online terkemuka anu anjeun tiasa mendakan dina Apple App Store atanapi Google Play.
  3. Waspada situs anu katingalina awon. Penipu online gaduh tingkat kecanggihan anu béda-béda nalika ngawangun sareng ngarancang situs anu curang. Sababaraha bisa kasampak geulis sah, tapi batur kasampak bit ditampar babarengan. Dina hal naon waé, perhatikeun desain wéb anu goréng, typos, sareng kasalahan gramatikal, sanaos sakedik. Ieu sering nunjukkeun situs scam, sabab pausahaan reputable nyieun unggal usaha pikeun nyadiakeun pangalaman beresih jeung profésional-pilari.
  4. Ningali tawaran, promosi sareng hadiah kalayan panon kritis. Kalawan acara média badag datangna usaha pamasaran badag, sarta scammers bakal ngalakukeun pangalusna maranéhna pikeun mingle sareng maranehna. Cara anu gancang pikeun ngahirupkeun panipuan nyaéta pikeun nengetan promosi. Upami anjeun naroskeun anjeun nyayogikeun inpormasi bank atanapi kartu anjeun pikeun cocog, cacah éta salaku panipuan. Kantun nempatkeun, ulah promosi nu menta hal di balik, utamana lamun éta duit atawa informasi pribadi Anjeun.
  5. Meunang panyalindungan online. software panyalindungan online komprehensif bakal salamet tina serangan virus, malware, spyware, sareng ransomware panganyarna. Tambih Deui, éta langkung saé ngajaga privasi sareng identitas anjeun. Utamana pikeun “Barbie” jeung “Oppenheimer” scams sirkulasi, panyalindungan online bisa mantuan nyegah anjeun ti ngaklik tumbu ka dipikawanoh atawa disangka situs jahat. Salaku tambahan, éta nawiskeun panyalindungan sandi anu kuat ku ngahasilkeun sareng nyimpen kecap konci anu kompleks sacara otomatis pikeun ngajaga kapercayaan anjeun langkung aman tina peretas sareng penjahat anu tiasa nyobian maksakeun jalan kana akun anjeun.


#Scammers #Cinta #Barbie #Deepfakes #Ngamajukeun #Tawaran #Tikét #Palsu #Anu #Maok #Inpormasi #Pribadi

Who else loves tax season besides accountants? Scammers. 

It’s high time of year for online risks here in the U.S. with the onset of tax season, where scammers unleash all manner of scams aimed at taxpayers. The complexity, and even uncertainty, of filing a proper tax return can stir up anxieties like, Have I filed correctly, Did I claim the right deductions, Will I get audited, and Will I get stung with a tax penalty are just a few—and these are the very same anxieties that criminals use as the cornerstone of their attacks.   

Yet like so many scams, tax scams give off telltale signs that they’re indeed not on the up-and-up. You have ways you can spot one before you get caught up in one. 

Scammers prey on the uncertainty of tax season 

In all, we’ve learned to watch our step with the Internal Revenue Service (IRS), so much so that receiving a notification from the IRS can feel like an unwanted surprise. Uh oh, did I do something wrong? However, in reality, less than 2% of returns get audited and most discrepancies or adjustments can get handled easily if addressed promptly. 

Still, that wariness of the IRS makes for ripe pickings when it comes to hackers, who prey on people’s fear of audits and penalties. Common scams include email phishing attacks, phone calls from crooks posing as IRS agents, texts claiming there’s a problem with our tax software, and even robocalls that threaten jail time for unpaid back taxes. What’s more, fraudsters can take things a step further by committing identity theft and then filing tax claims in other people’s names. 

With that, let’s dig into a list of the top scams wind up on our screens and phones during tax time.  

Tax scams to look out for 

This IRS Dirty Dozen: Top tax-season scams 

Straight from the authority itself, the IRS publishes its Dirty Dozen, an annual list of the top tax season scams. Year-over-year, many of the same scams make the list, yet new ones continue to crop up as scammers try to take advantage of current events. A couple recent examples include email phishing scams centered around Employee Retention Credits, pandemic relief checks, and federal stimulus checks. Additionally, the IRS has warned filers about disinformation that circulates on social media, such as bogus advice that urges filers to alter their W-2 figures for a better refund. With new scams entering the mix every tax season, the Dirty Dozen offers plenty of good advice that can help you steer clear of scams.  

Robocalls and other phone scams 

We all know the annoyance of spammy phone calls, whether they’re for phony car warranties, tech support services, or debt collection agencies. During this time of year, you can add phony IRS agents and financial service providers to the list.  

The stories that scammers will tell will vary, but they often share common themes: 

  • The IRS wants to provide you with a refund, yet they need your personal and financial account information before they will pay you. 
  • You owe back taxes! Pay the IRS now with a money order or gift cards, otherwise you’re subject to immediate arrest! 
  • A financial services company offers to file your taxes on your behalf, all you need to do is provide them with your tax ID or Social Security number—along with other personal and financial information. 

Another thing they have in common: they each outright ask for money, personal information, and sometimes a combination of both. All of which is an indication of a scam.  

For the record, per the IRS, it does not: 

  • Call to demand immediate payment using a specific payment method such as a prepaid debit card, gift card, or wire transfer.  
  • Demand that you pay taxes without the opportunity to question or appeal the amount they say you owe. You should also be advised of your rights as a taxpayer. 
  • Threaten to bring in local police, immigration officers, or other law-enforcement to have you arrested for not paying.  

Also per the IRS, they cannot revoke your driver’s license, business licenses, or immigration status. As noted above, scammers will often weave these threats into their stories. Those threats are entirely empty. 

What will the IRS do? Generally, the IRS will first mail a notice to any taxpayer who owes taxes. In some instances, IRS collection employees may make an unannounced visit to your home and properly identify themselves with IRS-issued credentials and an federal ID card. In all cases, the revenue officer will only request required payments by cash, check, certified funds, or money order payable to “United States Treasury.” 

As for scam calls that pose as financial services companies or tax preparers, ignore them. If you’re planning to work with a tax pro, do your research and work with a legitimate, accredited individual or organization. The IRS has a great resource that can get you started on your search with its “Directory of Federal Tax Return Preparers.” There you can get a list of qualified tax preparers that are verified by the IRS, which you can narrow down based on their accreditations and distance from your zip code.  

Messages by text or social media 

One way you can be sure that someone other than the IRS has reached you is if they contact you by text, messaging app, or social media. The IRS will not contact you in any of these ways. Ignore any such messages, and if your app or platform allows you to report messages or accounts as spam, do so. You can often do it with a simple click or tap. 

Another increasingly popular scam on phones is the bogus account alert. The scammer may send a message that says Your account is on hold, or something like We’ve detected unusual activity. During most of the year, scammers will use these messages to pose as online payment platforms, banks, credit card companies, online stores, and streaming services.  

Now during tax season, they’ll masquerade as IRS agents or popular tax software companies. Even though the names change, the game remains the same. The text or message will serve up a link so you can “correct the situation,” one that leads to a site that could steal your personal information or otherwise trick you into installing malware on your phone. 

As always, don’t click these links. Report them if you can. 

Phishing emails 

Phishing emails pull many of the same tricks that calls, texts, and direct messages do—you’ll simply find them in your inbox instead. The same rules for avoiding other IRS scams apply here. First, note that the IRS will never initiate contact with you via email. Nor will they send you emails about your tax refund or any other sensitive information. 

In the past, the IRS has reported that phishing emails often send their victims to lookalike IRS sites that can appear quite convincing. There, victims either receive a prompt to enter their personal and financial information or to download a file that’s laden with malware. Other emails may include attachments, which may be loaded with malware as well. 

Delete any such emails you receive. And if you have any concerns, contact your tax professional or the IRS directly. Also, the IRS asks people who receive scam emails to notify them at phishing@irs.gov. This helps the IRS track and prosecute scammers. 

Identity theft and stolen refunds 

Imagine filing your return only to find out it’s already been filed.  

A far more serious form of tax-related crime is identity theft, where a scammer uses the victim’s personal information and Social Security number to file a return in the victim’s name—and claim the refund. One particularly painful aspect of identity theft and taxes is that victims often find out only after it occurs or when it’s well underway. For example: 

  • You can’t file a return because a duplicate Social Security number has already filed one. 
  • You receive correspondence from the IRS asking a question about a return that you did not file, that you owe additional tax, have had a refund offset, or that you have collections actions against you for a return you did not file. 
  • You get a notice that an IRS online account has been created in your name, or that your existing account has been accessed or disabled by someone other than you. 

Other signs are related to employment, such as getting assigned an Employer Identification Number even though you didn’t request one, discovering that the IRS shows you received income from an employer you didn’t work for, or finding out that someone has claimed unemployment benefits in your name. Once again, both are signs of full-on identity theft where someone has assumed your identity. 

The IRS states that you should always respond to any IRS notice, particularly if you believe it is in error. If you’ve already contacted the IRS about an identity theft issue, you can reach them at 800-908-4490 for further assistance. 

Understand that if this form of identity theft occurs to you, it’s highly likely that the scammer has your Social Security number. Report that right away at https://www.ssa.gov/number-card/report-stolen-number if you think your number is being used by someone else.  

Your Social Security number ranks at the very top of your most valuable personal information. It unlocks everything from driver’s licenses, photo identification, employment, insurance claims, and of course taxes. Act immediately if you think it’s been compromised.  

Six ways you can protect yourself from tax fraud 

1) File your tax return A.S.A.P. 

One way to protect yourself from an identity thief from claiming a return in your name is to file yours before they do. As mentioned, many victims of identity theft find out they’ve been scammed when they receive an IRS notification that their tax claim has already been filed. Simply put, file early. 

2) Get an IRS PIN. 

Another way you can help prevent someone from filing a return in your name is to request a six-digit Identity Protection PIN (IP PIN). Once you receive am IP PIN, the IRS will use it to verify your identity when you file by paper or electronically. It’s good for one calendar year, and you can generate a new one each year for your account. You can request an IP PIN at: https://www.irs.gov/identity-theft-fraud-scams/get-an-identity-protection-pin 

Also be aware that scammers want your IP PIN as well. Phone calls, emails, or texts asking for it are scams. Outside of including it when filing your return, the IRS will never ask for it. If you are working with a tax professional, only provide it when it comes time to file. 

3) Monitor your credit and identity. 

Keeping tabs on your credit report and knowing if your personal information has been compromised in some way can help prevent tax fraud. Together, they can let you know if someone has stolen your identity or if you have personal info on the dark web that could lead to identity theft. 

Our credit monitoring service can keep an eye on changes to your credit score, report, and accounts with timely notifications and guidance so you can take action to tackle identity theft. 

Our identity monitoring service checks the dark web for your personal info, including email, government IDs, credit card and bank account info, and more—then provides alerts if your data is found on the dark web, an average of 10 months ahead of similar services.​ 

4) Get identity theft protection. 

If you fall victim to identity theft, having identity theft protection in place can provide significant relief, both financially and in terms of recovery. Our identity theft coverage & restoration support includes $1 million in funds if it’s determined that you’re a victim, which covers lawyer’s fees, travel expenses, and stolen funds reimbursement—while licensed recovery experts can help you repair your credit and identity. Considering the potential costs in both time and money, identity theft protection can speed and ease recovery. 

5) Remove your personal information from sketchy data broker sites. 

How’d that scammer get your phone number or email address anyway? Chances are, they pulled that information off a data broker site. Data brokers buy, collect, and sell detailed personal information, which they compile from several public and private sources, such as local, state, and federal records, plus third parties like supermarket shopper’s cards and mobile apps that share and sell user data. Moreover, they’ll sell it to anyone who pays for it, including people who’ll use that information for scams. 

You can help reduce those scam texts and calls by removing your information from those sites. Our Personal Data Cleanup scans some of the riskiest data broker sites and shows you which ones are selling your personal info. We also provide guidance on how you can remove your data from those sites and, with select plans, even manage the removal for you—while continuing to scan those sites in case your information reappears. 

6) Further protect yourself from online scams with online protection software. 

Comprehensive online protection software can help you on a number of counts. It warns you of suspicious links in emails and texts that could send you to malicious sites. It can further protect you from ransomware attacks, which IRS has also listed among its Dirty Dozen. And you can use it to monitor all your transactions across all your financial accounts in one place, which can spot any questionable activity. In all, tax time or otherwise, online protection software is always a strong security move. 

Stay Updated  

A little stress and uncertainty can enter the picture during tax season, and scammers know it. In fact, they prey upon it. They concoct their scams around those feelings, hoping that you’ll take the bait and act quickly without taking the time to scrutinize what they’re saying and what they’re really asking you to do.  

Keeping up to date on what the latest scams are, having a good sense of which ones get recycled every year, and putting protections in place can help you avoid getting stung by a scam at tax season.  

For yet more information, visit the IRS Tax Scam and Consumer Alert site at: https://www.irs.gov/newsroom/tax-scams-consumer-alerts  

Introducing McAfee+

Identity theft protection and privacy for your digital life


#Tax #Time #Prime #Time #Scammers #Stay #Safe #Paying #Taxes #IRS

ChatGPT: Panyipta blok obrolan paporit sadayana / panulis / panyipta carita pondok konyol anu popularitasna naék. 1 Kanyataanna, eusi AI-generate “masterpieces” (ku standar AI) ngingetkeun technologists sakuliah dunya. Bari téhnologi nu masih boga sababaraha kinks nu peryogi ironing kaluar, ChatGPT nyaeta ampir bisa nandingan manusa, panulis profésional.

Sanajan kitu, kawas lolobana hal alus, aktor goréng ngagunakeun téhnologi pikeun kapentingan sorangan. Cybercriminals ngajalajah sababaraha kagunaan AI chatbots pikeun nipu jalma pikeun nyerah privasi sareng artosna. Ieu sababaraha kagunaan anu pikaresepeun pikeun generator téks AI panganyarna sareng kumaha anjeun tiasa ngajagi diri anjeun-sareng alat anjeun-tina bahaya.

Aplikasi ChatGPT picilakaeun

Salian siswa jeung karyawan anu pondok dina waktu ngagunakeun ChatGPT pikeun ngalengkepan tugas nulis keur maranehna, scammers jeung penjahat cyber ngagunakeun program pikeun assignments teu jujur ​​sorangan. Ieu sababaraha kagunaan generator téks AI jahat:

  1. Malware. Malware sering gaduh siklus hirup anu pondok pisan: penjahat cyber bakal nyiptakeunana, nginféksi sababaraha alat, teras sistem operasi bakal nyorong apdet anu ngajagaan alat tina malware. Salaku tambahan, situs téknologi ngabéjaan pamiarsa ngeunaan ancaman malware anu muncul. Sakali masarakat umum sareng ahli cybersecurity sadar kana ancaman, poténsi ancaman gancang dileungitkeun. Tapi, GPT Chat mah pinter nulis kodeu jahat. Khususna, AI tiasa dianggo pikeun nyerat malware polimorfik, anu mangrupikeun jinis program anu terus-terusan mekar, sahingga hésé ngadeteksi sareng ngabela ngalawan.2 Tambih Deui, penjahat tiasa make ChatGPT nulis gunung kode jahat. Nalika manusa kedah istirahat pikeun tuang, bobo, sareng leumpang ngurilingan blok, AI henteu peryogi istirahat. Aya anu tiasa ngarobih operasi malwarena janten mesin kajahatan digital 24 jam.
  2. palsu dating profil. Lele, atanapi jalma anu nyiptakeun personas online palsu pikeun mamingan batur kana hubungan, mimiti ngagunakeun AI pikeun ngalengkepan aranjeunna. panipuan cinta. Sagampil pangarang malware ngagunakeun AI pikeun ngaronjatkeun produksi maranéhanana, scammers roman kiwari bisa ngagunakeun AI mun lighten beban gawé maranéhanana sarta nyobian ngajaga sababaraha profil dating sakaligus. Pikeun scammers anu peryogi inspirasi, ChatGPT tiasa ngarobih nada pesenna. Contona, scammers bisa ngabejaan ChatGPT nulis surat cinta atawa kontak charms. Ieu tiasa nyababkeun pangakuan cinta anu serius anu tiasa ngayakinkeun batur pikeun ngantepkeun informasi idéntifikasi pribadi (PII) atawa ngirim duit.
  3. tipu daya. Phisher ngagunakeun AI pikeun ningkatkeun kaulinan phishing maranéhanana. Phisher, mindeng dipikawanoh pikeun tata basa jeung éjahan goréng maranéhanana, ngaronjatkeun kualitas pesen maranéhanana jeung AI, nu jarang nyieun kasalahan redaksi. ChatGPT ogé ngartos paréntah nada, ku kituna phishers tiasa ningkatkeun urgency pesenna anu nungtut pamayaran langsung atanapi réspon nganggo kecap akses atanapi PII.

Kumaha Ngahindarkeun AI Text Generator Scams

Cara anu pangsaéna pikeun ngahindarkeun kabobodo ku téks anu dibangkitkeun AI nyaéta janten waspada anu luhur sareng marios unggal téks, email, atanapi pesen langsung anu anjeun tampa ti urang asing. Aya sababaraha tanda pesen anu ditulis ku AI. Salaku conto, AI sering nganggo kalimat pondok sareng nganggo deui kecap anu sami. Tambih Deui, AI bisa nyieun eusi nu nyebutkeun loba tanpa nyebutkeun loba pisan. Kusabab AI teu tiasa ngabentuk opini, pesenna sigana kirang beurat. Dina kasus scam roman, lamun jalma séjén refuses papanggih di jalma atawa video chat, mertimbangkeun megatkeun up.

Pikeun ningkatkeun katenangan pikiran anjeun, McAfee + pamungkas ngidinan Anjeun pikeun hirup pangalusna sarta paling yakin hirup online. Upami anjeun kantos janten korban panipuan maling identitas atanapi alat anjeun ngaunduh malware, McAfee bakal ngabantosan anjeun ngabéréskeun sareng pulih tina kajadian éta. Tambih Deui, jasa panyalindungan proaktif McAfee – sapertos ngawas kiridit biro triple, antipirus anu henteu terbatas, sareng perlindungan wéb – tiasa ngabantosan anjeun ngahindarkeun nyeri sirah!

1Jaringan Poc”Kuring nanya ka AI (ChatGPT) nulis carita pondok pikeun kuring sarta tétéla hébat

2CyberArk, “Ngobrol Kumaha Urang Ngawangun Malware Polymorphic

Tulisan ChatGPT: Alat Panganyarna Scammers muncul munggaran dina Blog McAfee.

#ChatGPT #Scammers #Alat #panganyarna

Penjahat cyber bakal salawasna ngusahakeun kas dina hal anu saé, sareng maén bal henteu aya pengecualian. Penipu online nuju nyiapkeun kaulinan gedé kalayan sagala jinis skéma anu dirarancang pikeun nipu anjeun sareng maok inpormasi pribadi anjeun – tapi anjeun gaduh sababaraha cara pikeun ngéléhkeun aranjeunna dina pertandinganna.

Kawas balanja libur, usum pajeg, komo deui-ka-sakola waktu, scammers ngamangpaatkeun acara taunan nu nyieun jalma neangan online pikeun poéna sarta informasi. Anjeun oge bisa ngawengku kaulinan utama jeung turnamén dina daptar éta.

Pikeun kaulinan gedé ieu sacara khusus, anjeun tiasa ngandelkeun sababaraha jinis panipuan anu muncul dina waktos taun ieu — panipuan tikét, panipuan barang dagangan, panipuan tohan, sareng ogé undian palsu. Éta sadayana aya dina campuran, sareng éta sadayana tiasa dihindari. Di dieu, urang bakal ngarecahna.

Awas pikeun scams tikét.

Kusabab dua minggu on, tikét ka buruan badag dina situs web ticketing resmi dijual pikeun $ 6.000 atawa leuwih, sarta éta pikeun disebut “korsi tawar”. Korsi premium dina garis mangkok 50-yard, dijual ku pangecér anu diverifikasi, didaptarkeun $ 20,000 pop atanapi langkung luhur.

Nalika tiket kaulinan ayeuna 100% mobile, éta henteu nyegah scammers nyobian ngalihkeun tikét palsu salaku deal nyata. Aranjeunna bakal ngajalajah palsu di seueur tempat online, sakapeung dina situs sapertos Craigslist lingkungan ramah anjeun.

Janten upami anjeun milarian tikét, pasti aya sababaraha hal anu kedah diperhatoskeun:

  • Anu mimiti, bet paling aman nyaéta mésér tikét ngaliwatan pasar NFL resmi kalayan jaminan tikét 100%.
  • Upami aya anu ngajual tikét fisik, éta mangrupikeun panipuan. Sakumaha didadarkeun di luhur, tiket ayeuna 100% mobile.
  • Upami anjeun ningali anu disebut nawaran pikeun tiket anu langkung handap tina harga ayeuna, anjeun tiasa bet éta ogé scam.
  • Tanda panipuan anu sanés nyaéta aya anu nyuhunkeun pamayaran ngalangkungan aplikasi pamayaran sapertos Venmo atanapi via transfer kawat atanapi bahkan crypto. Métode pamayaran ieu tiasa dianggo sapertos artos, hartosna upami anjeun mayar scammer sareng aranjeunna, artos anjeun bakal musna.

Waspada panipuan dagangan online.

Lamun rencanana pikeun ngarasakeun kaulinan ngadeukeutan ka imah, Anjeun bisa jadi di pasar pikeun dagangan-topi anyar, kaos oblong, kaos oblong, atawa sugan bodo keur hiburan mun anjeun host kaulinan di tempat anjeun. Kalayan sagala hype sabudeureun kaulinan, bakal aya scammers nyetel toko online palsu. Aranjeunna bakal ngiklankeun barang-barang anu dijual tapi moal dikirimkeun — masihan anjeun sababaraha dolar anu langkung hampang sareng tukang tipu anu gaduh inpormasi pamayaran anjeun, anu aranjeunna tiasa dianggo pikeun panipuan identitas.

Anjeun tiasa balanja aman ku sababaraha léngkah anu gampang:

Lengket retailers sah nu dipikawanoh online pikeun dagangan anjeun.

Éta tempat anu saé pikeun ngamimitian. Ngetik langsung alamat anu leres pikeun toko online anu terhormat sareng pangecér mangrupikeun cara utama pikeun ngahindarkeun scammers online. Dina kasus pangecér anu anjeun henteu terang pisan, Biro Usaha AS Langkung Saé (BBB) ​​naroskeun para pembeli pikeun ngalakukeun panalungtikanana sareng mastikeun yén pangecér aya dina kaayaan anu saé. BBB ngajadikeun eta gampang daptar retailers anjeun tiasa milarian ngan ku ngetikkeun ngaran maranéhanana.

Upami anjeun hoyong ngalakukeun sababaraha snooping tambahan, tingali alamat halaman wéb sareng tingali nalika diluncurkeun. Nganjang ka Internet Corporation pikeun Ngaran jeung Nomer Ditugaskeun (ICANN) di ICANN.org masihan anjeun pilihan pikeun milarian alamat wéb sareng ningali nalika diluncurkeun, sareng inpormasi sanésna ngeunaan saha anu ngadaptarkeunana. Sanaos situs anu nembé diluncurkeun sanés mangrupikeun indikator situs panipuan waé, situs anu gaduh catetan lagu anu terbatas tiasa ngareureuhkeun anjeun upami anjeun badé balanja di dinya-utamana upami aya kasempetan yén situs éta dirojong ku scammer.

Pilari ikon konci dina panyungsi anjeun nalika balanja.

Situs web anu aman ngamimitian alamatna ku “https”, sanés ngan ukur “http”. Tambahan “S” nangtung pikeun “aman,” nu hartina ngagunakeun protokol aman pikeun ngirimkeun informasi sénsitip kayaning kecap akses, nomer kartu kiridit, sarta kawas ngaliwatan internét. Ieu sering muncul salaku ikon padlock saeutik dina bar alamat browser anjeun, jadi pariksa deui pikeun eta. Upami anjeun henteu ningali kasalametan, langkung saé pikeun ngahindarkeun pameseran dina situs wéb éta.

Anggo metode pamayaran anu aman salain kartu debit anjeun.

kartu kiridit téh cara alus pikeun buka. Salah sahiji alesan nyaéta Fair Credit Billing Act, anu nawiskeun panyalindungan ngalawan biaya kartu kiridit curang ku masihan anjeun hak pikeun ngabantah biaya langkung ti $50 pikeun barang sareng jasa anu henteu pernah dikirimkeun atanapi ditagih teu leres. Perusahaan kartu kiridit anjeun tiasa gaduh kawijakan sorangan anu ogé ningkatkeun UU Penagihan Kredit Adil. Kartu debit henteu nampi panyalindungan anu sami dina hukum.

Meunang panyalindungan online.

Parangkat lunak panyalindungan online anu komprehensif bakal salamet ngalawan virus panganyarna, malware, spyware jeung ransomware serangan ditambah salajengna ngajaga privasi sarta identitas Anjeun. Sajaba ti éta, éta ogé bisa nyadiakeun panyalindungan sandi kuat ku generating tur otomatis nyimpen kecap akses kompléks pikeun ngajaga credentials Anjeun leuwih aman ti hacker jeung penjahat anu bisa nyoba maksakeun jalan kana rekening Anjeun. Sareng, khususna pikeun panipuan anu sumebar dina waktos taun ieu, panyalindungan online tiasa ngabantosan anjeun tina ngaklik tautan kana situs anu dipikanyaho atanapi disangka ngabahayakeun.

Pasang alungan? Jieun aman.

Hésé pikeun lalajo olahraga dinten ayeuna tanpa odds sareng garis stat muncul dina layar, sareng seueur iklan anu promosi tohan online. Upami anjeun nuju mikir ngeunaan ngajantenkeun hal-hal anu pikaresepeun kalayan sababaraha taruhan, émut sababaraha hal:

  • Dina Januari 2023, tohan online hirup sareng sah dina sababaraha bentuk di 32 Amérika Serikat, kalayan “langsung sareng sah” hartosna yén tohan olahraga ditawarkeun sacara sah ngalangkungan ritel sareng / atanapi buku olahraga online. Dimana anjeun tiasa bet na kumaha anjeun tiasa bet beda-beda ti kaayaan keur kaayaan, jeung peta interaktif ieu bisa némbongkeun detil keur anjeun.
  • Lengket kana aktip tohan mobile légal jeung situs di kaayaan anjeun, nu ogé bisa nempo via peta interaktif numbu di luhur. Sanajan kitu, teu heran yén situs tohan scam geus mecenghul. Numutkeun kana Better Business Bureau (BBB), aranjeunna nampi seueur keluhan. “Anjeun nempatkeun taruhan, sareng, mimitina, sadayana sigana normal. Tapi sakali anjeun nyobian kas kaluar winnings Anjeun, Anjeun manggihan yén anjeun teu bisa mundur Penny a. Scammers bakal nyieun alesan, “ceuk BBB.
  • Ogé, baca print rupa dina tawaran promo anu diémbarkeun ku situs tohan sareng aplikasi. Kasempetan anjeun parantos ningali iklan kalayan sagala jinis bonus pendaptaran khusus. BBB naroskeun jalma-jalma pikeun maca sacara saksama istilah sareng kaayaan di balik tawaran. Kahiji, “Pausahaan judi bisa ngawatesan aktivitas pamaké,” maksudnaaranjeunna tiasa ngabébaskeun akun sareng dana anu aya hubunganana sareng aranjeunna dina syarat sareng kaayaanana. Ogé, BBB ngingetkeun jalma ngeunaan tawaran promo anu sering diémbarkeun, “[L]kawas sagala pitch jualan, éta bisa deceiving. Pastikeun maca print rupa taliti.
  • Salian milih pilihan anu disatujuan ku nagara, tingali daptar BBB organisasi on BBB.org. Di dieu anjeun bisa meunangkeun snapshot tina rating BBB maranéhanana, keluhan Filed ngalawan aranjeunna, sarta respon organisasi kana keluhan maranéhanana lamun aranjeunna milih ngabales. Ngalakukeun sakedik maca di dieu tiasa janten pencerahan. Éta tiasa nunjukkeun ka anjeun keluhan naon anu biasana timbul, sareng kumaha organisasi-organisasi parantos ngatur éta.

Awas pikeun sweepstakes sareng hadiah palsu ogé.

Sapertos anu kajantenan unggal taun, anjeun bakal ningali jinis undian sareng hadiah anu nuju ka buruan, seueur anu sah. Sanajan kitu sakumaha maranéhna ngalakukeun, scammers bakal coba sarta campur ku launching promosi bogus sorangan. Tujuanana: misahkeun anjeun tina kas anjeun atanapi bahkan inpormasi pribadi.

Cara anu gancang pikeun ngahirupkeun panipuan ieu nyaéta pikeun nengetan promosi. Salaku conto, upami anjeun naroskeun anjeun nyayogikeun inpormasi bank anjeun pikeun ngirim hadiah artos anjeun, panginten éta mangrupikeun scam. Kitu ogé, upami promosi naroskeun anjeun mayar pikeun ngaku hadiah dina sababaraha bentuk atanapi anu sanés, kamungkinan aya anu ogé nyobian scam anjeun.

Gemblengna, hindarkeun promosi anu menta gantina, khususna upami éta artos atanapi inpormasi pribadi anjeun.

Ngarasakeun kaulinan badag Anjeun.

Kusabab nembe, sagala jinis panipuan bakal coba pikeun meunangkeun kana kaulinan badag taun. Sareng sababaraha naséhat anu pangsaéna pikeun ngahindarkeun éta henteu nyerah kana hype. Fraudsters ngamangsa scarcity, rasa urgency, sarta émosi repressed umum. Harepan maranéhanana nyaéta yén hal-hal ieu tiasa ngajantenkeun anjeun kirang kritis sareng langkung pas pikeun malire hal-hal anu sigana samar atanapi saé teuing pikeun leres. Tetep difokuskeun nalika anjeun balanja, nempatkeun taruhan, atanapi hoyong ngiringan kasenangan anjeun tina pertandingan ageung mangrupikeun sababaraha pertahanan pangsaéna anjeun ngalawan cheaters ayeuna, sareng dinten naon waé.


#Super #Scams #Eleh #Scammers #Online #Anu #Hayang #Bust #Kaulinan #Big #Anjeun

  • 1
  • 2