Saudi Press

Saudi Arabia and the world
Thursday, Apr 25, 2024

WhatsApp attack: 'Tens of thousands' fall victim to Russian voice message ambush

WhatsApp attack: 'Tens of thousands' fall victim to Russian voice message ambush

A phishing attack designed to look like a WhatsApp voice message has already compromised tens of thousands of email accounts.

The tried-and-tested attack method appears to be a harmless email containing a link to a WhatsApp voice message.

But anyone clicking on the link is taken to a malicious website that attempts to install a virus on the victim’s device.

Cyber security researchers at California-based Armorblox report that nearly 28,000 mailboxes – across both Gmail and Microsoft’s Outlook program have been impacted by the ambush.

More worryingly, the company says the email attack comes from a valid Russian-based domain.

The experts say the ‘mailman.cbddmo.ru,’ domain is associated with an organisation known as the ‘Center for Traffic Safety of the Moscow Region’ – which is a part of the Russian Ministry of Internal Affairs.

The phishing email contains the subject line ‘New Incoming Voicemessage’ and is supposedly from a WhatsApp Notifier function.

The fake WhatsApp email containing a dangerous link


The security researchers say that, although it looks authentic, it’s actually a trick.

‘Upon clicking the “Play” link in the email, recipients were redirected to a page that attempts to install a trojan horse JS/Kryptik,’ explained Lauryn Cash from Armorblox.

‘This is a malicious obfuscated JavaScript code embedded in HTML pages that redirects the browser to a malicious URL and implements a specific exploit.’

‘The Armorblox research team was able to observe this attack on multiple customer tenants across Office 365 and Google Workspace. The potential total attack exposure was close to 28K mailboxes.’

Targeting WhatsApp users and zeroing in on voice messages make sense given the staggering amount of users the service has.


What is phishing, and why is it called phishing?
A Royal Mail scam has been making the rounds.

Phishing is the term applied to kind of electronic communications scam that aims to obtain private information, or to spread harmful malware, via the recipient.

The phenomenon takes its name from fishing due to the parallels in unaware targets being reeled in by bait.

The term was coined around 1996, according to Computer World, as internet scammers began using e-mail lures, setting out hooks to fish for passwords and financial data from the sea of Internet users.

Hackers commonly replace the letter f with ph, a nod to the original form of hacking known as phone phreaking.


Every day on WhatsApp, over 7 billion voice notes are sent back and forth as voice messages provide a quick alternative to a phone call.


Voice messages are especially preferred by older family members who want to avoid typing or even communicating in another language.

Obviously, if you see this email (or one that looks like it) land in your inbox, don’t click the link.

Newsletter

Related Articles

Saudi Press
0:00
0:00
Close
Reports in Gaza: 5 dead from the impact of aid packages dropped by the USA
Apple warns against drying iPhones with rice
China Criticizes US for Vetoing UN Ceasefire Resolution in Gaza
In a recent High Court hearing, the U.S. argued that Julian Assange endangered lives by releasing classified information.
The U.S. vetoed a U.N. Security Council resolution calling for a temporary ceasefire in Gaza, instead proposing its own six-week ceasefire plan contingent upon the release of all hostages held by Hamas
Prince William Urges End to Gaza Conflict
Saudi Arabia ranks first in UN index for e-government services in MENA
Israel has gone ‘beyond self-defence’ in Gaza, says Labour’s Streeting
EU Calls for Immediate Ceasefire in Gaza Conflict
Israel Records 20% Drop In GDP, War In Gaza Is The Reason
Saudi Arabia's FDI Inflows Grow with New International Standards
Venture Capitals Power Up Across MENA Region
Saudi Arabia Introduces Terms for 30-Year Income Tax Exemption for Multinational Companies
Saudi FM: Establishing Palestinian state is only pathway for Mideast stability
Russian opposition leader Alexey Navalny has died at the Arctic prison colony
Elon Musk's Starlink Gets License For Israel, Parts Of Gaza
Influencers Exploit X Platform for Profit Amidst Israel-Gaza Conflict
PM Modi Announces Opening Of New CBSE Office In Dubai
International Criminal Court's Chief "Deeply Concerned" By Rafah Bombing
January Funding for MENA Startups Totals $86.5 Million
Saudi Arabia accelerates digital economy growth through Nvidia partnership
Indian female military officers commend Saudi Arabia's progress and women's empowerment
Israel unveils tunnels underneath Gaza City headquarters of UN agency for Palestinian refugees
Israel deploys new military AI in Gaza war
Egypt threatens to suspend key peace treaty if Israel pushes into Gaza border town, officials say
Israel Utilizes AI Military Technology in Gaza Conflict
Saudi Arabia Warns Of A "Humanitarian Catastrophe" If Israel Moves On Rafah
China Warns Iran to Halt Houthi Attacks or Damage Trade Ties
US University To Shut Qatar Campus Due To "Heightened Mideast Instability"
Iran-backed hackers interrupt UAE TV streaming services with deepfake news
Facebook and Instagram Ban Iran's Supreme Leader
Finnish Airline, Finnair, is voluntarily weighing passengers to better estimate flight cargo weight
U.S. Secretary of State Blinken: The Israelis underwent dehumanization on 7.10, this does not give them the right to do this to others.
Defense Technology Showcase Held in Riyadh
Saudi Arabia’s non-oil exports rise 2.5% to $6bn in November 2023: GASTAT
UK Bans Misleading "Zero Emissions" Claims for Electric Cars
Gaza's Teen Inventor Sparks Light in Displacement
Netanyahu Rejects Ceasefire Proposal, Insists On Total Victory Over Hamas
Guterres appoints independent UNRWA review panel
Private Sector Employment Hits Record High with Over 11 Million Employees in January
Rolls-Royce Executive Encourages Saudi Women to Tap into Their Inner 'Superhero' for Success in Defense Industry
Saudi Arabia launches National Academy of Vehicles and Cars
Saudi Tourism Minister Reveals Plan for 250,000 New Hotel Rooms by 2030
SAR to more than double eastern network passenger capacity with new trains deal
Saudi Arabia Enhances National Defense with New Partnerships
Saudi Aramco Maintains Arab Light Crude Pricing to Asia for March
NEOM Establishes New York Office to Support Investors
Saudi Wealth Fund Draws in Over $25 Billion Worth of Investments in Three Years, Al-Rumayyan Reveals
ZATCA Cautions Against Scammer Schemes
INTRA Defense Technologies inaugurates drone factory in Riyadh
×