Cyber Emergency? For Urgent Support Call 844.40.PHISH (74474)
Let PeopleSec help keep you updated on trending threats. Our ThreatAlert Newsletter provides expert insight into threats affecting your security online.
Scam phishing involving the impersonation of the Internal Revenue Service is on the rise. The IRS has issued several reports in regards to these scams, warning citizens and providing tips on how to recognize these;
5 ways to recognize these scams, the IRS does not:
Call demanding immediate payment, nor call about taxes owed without first having mailed you a bill.
Demand that you pay taxes without giving you the opportunity to question or appeal the amount they say you owe.
Require you to use a specific payment method for your taxes, such as a prepaid card.
Ask for credit or debit card numbers over the phone.
Threaten to bring in local police or other law-enforcement groups to have you arrested.
Email Scam
The latest threat involves fake tax bills tied to the Affordable Care Act. If you receive such an email, rest assured that the IRS does not initiate contact via email. This new phish/fraud attempt, is a fake CP-2000 notice allegedly from the IRS. These fraudulent notices usually ask victims to pay a balance or penalty due in association with the Affordable Care Act.
Phone scam
Many of us are all too familiar with this type of scam. Someone will call and demand payment, often claiming that you owe back taxes. During these calls, the victim is threatened with arrest if they do not comply with the demands. If you talk to the scammer long enough, it will become clear through their poor English and illogical demands that they do not work for the IRS.
In Summation
Many if not most supposed contacts from the IRS are fraudulent. Recognize the indications of such scams and do not become a victim. Furthermore, with so many foreign criminals focusing on American citizens and organizations, it is important to always be cautious whenever anyone requests sensitive information.
https://peoplesec.org/files/2016/09/tax-scams.jpg11311698patrickhttps://storage.pardot.com/189082/1668175372UeLz7nOr/peoplesec_pentesting_Logo_300x138.pngpatrick2016-10-17 19:53:072017-02-22 15:26:58Scam claiming to be the IRS, Phone & Email
Major companies are under constant attack, hackers are not just hurting the corporations, but are are extracting and exploiting sensitive consumer information. Recently, American Express was the subject of such a phishing attack. Criminals obtained customer information and impersonated American Express in a sophisticated manner.
The Scam
With this new scam, American Express users receive e-mails which appear to be from the company. For example, the return address might be listed as . The e-mail will advise recipients to protect themselves from phishing and fraud by creating an “American Express Personal Safe Key (PSK).” The key is explained as a measure through which to optimize account security. Readers click the “Create a PSK” link, and are redirected to a fake American Express login page with the url http://amexcloudcervice.com/login/. While some people might note the spelling error in the url, many individuals miss it and proceed.
What Information Do The Phishers Request?
Once individuals input their login credentials on the page, they are presented with more pages requesting information. The information requested includes:
credit card numbers
card expiration dates
CVV codes
social security numbers
birth dates
mothers’ maiden names
mothers’ birth date
date of birth
e-mail addresses
The interface in which the information request appears, looks similar to the real American Express website. However minor the differences, some people might detect fraud given that American Express would not need to request information that it already has.
Can Phishers Be Caught?
Unfortunately, shutting down the phishers who produce and profit from these types of scams is challenging. Additionally, other criminals who discover the original phishing system can utilize its interface and various coding devices to launch their own phishing attack.
How To Protect Yourself
Despite the fact that discovering and dismantling the efforts of phishers can be challenging, there are several things that AmEx users can do to keep themselves safe. Here are some safety suggestions to follow:
When you receive an e-mail from a credit card company, call them immediately. Use the number listed on the back of your card.
Don’t ever log on to a sensitive page by clicking links in a document, webpage, or message. Instead, get in the habit of typing the link.
If you click on a link from a suspicious e-mail, shut down your browser. Next, disconnect the computer from the Internet. Then run a scan for malware.
Don’t open an e-mail on a device which does not use security software. Also make sure that the security software you utilize is offering automatic, regular updates.
Summation of the Phishing Attack
While criminals are becoming increasingly sophisticated and savvy in their phishing practices, managing to defraud an increasing number credit card users. However, you can protected your information and capital by staying alert and utilizing various security measures. Refer to the information found in this article to ensure that you are implementing the safety strategies necessary to detect and avoid a phishing scam.
https://peoplesec.org/files/2016/09/amex-phish.jpg414620Alexhttps://storage.pardot.com/189082/1668175372UeLz7nOr/peoplesec_pentesting_Logo_300x138.pngAlex2016-09-29 20:57:192017-02-22 19:36:52American Express Users: Be on Alert
Scam claiming to be the IRS, Phone & Email
/0 Comments/in Threat-Alert /by patrickScam phishing involving the impersonation of the Internal Revenue Service is on the rise. The IRS has issued several reports in regards to these scams, warning citizens and providing tips on how to recognize these;
5 ways to recognize these scams, the IRS does not:
Email Scam
The latest threat involves fake tax bills tied to the Affordable Care Act. If you receive such an email, rest assured that the IRS does not initiate contact via email. This new phish/fraud attempt, is a fake CP-2000 notice allegedly from the IRS. These fraudulent notices usually ask victims to pay a balance or penalty due in association with the Affordable Care Act.
Phone scam
Many of us are all too familiar with this type of scam. Someone will call and demand payment, often claiming that you owe back taxes. During these calls, the victim is threatened with arrest if they do not comply with the demands. If you talk to the scammer long enough, it will become clear through their poor English and illogical demands that they do not work for the IRS.
In Summation
Many if not most supposed contacts from the IRS are fraudulent. Recognize the indications of such scams and do not become a victim. Furthermore, with so many foreign criminals focusing on American citizens and organizations, it is important to always be cautious whenever anyone requests sensitive information.
American Express Users: Be on Alert
/0 Comments/in Threat-Alert /by AlexMajor companies are under constant attack, hackers are not just hurting the corporations, but are are extracting and exploiting sensitive consumer information. Recently, American Express was the subject of such a phishing attack. Criminals obtained customer information and impersonated American Express in a sophisticated manner.
The Scam
With this new scam, American Express users receive e-mails which appear to be from the company. For example, the return address might be listed as . The e-mail will advise recipients to protect themselves from phishing and fraud by creating an “American Express Personal Safe Key (PSK).” The key is explained as a measure through which to optimize account security. Readers click the “Create a PSK” link, and are redirected to a fake American Express login page with the url http://amexcloudcervice.com/login/. While some people might note the spelling error in the url, many individuals miss it and proceed.
What Information Do The Phishers Request?
Once individuals input their login credentials on the page, they are presented with more pages requesting information. The information requested includes:
The interface in which the information request appears, looks similar to the real American Express website. However minor the differences, some people might detect fraud given that American Express would not need to request information that it already has.
Can Phishers Be Caught?
Unfortunately, shutting down the phishers who produce and profit from these types of scams is challenging. Additionally, other criminals who discover the original phishing system can utilize its interface and various coding devices to launch their own phishing attack.
How To Protect Yourself
Despite the fact that discovering and dismantling the efforts of phishers can be challenging, there are several things that AmEx users can do to keep themselves safe. Here are some safety suggestions to follow:
Summation of the Phishing Attack
While criminals are becoming increasingly sophisticated and savvy in their phishing practices, managing to defraud an increasing number credit card users. However, you can protected your information and capital by staying alert and utilizing various security measures. Refer to the information found in this article to ensure that you are implementing the safety strategies necessary to detect and avoid a phishing scam.