Biraj ShresthaBiraj Shrestha2 months ago
WEBSCAM

trying to scam

I got a phishing email from fake Khalti. Then I got a phishing SMS from fake ConnectIPS. Funny thing is, It's been a while I have not logged in to both the services. It makes me wonder, how did they figure that out? Was it a double co-incidence? Or is there a major data breach/leak among fintech providers in Nepal!!! For those wondering how did I detect both? In Khalti's case, email ID was fake. In Connect IPS's case, website asked to visit was fake.

351 comment

Comments (1)

  • Amrit Ghale
    Amrit Ghale2 months ago

    In the case of ConnectIPS, i can surely say it is an ongoing mass SMS phishing scam campaign. the who and whereabouts of the attacker is unknown but as soon as the malicious domain is taken down, they buy a new domain that looks similar to the real one, from a different domain hosting company. Malicious bulk SMS are sent using lost phone numbers or spoofing other SMS senders. I'm suspecting they must have gotten targets from public data brokers that sell phone numbers.

    2

Similar Posts