Categories: Mobile Attacks

WhatsApp scam – Advertising Netflix Subscription free for a year

[jpshare]These days it winds up plainly normal as we see a huge increase with Scam message in Whatsapp, here is another WhatsApp scam – Advertising Netflix Subscription free for a year.

For this new Whatsapp trick, fraudsters are utilizing this outstanding TV mark as the trap to spread the attack.

Initial Scam Message

If you have received the message even from a reliable contact don’t click or don’t share the link.

The message has all the earmarks of being from Netflix, however, have close look it demonstrates a shortened URL which takes clients to different sites not identified as Netflix.

Also, the image appears in different languages Spanish, English, and Portuguese.

Spanish
English
Portuguese

Multilingual Fake page

User’s on clicking the link will take to the page that not belongs to Netflix as like the malicious URL the multilingual.

Another inquisitive truth is that the page has the ability to recognize the language of the device and can change its language consequently.

This malicious page guarantees that if the request was sent to 10 individuals then Netflix service will be accessible free for a year.

The victim is redirected to pages that falsely claim that they are on the “last stride” to accomplish enactment when is truly happening that they are taking information from clients according to ESET blog post.

Mitigations

  • If you already shared with anyone, ESET advising users to contact them and let them know about the incident.
  • Did you provide your telephone number? Check wit your service provider that you are not added to any premium service.
  • If any application downloaded from the URL, uninstall them immediately.

Also Read

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Hackers Exploiting DNS Poisoning to Compromise Active Directory Environments

A groundbreaking technique for Kerberos relaying over HTTP, leveraging multicast poisoning, has been recently detailed…

1 hour ago

New Android Malware Exploiting Wedding Invitations to Steal Victims WhatsApp Messages

Since mid-2024, cybersecurity researchers have been monitoring a sophisticated Android malware campaign dubbed "Tria Stealer,"…

1 hour ago

500 Million Proton VPN & Pass Users at Risk Due to Memory Protection Vulnerability

Proton, the globally recognized provider of privacy-focused services such as Proton VPN and Proton Pass,…

1 hour ago

Arcus Media Ransomware Strikes: Files Locked, Backups Erased, and Remote Access Disabled

The cybersecurity landscape faces increasing challenges as Arcus Media ransomware emerges as a highly sophisticated…

2 hours ago

Hackers Impersonate Top Tax Firm with 40,000 Phishing Messages to Steal Credentials

Proofpoint researchers have identified a marked increase in phishing campaigns and malicious domain registrations designed…

2 hours ago

Cybercriminals Exploit Public-Facing IIS, Apache, and SQL Servers to Breach Gov & Telecom Systems

A recent investigation by Unit 42 of Palo Alto Networks has uncovered a sophisticated, state-sponsored…

2 hours ago