How do scammers spoof Yandex services and steal people's money?

April 5, 2024  19:13

Scammers are actively creating phishing websites that mimic the design of the "Yandex.Services" platform to target Russians. This was reported by the press service of the company "Security Code," as reported by "Gazeta.Ru."

Most often, scammers target professionals who have a professional account on "Profi.ru." Initiating a conversation, the scammer at some point suggests moving the communication to a messenger and then, after agreeing on a service, proposes to make payment not from card to card, but through the "Yandex.Services" platform.

"This approach is supposed to reduce the suspicion of potential victims because using a specialized platform is considered more reliable than a direct transfer from card to card. However, in reality, the link redirects to a phishing site that only mimics 'Yandex.Services,'" said Konstantin Gorbunov, an expert in network threats and a web developer from "Security Code."

Upon visiting the site, a form appears to enter bank card details, including an SMS code allegedly required to make payment for the service. Scammers push users to quickly enter their information, claiming that time to receive funds is limited. If a user enters their banking information on such a site, the scammer gains access to the account credentials in the online bank.

"Over the past few months, the use of this scheme has grown fivefold, according to the most conservative estimates. In reality, users with professional accounts on sites like 'Profi.Ru' regularly encounter it," Gorbunov added.


 
 
 
 
  • Archive