New Chinese Fake Marketplace e-Commerce Phishing Campaign Spoofs Thousands of Websites of Popular Retail Brands, Abuses Online Payment Services, Security Firm Finds
(www.silentpush.com)
from Hotznplotzn@lemmy.sdf.org to cybersecurity@infosec.pub on 04 Jul 07:47
https://lemmy.sdf.org/post/37950353
from Hotznplotzn@lemmy.sdf.org to cybersecurity@infosec.pub on 04 Jul 07:47
https://lemmy.sdf.org/post/37950353
cross-posted from: lemmy.sdf.org/post/37950350
- [Security firm] Silent Push Threat Analysts followed a tip from Mexican journalist Ignacio Gómez Villaseñor about a threat actor targeting “Hot Sale 2025,” an annual sales event similar to “Black Friday” in the U.S.
- The team pivoted from that Mexico-centric campaign into thousands of websites that broadly targeted a more global audience with abundant waves of fake marketplace scams.
- We identified a private technical fingerprint associated with this infrastructure, which contains Chinese words and characters to strongly indicate that the developers of this network are from China.
- Our analysts observed this threat actor group building multiple phishing websites with pages spoofing well-known retailers, including Apple, Harbor Freight Tools, Michael Kors, REI, Wayfair, and Wrangler Jeans.
- The threat actor has also been caught abusing online payment services, including MasterCard, PayPal, and Visa, as well as payment security techniques such as Google Pay, across the campaign’s network of scam websites.
[…]
threaded - newest