Sunday, April 20, 2025

Hackers using Telegram bot to pull off large-scale phishing scams: Report

Date:

Share post:

Shillong, November 26: Threat actors are using a malicious Telegram bot called “Telekopye” to pull off large-scale phishing scams, a new report has said.

According to security researcher Radek Jizba from ESETResearch, Telekopye is a highly sophisticated tool that allows criminals to create convincing phishing websites, emails, SMS messages, and more.

Neanderthals, a group of threat actors, have managed to present themselves as a legitimate company, enabling them to function within a structured framework.

Aspiring members are recruited through underground forums and are granted access to specific Telegram channels, where they can communicate with other members and monitor ongoing operations.

The Neanderthals’ ultimate goal is to commit one of three types of scams — seller, buyer, or refund.

Seller scams involve duping unsuspecting victims, dubbed Mammoths, into buying nonexistent items. Buyer scams involve Neanderthals impersonating buyers in order to trick merchants (also known as Mammoths) into disclosing financial information.

Refund scams occur when Neanderthals mislead Mammoths into believing they are offering a refund only to deduct the same amount of money again, the report showed.

The Neanderthals use a variety of strategies to carry out these scams successfully.

When attempting a seller scam, for example, they prepare additional photos of the non-existent item in case the Mammoths request more information. They also manipulate internet images to make reverse image searches more difficult.

Buyer scams necessitate careful planning and research.

The Neanderthals choose their targets based on factors such as gender, age, experience in online marketplaces, ratings, reviews, completed trades, and the type of items they sell, which allows them to tailor their approach and increase the chances of success, the report said.

In order to entice Mammoths, the Neanderthals also engage in real estate fraud, creating fictitious apartment listings.

They remain anonymous by using VPNs, proxies, and TOR, making it difficult for authorities to track them down. (IANS)

Related articles

Andhra Pradesh issues notification to fill posts of 16,347 teachers

Amaravati, April 20: The Andhra Pradesh government on Sunday released a notification for conducting a 'Mega District Selection...

Three killed as torrential rain, landslides wreak havoc in J&K’s Ramban

Jammu, April 20:At least three people were killed by a heavy hailstorm and multiple landslides in Jammu and...

Over 33,000 challans issued for vehicles without high-security number plates in Gurugram

Gurugram, April 20: The Gurugram Traffic Police intensified a crackdown on traffic violations, issuing 33,757 challans between April...

Murshidabad violence: Prime suspect in man-son murder to be produced in court today

Kolkata, April 20:Ziaul Haque, alias Chacha, the key conspirator in the murder of a man and his son...