A phishing scam stealing users’ credit card knowledge and mimicking the recently discovered Netflix original site.
Scammers have created a fake website that is almost the same as the popular video streaming platform. They take advantage of the popularity of the Netflix logo to get borrowed login credentials and primary billing points for unsuspecting users.
According to the Cloud Office Armorblox security platform, scammers start by sending Netflix users a phishing email that would possibly be presented as an original email from Netflix support. The email indicates that there is a challenge with the main billing points and that your subscription will be suspended if they do not click on the link provided in the email.
Once unsuspecting users click on the mail, they are directed to one that bears a striking resemblance to the original streaming platform.
Explaining the nature of the email Armorblox said: “Unlike spray-and-pray email fraud attempts, this email was expressly created and sent to trigger the required response. The email title was ‘Notice of Verification Failure’, which isn’t exactly how a Netflix email sounds, but still ‘robotic’ enough for readers to assume that it came from Netflix Support. The email language and topic was intended to induce urgency owing to its punitive nature (cancellation of the Netflix subscription). The call to action – Click here to update your information – is simple and effective. The email claims that the reader’s subscription will be cancelled if they don’t update their details within 24 hours, furthering the sense of urgency,”
The scammers have gone the extra mile to include a captcha stage to make it look even more authentic. The users are then asked to provide their login credentials, credit card details and billing information. After all the data is entered, the scammers actually redirect users to the original Netflix website. This way they do not even realise that they have fallen prey to cybercriminals.
Coronavirus Essential | ICMR rethinks its ambitious deadline, hopes for COVID-19 vaccine by 2020 end