FraudHIGH

Fraud - Surge in Fake Shipment Tracking Scams Detected

IMInfosecurity Magazine
🎯

Basically, scammers are tricking people with fake delivery messages to steal their information.

Quick Summary

A global surge in fake shipment tracking scams is alarming researchers. These scams exploit consumers, leading to stolen personal and financial information. Awareness and preventive measures are essential to combat this threat.

What Happened

Researchers from Group-IB have reported a significant increase in fake shipment tracking scams worldwide. These scams are taking advantage of the booming global e-commerce market, which sees over 161 billion parcels shipped annually. In 2025, the number of detected campaigns skyrocketed, with researchers identifying over 100 unique fake shipment tracking campaigns each month. Notably, peaks occurred in June and December, with 218 and 208 campaigns, respectively.

The scams often utilize phishing tactics, misleading victims into thinking they have missed a delivery. Attackers use SMS messages that appear legitimate, claiming failed deliveries and prompting victims to click on malicious links. This surge in activity is alarming, especially as these scams are linked to Darcula, a Chinese-language phishing-as-a-service platform.

Who's Being Targeted

The primary targets of these scams are consumers who frequently engage in online shopping. As e-commerce continues to grow, so does the potential for scammers to exploit unsuspecting customers. The fake shipment tracking scams often employ lookalike domains that mimic trusted brands, making it difficult for victims to distinguish between legitimate and fraudulent communications.

Additionally, the attackers use tactics like Sender ID spoofing to make it appear as though the messages are coming from trusted sources. This increases the likelihood that victims will engage with the phishing links, putting their personal and financial information at risk.

Signs of Infection

Victims of these scams may notice several signs indicating they have been targeted. Common indicators include receiving unsolicited SMS messages about missed deliveries, especially if they have not ordered anything recently. Clicking on these links can lead to fraudulent websites designed to harvest sensitive information.

Once on these sites, victims may be prompted to enter personal details or make small payments to supposedly update their delivery information. If you find yourself receiving unexpected delivery messages, it's crucial to verify their authenticity before taking any action.

How to Protect Yourself

To combat the rise of fake shipment tracking scams, both individuals and businesses must take proactive measures. For individuals, it's essential to be cautious when receiving unexpected delivery notifications. Always verify the sender and check for any red flags in the message.

Businesses can also play a pivotal role in mitigating these scams. They should educate customers about ongoing phishing attempts and strengthen their domain security protocols. Implementing tools to track fake domains and providing verification options for tracking numbers can significantly reduce the success rate of these scams. Collaboration with mobile operators to filter out suspicious SMS patterns is also recommended to protect consumers effectively.

🔒 Pro insight: The rapid increase in fake shipment scams highlights the need for enhanced consumer education and robust brand protection strategies to counteract phishing threats.

Original article from

Infosecurity Magazine

Read Full Article

Related Pings

HIGHFraud

Phishing - Security Firm Executive Targeted in Attack

A C-level executive at Outpost24 was targeted in a sophisticated phishing attack. The attackers used advanced techniques to bypass security measures. This incident highlights the evolving threat landscape in cybersecurity.

SecurityWeek·
HIGHFraud

Fraud Prevention - Fingerprint Launches AI-Powered Insights

Fingerprint has launched its MCP Server, revolutionizing fraud prevention with real-time AI insights. This tool connects AI assistants to device intelligence, enhancing fraud analysis efficiency. With 99% of companies facing AI-enabled fraud losses, this innovation is crucial for timely responses.

Help Net Security·
HIGHFraud

AI Face Models - New Recruitment Scams Uncovered

Scammers are recruiting AI models for fraudulent video calls. This alarming trend exploits young women, leading to scams and potential human trafficking. Awareness is key to prevention.

Wired Security·
HIGHFraud

Investment Scams - Fake Scandal Clips on Facebook Exposed

Bitdefender has uncovered a series of investment scams on Facebook using fake news and celebrity impersonation. Over 26,000 ads targeted victims worldwide, raising significant concerns about online safety. Meta is taking steps to combat these fraudulent activities, but users must stay alert.

Help Net Security·
HIGHFraud

SocksEscort Botnet Taken Down in Major Fraud Operation

A global operation has taken down the SocksEscort botnet, which compromised thousands of routers for fraud. Victims included individuals and businesses, with millions lost. Authorities seized domains and servers, freezing millions in cryptocurrency.

SC Media·
MEDIUMFraud

Fake Shipment Tracking Scams Surge in MEA Region

Fake shipment tracking scams are on the rise in the MEA region, targeting online shoppers and small businesses. Scammers create urgency to trick victims into providing personal information. Stay vigilant and verify sources to protect yourself.

Group-IB Blog·