Threats Tagged 'scams'
View all threats tagged with 'scams'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'scams'
Click on any threat for detailed analysis and mitigation recommendations
AI tools are enabling cybercriminals to create sophisticated Black Friday scams, including realistic phishing emails, cloned websites, and fake social media ads. Common tactics involve impersonating trusted brands like Amazon and Temu, offering unrealistic discounts on luxury goods, and exploiting shoppers' urgency. AI-enhanced scams are harder to detect, blending seamlessly with legitimate retail behavior. Key warning signs include suspicious sender addresses, unusual URLs, missing website information, and pressure tactics. To stay safe, shoppers should verify sender domains, inspect links, question dramatic discounts, use secure payment methods, and shop directly on official websites. Awareness and caution are crucial defenses against these evolving AI-powered threats during the holiday shopping season. Join the discussion | AlienVault OTX General | 11/15/2025, 04:44:45 UTC Added: 11/17/2025, 09:47:29 UTC |
Following Hurricane Melissa's devastation in Jamaica in October 2025, cybercriminals launched a series of online scams exploiting the disaster. These scams included phishing campaigns, fake charity websites, and fraudulent financial-relief portals impersonating legitimate aid organizations. Attackers used social engineering tactics to prey on victims' compassion and urgency, often deploying scams within hours of the hurricane. A prominent example involved a cryptocurrency donation site with fabricated transaction data and static images to appear authentic. Numerous fraudulent domains soliciting cryptocurrency donations were identified. While primarily targeting individuals, these scams undermine trust in digital charity platforms and complicate legitimate relief efforts. European organizations involved in disaster relief, financial services, or public awareness campaigns should be vigilant. The threat is medium severity due to social engineering reliance and no direct system exploitation. Mitigation requires enhanced awareness, domain monitoring, and collaboration between cybersecurity entities and relief organizations. Join the discussion | AlienVault OTX General | 11/14/2025, 02:36:40 UTC Added: 11/14/2025, 11:37:02 UTC |
VexTrio, a cybercriminal organization, has been exposed for running a vast online fraud empire involving scams, spam, and malicious apps. Their operations include fake dating sites, cryptocurrency scams, and deceptive apps that have been downloaded millions of times. VexTrio uses sophisticated traffic distribution systems to deliver their scams, often infringing on well-known brands and celebrities. They also operate extensive spam networks, using lookalike domains of reputable email services. The group's activities extend beyond their core fraud business, with connections to seemingly legitimate enterprises in various industries. Despite operating for 15 years, VexTrio has managed to avoid legal consequences, highlighting the challenges in combating such large-scale online fraud operations. Join the discussion | AlienVault OTX General | 08/12/2025, 18:54:49 UTC Added: 08/12/2025, 19:33:06 UTC |
Hazy Hawk, a sophisticated threat actor, exploits abandoned cloud resources of high-profile organizations through DNS hijacking. By identifying and taking over dangling CNAME records pointing to unused cloud services, they create malicious URLs on reputable domains. These URLs lead users to scams and malware via traffic distribution systems. Hazy Hawk employs layered defenses, including domain obfuscation and content theft from legitimate websites, to avoid detection. They also leverage push notifications to maintain persistent access to victims. The attacks have impacted government agencies, universities, and major corporations worldwide since at least December 2023. This campaign highlights the importance of proper DNS management and the growing sophistication of cybercriminals in the affiliate marketing space. Join the discussion | AlienVault OTX General | 05/21/2025, 16:09:09 UTC Added: 05/21/2025, 17:23:02 UTC |
Showing 1 to 4 of 4 results