PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

Sophisticated UK Phishing Platform Shut Down by Law Enforcement

By Tom Nawrocki
April 18, 2024
in Analysts Coverage, Fraud & Security
0
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
credit card, phishing

credit card

After three years of operating with impunity, the massive phishing site LabHost has been shut down by UK law enforcement officials. The platform amassed at least $1 million since its inception by selling phishing kits to cybercriminals at rates averaging $249 a month.

Officials stated that LabHost was set up in 2021 to makeit easier for hackers to create fake websites aimed at tricking people into revealing email addresses, passwords, and bank details. Law enforcement had been investigating the service since June 2022. Investigators discovered more than 40,000 phishing domains used by 2,000 registered LabHost users. 

“With this many users and subscribers, this platform shows that it’s too easy to commit phishing attacks,” said Jennifer Pitt, Senior Analyst of Fraud and Security at Javelin Strategy & Research. “The internet provides enough anonymity to nearly eliminate the risk of getting caught. Companies like LabHost are essentially providing phishing as a service, much like legitimate companies use SaaS or PaaS, and step-by-step instructions, so even the least tech-savvy individual can now easily create profitable mass phishing campaigns.”

Getting Around Two-Factor Authentication

LabHost obtained 480,000 bank card numbers, 64,000 PIN numbers, and more than one million passwords. Maybe the most pernicious aspect of the operation was a tool called LabRat—a real-time phishing management tool that enabled hackers to capture two-factor authentication (2FA) tokens, bypassing what many people assumed were iron-clad account protections.

“This is terrifying,” Pitt said. “This means that cybercriminals can essentially adapt their techniques in real time to get around anyone’s hesitancy in opening malicious emails or visiting malicious sites. Security professionals, tech companies, and social media platforms must learn how to defend against this—by disallowing scripts behind emails, detecting, and preventing immediate changes to suspicious sites or emails. And by using biometrics and behavioral analytics, rather than just two-factor authentication.”

Inside the Investigation 

Europol, the law enforcement agency for the EU, worked with the U.S. Secret Service and Federal Bureau of Investigation in shutting down LabHost, as well as with authorities in countries as distant as Australia and Finland. Some reports indicated that the phishing operations were focused on attacks in North America. Europol also said they got assistance from partners in the private sector, including Microsoft, Trend Micro, Chainalysis, Intel 471, and The Shadowserver Foundation.

“This case demonstrates the coordination needed to successfully dismantle cybercrime operations,” Pitt said. “It is not an easy feat.”

Protecting Yourself

How can consumers protect themselves from these far-flung, sophisticated operations? Pitt recommends:

  • If you are not expecting an email/text/social media post, do not click on the link or provide any personal information.
  • Remember that scammers attack the most vulnerable targets and the ones that will bring in the most ROI, the highest victim pool, and the largest payday.
  • Before entering sensitive information on a company site, do your own research on that company. It is a red flag if there have been complaints, or the reviews all seem positive.
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: CybercrimeFraud Detectionphishing attacks

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    Proof That Fintechs Are Disrupting Banks:

    In Today’s Fintech Market, Value Is Everything

    August 30, 2024
    DFAST test

    Dodd-Frank Stress Tests: Good News for Now, Watch for a Rugged 2025

    August 29, 2024
    Real-Time Payments Adoption in the U.S. Requires a Pragmatic Approach, ISO 20022 messaging challenges

    ISO 20022 Brings the Challenge of Standardization to Swift Participants

    August 28, 2024
    open banking small banks credit unions

    Open Banking Can Be an Equalizer for Small Banks and Credit Unions

    August 27, 2024
    Payments 3.0

    Achieving Seamless and Holistic Transactions with Payments 3.0

    August 26, 2024
    embedded finance, ecommerce, consumers reduce spending

    Quality Over Quantity: Key Priorities in the Payment Experience

    August 23, 2024
    bots fraud

    Next-Generation Bots Pose Formidable Fraud Challenge

    August 22, 2024
    crypto custodians

    Crypto Custodians Could Bring a Revolution in Holding Assets

    August 21, 2024

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Digital Assets & Crypto
    • Debit
    • Digital Banking
    Menu
    • Commercial
    • Credit
    • Digital Assets & Crypto
    • Debit
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    Menu
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    Menu
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2024 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result