‘Hack-for-hire’ firms from India targeting business leaders globally: Google | HT Tech

‘Hack-for-hire’ firms from India targeting business leaders globally: Google

Google’s TAG division in its report also pointed out a surge in state-sponsored or government-backed attacks in the first quarter of the year.

By: HT TECH
| Updated on: May 28 2020, 09:34 IST
Google's TAG publishes its quarterly report on government-backed hacking and disinformation
Google's TAG publishes its quarterly report on government-backed hacking and disinformation (pixabay)
Google's TAG publishes its quarterly report on government-backed hacking and disinformation
Google's TAG publishes its quarterly report on government-backed hacking and disinformation (pixabay)

The Threat Analysis Group (TAG), Google's division that tracks cybercrimes around the world, on Wednesday published its first quarterly report.

In its report, the TAG highlighted a rise of new activity from “hack-for-hire” firms, many based in India. These firms target users through Gmail accounts that spoof the World Health Organisation (WHO).

According to the TAG report, these accounts are targeting business leaders across consulting, healthcare, and financial services. The targeted regions include the US, the UK, India, Bahrain, Cyprus, Canada, and Slovenia, among others.

ALSO READ: Microsoft warns of massive Covid-19 themed email phishing scam

In these phishing emails, hackers lure users into signing up for notifications from the WHO on the latest updates on the Covid-19 pandemic. The emails feature malicious links which look identical to the official WHO website.

Here's what the fake WHO Newsletter sign-up prompt looks like
Here's what the fake WHO Newsletter sign-up prompt looks like (Google)
image caption
Here's what the fake WHO Newsletter sign-up prompt looks like (Google)

“The sites typically feature fake login pages that prompt potential victims to give up their Google account credentials, and occasionally encourage individuals to give up other personal information, such as their phone numbers,” said the TAG in the report.

ALSO READ: Hackers are impersonating Zoom, Microsoft Teams, Google Meet for phishing scams

According to a CNET report, the “hack-for-hire” firms have been around for quite some time. Most of them are based out of Israel and some Arab nations. This is however for the first time India has been singled out for such kind of phishing campaigns, the report said.

The TAG in its report acknowledged a surge in COVID-related hacking and phishing attempts. It pointed out that such hacking attempts are made by both government-backed and commercial hackers.

In its quarterly bulletin, the TAG further detailed coordinated influence operation campaigns on Google platforms and measures it had taken thus far. For instance, it took down 3 advertising accounts, 1 AdSense account, and 11 YouTube channels in March. These accounts were associated with a “coordinated influence operation linked to India.”

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on Whatsapp channel,Twitter, Facebook, Google News, and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 28 May, 09:34 IST
NEXT ARTICLE BEGINS