Advertisement
Sunday, Dec 05, 2021
Outlook.com
Outlook.com

Hackers targeting people with fake Zoom HR, payroll video meetings

Hackers targeting people with fake Zoom HR, payroll video meetings
outlookindia.com
1970-01-01T05:30:00+0530
Hackers targeting people with fake Zoom HR, payroll video meetings

New Delhi, April 28 (IANS) Cybersecurity researchers at UK-based Sophos on Tuesday revealed hackers are now targeting people across the world with sending emailed with links to fake Zoom HR and payroll discussion video meetings to steal your personal and other credentials.

Scammers have turned to employment worries as their latest lure for Zoom phishing scams and researchers from the ''Naked Security'' team at SophosLabs witnessed several examples of such phishing emails, with subject line saying "You are invited to join the q2 meeting".

"This is a reminder that your scheduled Zoom meeting with Human Resources and Payroll Administrative Head will start in few minutes. Your presence is crucial to this meeting and equally required to commence this Q1 perfomance review meeting. Join this Live Meeting," says one such bogus Zoom message.

"The subject lines, message layout and meeting descriptions vary slightly, but the basic idea is the same," revealed the cybersecurity team.

There is the link in the Zoom message and once you click it, you will be directed to a portal with a login window that looks similar to video meet app Zoom.

"The phishers probably don''t care what password you enter as long as it''s a valid one they can use on one of your accounts, but you''ll notice they''ve put the suggestion text Email Address Password into the password field instead of just Password as you see on Zoom''s page," explained Sophos.

"Remember that access to your email account is likely to be worth a lot more to the crooks than your Zoom account would be, for the important reason that your email account is probably the way you go about doing password resets for many of your other accounts".

Whatever you enter as password on the fake site, you will end up redirected to a genuine and vaguely relevant Zoom help page, as though something went wrong and you should simply try again.

"In this way, the crooks don''t need to simulate a successful login or to pretend that your login failed – they just leave you in one of those ''I wonder what happened there'' moments where your inclination is simply to go back and start over," said the researchers.

By the time you see the genuine Zoom help page, the email address and the password you entered have already been posted to the crooks instead of sent to Zoom.

"If someone else is inviting you to a meeting, you shouldn''t need to login to Zoom first, given that they''re hosting. Don''t login after clicking links in emails," advised the team.

Zoom was yet to comment on the report.

Enable two-factor authentication if you can. Zoom supports 2FA, based on one-time codes generated by an app on your phone, and most email services do, too.

"If you were phished, change your password at once. Even if you fall for a phish at first, many phishes are obvious after you put in your password because you don''t end up where you should and the deception stands out," said the Sophos team.

--IANS

na/


Disclaimer :- This story has not been edited by Outlook staff and is auto-generated from news agency feeds. Source: IANS

More from Website

Monetary Policy Meet: Will RBI Change Its Key Rates? Know What Experts Say

Monetary Policy Meet: Will RBI Change Its Key Rates? Know What Experts Say

The RBI Governor-headed Monetary Policy Committee is scheduled to meet during December 6-8, 2021. The decision of the rate-setting panel would be announced on Wednesday.

PM Lauds Neeraj Chopra For Motivating Young Students On Sports, Fitness

PM Lauds Neeraj Chopra For Motivating Young Students On Sports, Fitness

Prime Minister Narendra Modi on Sunday hailed Olympic gold medalist Neeraj Chopra for motivating young students at a school, saying such efforts will increase curiosity towards sports and exercising.

DMRC Plans To Install More Anti-Smog Guns To Curb Pollution At Its Sites

DMRC Plans To Install More Anti-Smog Guns To Curb Pollution At Its Sites

With the national capital battling high pollution levels, the Delhi Metro has planned to install more anti-smog guns at its project sites, officials said on Sunday.

More from Outlook Magazine

Diary | I Want To Fly: The Unrealised Dreams Of An Ex-Banker And Mother

Diary | I Want To Fly: The Unrealised Dreams Of An Ex-Banker And Mother

Kaveri Mishra, an ex-banker and a mother, turned into a full-time home-maker four years back. What holds her back every time she wants to return to her career?

India Needs Kabir Today More Than Any Other Time

India Needs Kabir Today More Than Any Other Time

The Mahindra Kabira Festival at Guleria Ghat in Varanasi was a gentle reminder of the Sufi saint’s centrality to India’s syncretism

Death Of Three Dalit Girls And A Story Of Pain And Humiliation

Death Of Three Dalit Girls And A Story Of Pain And Humiliation

Family from UP village forced to run around to complete post-death official paperwork and even last rites.

Advertisement

Outlook Newsletters

Advertisement
Advertisement