
Jake | JCyberSec_
@JCyberSec_
Followers
10K
Following
24K
Media
3K
Statuses
9K
Expert in Credential Phishing and Phishing Kit Research. Working in Cyber Security - Threat Intelligence #Phishing
UK
Joined August 2017
HMRC show the scale of these campaigns - Over 4,600 websites 📈. 🔨And yet they still get stood up, hundreds per day!.
We took down more than 4,600 Winter Fuel Payment scam websites in June, protecting taxpayers across the UK. ⛔. If you’re unsure if the contact you’ve received from us is genuine, use our online guidance to learn how to recognise and report scams. ⬇️.
0
0
1
The first domain: globeio-ph[.]com sits behind CloudFlare🌐. 👓We can look at the hostname pattern to allow us to find more linked domains. @urlscanio hunting: 'hostname_dashes:>0 AND hostname: globe*AND tags:apexdomain'
1
0
0
This is a SMS phishing campaign targeting GLOBE a telecoms provider in Philippines 🇵🇭📲📶. ⚠️The Smishing message is injected into the legitimate GLOBE short code flow💉. There are 2 domains seen but there are hundreds more. 📈. 🔎Let's go hunting in @urlscanio ⤵️
1
1
3
I wonder what triggered this public service announcement from the DWP 😁.
Be aware of scam text messages claiming to be from @dwpgovuk. Always be careful about links and never share personal or financial details . Only engage with trusted official sources. You can report suspicious messages to @actionfrauduk or search
1
0
2
@DWPgovuk This group is also targeting UK parking fines and penalty charges. ip:47.251.117.125 AS45102 🇨🇳
2
1
2
@DWPgovuk Some pivoting on the pattern and found another IP linked to this⤵️. 📈40 more hostnames. IP:49.51.135.75 AS132203🇨🇳
1
1
3
We are seeing an increase in QR code overlays in the UK📈🧑🏼💻. 💻Interesting domain linked to this campaign . 🌐/payzoneparking.info which redirected to 🌐/payzoneparking.contact. 🔥👀Second image is another campaign and the poster included the person apparently responsible
Please be careful with fake QR codes at car parks, or anywhere you need to pay. People are getting scammed out of thousands by entering their card details in
0
3
13
🛡️ Defending Against eM Client Abuse:. ✅ Disable IMAP/SMTP where possible.✅ Enforce MFA with app-specific passwords 🔑.✅ Monitor for unauthorized client connections.✅ Educate users on phishing risks 🎓. #CyberSecurity.
0
0
0