Sunday 2 May 2021, Poradnik bezpieczeństwa

Package seized by customs fraud

Lost24

Niebezpiecznik portal warns against text messages about the parcel being detained by the customs services.


The text of the message does not change: “Your package has been seized by the customs services: [LINK]”. However, messages are sent from different numbers and contain different links.


According to Niebezpiecznik, the link redirects you to a website claiming to be a courier company. Clicking on the link leads to the download of a malicious application on your Android device. Cybercriminals have one goal - to steal money from a bank account. According to the portal dobreprogramy, it is probably a FluBot Trojan. The goal of the malware is to hijack passwords and logins to the online banking application. The transaction confirmation codes sent via SMS are also intercepted, thanks to which cybercriminals are able to perform any actions on the victim’s banking application. The trojan is able to access your payment card data and PayPal account details.


The attack does not apply to people with iOS devices.