New Scam: WhatsApp Voice Mail

Thanks to our friends over at KnowBe4, we’ve been alerted to a new scam that has been spotted in Ireland, and that you or your users may receive in their inbox in the near future. It is important to go ahead and educate yourself and your employees now on what to look for!

ESET Ireland has warned: “A dangerous email spam message is dropping into Irish mailboxes, pretending to come from WhatsApp. Its subject says ‘Missed Voicemail’ and the content of the mail just says ‘New voice message’ and has a link called ‘Play'”. Clicking on the link will begin the download of a trojan that redirects the browser to a malicious URL or implements a specific exploit that can cause ransomware and other malware infections.

whatsapp

Criminal hackers are constantly trying to trick people into clicking on links or open attachments that they did not ask for. Do not click on the “play” button. If you do, your computer will get infected with malware which can cause your identity to get stolen, or all your (or your organization’s) files held for ransom.

Here’s a general safety rule: Instead of clicking a link in an unverified email claiming it’s from WhatsApp (or any other social media), log in to your WhatsApp account the standard way and check for any messages from there.

We recommend sending the following to your users:

There is a new email scam that looks like it comes from WhatsApp and claims that it has a voicemail for you. Do not click the play button. If you do, your computer will get infected with malware which can cause your identity to get stolen, or all your (or your organization’s) files held for ransom. Instead, you should log in to your WhatsApp account the normal way and check for messages there. If you receive this email, alert your IT department immediately. Always remember – Think Before You Click!

Thanks to KnowBe4 for always keeping us alert and secure!


Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s