Spike in phone phishing attacks

Several sources are reporting a spike in automatic telephone calls warning folks about fraud on their credit card and bank accounts. The robocalls direct customers to call a phone number to “verify” their account information. These voice phishing attacks, sometimes called “vishing,” aren’t new but I figured it’s worth a warning.

walletThe Thurston County Sheriff’s Office reports that cons have spoofed calls from Evergreen Direct Credit Union and Our Community Credit Union. The message states that a customer’s “debit card has been deactivated due to a billing error.” It then prompts cardholders to enter their 16 digit debit card number and PIN.  If a customer falls for this, they hear that their account is now "activated." Meanwhile, cons in Spain are pilfering their dough.

Washington Post blogger writes, “It may be hard to imagine how many people actually fall for these scams, but you might be surprised.”

In March 2008, he wrote about a complex vishing attack that targeted customers of multiple credit unions. In this case, customers received a text message instead of a robocall. In just a few weeks, the “phishers sent millions of text messages, and records from that server show that roughly 4,400 people called the fake bank phone number as directed. Out of those, 125 people entered their full credit/debit card number, expiration and PIN.”


Posted by Kristin Alexander All Consuming Blog Moderator at 06/25/2010 12:37:16 PM | 

Quimper Credit Union was used in a scam this morning. I got a robo call at 5:30 or so telling me my Quimper debit card was no longer valid and to re-instate press 1. I hung up. I heard many many others today got the same call or similar.
Posted by: Dana Fickeisen ( Email ) at 7/13/2010 2:53 PM

I just got one, so this is apparently still happening. It sure would be nice if our government shifted their resources from groping [EDITED PER AGO BLOG COMMENT POLICY] in airports to stopping these overseas criminals. If the FBI can raid the manufacturing plants of CD duplicators in foreign countries under the direction of the RIAA and MPAA, then surely they can find these debit card phishers in foreign countries.
Posted by: George ( Email ) at 3/10/2011 9:24 AM

