{"id":242749,"date":"2016-08-25T03:49:09","date_gmt":"2016-08-25T03:49:09","guid":{"rendered":"http:\/\/citifmonline.com\/?p=242749"},"modified":"2016-08-25T03:49:09","modified_gmt":"2016-08-25T03:49:09","slug":"instagram-scam-preys-on-bank-followers","status":"publish","type":"post","link":"https:\/\/citifmonline.com\/?p=242749","title":{"rendered":"Instagram scam preys on bank followers"},"content":{"rendered":"<p class=\"story-body__introduction\">A new report suggests thousands of Instagram users are falling for a scam that targets followers of financial institutions on the image-sharing platform.<\/p>\n<p>So I began following Bank of America\u2019s official account to see what would happen. Sure enough, the first message arrived in moments.<\/p>\n<p>\u201cHey are you interested ib [sic] making some extra cash.&#8221;<\/p>\n<p>To you and I, this message &#8211; which, let\u2019s be honest, lacks any real salesmanship &#8211; seems highly dubious.<\/p>\n<p>But be it because of gullibility, recklessness, or, most likely, desperation, others have been lured in.<\/p>\n<p>ZeroFox, a security company specialising in social media, says it has found more than two million public Instagram posts that push this kind of scam, known as money-flipping.<\/p>\n<p>The term refers to a con in which criminals convince their victims to hand over access to funds with the promise that they will multiply their value via a trick they know, in return for a share of the profits. They then abscond with the sum, leaving their target out of pocket.<\/p>\n<p>The firm estimates that for every such account Instagram closes, three more appear in its place.<\/p>\n<p>Messages like the one I received begin a to-and-fro chain of messages, which can cost the banks dear &#8211; they often end up compensating affected customers and swallowing the cost of the fraud.<\/p>\n<p>Such is the level of concern, ZeroFox told the BBC that one of its clients, a major US bank, had put in place a six-person team to deal with money-flipping on Instagram after reportedly losing more than $1m to the crime.<\/p>\n<p class=\"story-body__crosshead\"><strong>\u2018110% legit&#8217;<\/strong><\/p>\n<p>In one variation, designed to reassure the victim, the scammers say it doesn\u2019t matter if the account is empty or even in negative credit. In these cases, the criminal uses the bank details to cash a fraudulent cheque and then deposits the cash before the bank spots the ruse.<\/p>\n<p>Great lengths are gone to in order to look and sound genuine. As well as profiles full of images of flashy watches and piles of cash, scammers concoct elaborate back stories. After I followed the Chase Bank&#8217;s account, one told me: \u201cI\u2019m a claim manager for Chase Bank but I have access to other banks.<\/p>\n<figure class=\"media-landscape has-caption full-width\"><span class=\"image-and-copyright-container\"><img loading=\"lazy\" decoding=\"async\" class=\"responsive-image__img js-image-replace\" src=\"http:\/\/ichef.bbci.co.uk\/news\/624\/cpsprodpb\/1279F\/production\/_90897657_instass.jpg\" alt=\"Instagram conversation\" width=\"976\" height=\"800\" data-highest-encountered-width=\"624\" \/><\/span><figcaption class=\"media-caption\"><span class=\"media-caption__text\">One of the scammers claimed to work for Chase Bank<\/span><\/figcaption><\/figure>\n<p>\u201cWhat I do is find people who has an active bank account and the account can be negative 0 and what happen is after that I\u2019ll look into the computer and fine some extra cash that someone hasn\u2019t claimed and I\u2019ll transfer it into your account.\u201d<\/p>\n<p>For his trouble, all he asked was that of the $15,000 (\u00a311,350) I\u2019d make, he\u2019d like to take $3,000. In another message, I was assured it was \u201c110% legit\u201d.<\/p>\n<p class=\"story-body__crosshead\"><strong>\u2018Spreading scams&#8217;<\/strong><\/p>\n<p>ZeroFox recommends institutions use machine learning technology to weed out the problem. That\u2019s not a surprising conclusion given that it is in the business of selling precisely that technology, and is using the report to advertise its services.<\/p>\n<p>But even with that caveat in mind, the findings make interesting reading, not least because of the claim that the Facebook-owned service has a particular problem.<\/p>\n<p>&#8220;It\u2019s really easy to private message someone on Instagram,&#8221; explains John Seymour, a data scientist at ZeroFox.<\/p>\n<p>&#8220;Someone can initiate a direct message without having followed the original person.&#8221;<\/p>\n<figure class=\"media-landscape has-caption full-width\"><span class=\"image-and-copyright-container\"><img loading=\"lazy\" decoding=\"async\" class=\"responsive-image__img js-image-replace\" src=\"http:\/\/ichef.bbci.co.uk\/news\/624\/cpsprodpb\/F168\/production\/_90900816_a2f45f8c-c05c-4548-87c0-d5f4c8479591.jpg\" alt=\"Instagram\" width=\"976\" height=\"549\" data-highest-encountered-width=\"624\" \/><\/span><\/figure>\n<p>Of the two million posts it analysed, 80% were more than 45 days old, suggesting few were being reported or detected.<\/p>\n<p>Hashtags connected to 37 different financial institutions were being targeted by 1,386 unique accounts created by criminals.<\/p>\n<p>Instagram, which did not see the report ahead of its publication, says scams are \u201cpretty low volume\u201d on the network. But it added that it would look at the report\u2019s claims and recommendations.<\/p>\n<p>&#8220;Generally speaking, it&#8217;s easy for security firms do a one-off analysis and build a model to catch a specific kind of abuse,\u201d Facebook&#8217;s security spokeswoman Melanie Ensign explains.<\/p>\n<p>&#8220;The challenge is doing it in a robust way so that it still works after bad actors change their approach a few times &#8211; and it&#8217;s almost impossible for external parties to prove their approach is this robust.&#8221;<\/p>\n<p class=\"story-body__crosshead\"><strong>Military opportunists<\/strong><\/p>\n<p>The scammers typically operate many accounts.<\/p>\n<figure class=\"media-landscape has-caption full-width\"><span class=\"image-and-copyright-container\"><img loading=\"lazy\" decoding=\"async\" class=\"responsive-image__img js-image-replace\" src=\"http:\/\/ichef-1.bbci.co.uk\/news\/624\/cpsprodpb\/175BF\/production\/_90897659_76744273-218b-42ae-a85d-564d24b95d78.jpg\" alt=\"Instagram\" width=\"976\" height=\"549\" data-highest-encountered-width=\"624\" \/><\/span><\/figure>\n<p>Some are used to approach potential victims, others to boost the illusion that their scam works.<\/p>\n<p>&#8220;We saw these accounts engaging with each other and promoting and saying &#8216;This is legit!&#8217; &#8211; and then trying to build up the credibility of specific scam posts,\u201d explains Evan Blair, ZeroFox\u2019s co-founder.<\/p>\n<p>The firm says many of the accounts involved make references to the US military &#8211; an intentional, predatory tactic.<\/p>\n<p>&#8220;Scammers are taking advantage of that predisposition to be willing to entertain offers that seem too good to be true,\u201d Mr Blair said, referring to the types of offers and services companies give exclusively to military families.<\/p>\n<p>&#8220;They say, \u2018Yeah, this makes sense,\u2019 because they\u2019re used to that.&#8221;<\/p>\n<p>One account I saw shows a woman posing in a military uniform.<\/p>\n<p>In a direct message, \u201cshe&#8221; told me she was a \u201cUS army official&#8221;, adding: &#8220;I help people who need it.\u201d<\/p>\n<p>After telling her I was reporter writing about scams, she replied: \u201cI believe you sweety.&#8221;<\/p>\n<p class=\"story-body__crosshead\"><strong>Location clues<\/strong><\/p>\n<p>It\u2019s unlikely that I was having a conversation with an attractive model\/soldier named Gina. But I was clearly talking to someone &#8211; the interactions were too human, too varied, to be some kind of automated bot or script.<\/p>\n<p>As ever with cybercrime, it\u2019s extremely difficult to pin down the source. But there are some clues.<\/p>\n<p>ZeroFox attempted to turn the tables on scammers by getting them to click on links that would log their internet addresses.<\/p>\n<p>\u201cWe were able to flip the switch and social engineer them right back,\u201d says Philip Tully, a ZeroFox researcher.<\/p>\n<p>&#8220;We saw different IP addresses coming out of Chicago, some out of Detroit and some out of California.&#8221;<\/p>\n<p>However, IP addresses can be masked in order to evade detection &#8211; meaning the real locations of the scammers is difficult to prove.<\/p>\n<p>ZeroFox says it has not passed its research to Instagram or law enforcement agencies. But it is providing it to its financial institution clients to follow up if they choose.<\/p>\n<p>&#8211;<\/p>\n<p>Source: BBC<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A new report suggests thousands of Instagram users are falling for a scam that targets followers of financial institutions on the image-sharing platform. So I began following Bank of America\u2019s official account to see what would happen. Sure enough, the first message arrived in moments. \u201cHey are you interested ib [sic] making some extra cash.&#8221; [&hellip;]<\/p>\n","protected":false},"author":14,"featured_media":242750,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jnews-multi-image_gallery":[],"jnews_single_post":[],"jnews_primary_category":[],"jnews_social_meta":[],"jnews_override_counter":[],"footnotes":""},"categories":[106],"tags":[],"class_list":["post-242749","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology"],"_links":{"self":[{"href":"https:\/\/citifmonline.com\/index.php?rest_route=\/wp\/v2\/posts\/242749","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/citifmonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/citifmonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/citifmonline.com\/index.php?rest_route=\/wp\/v2\/users\/14"}],"replies":[{"embeddable":true,"href":"https:\/\/citifmonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=242749"}],"version-history":[{"count":0,"href":"https:\/\/citifmonline.com\/index.php?rest_route=\/wp\/v2\/posts\/242749\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/citifmonline.com\/index.php?rest_route=\/wp\/v2\/media\/242750"}],"wp:attachment":[{"href":"https:\/\/citifmonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=242749"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/citifmonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=242749"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/citifmonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=242749"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}