{"id":17119,"date":"2019-12-06T13:10:03","date_gmt":"2019-12-06T21:10:03","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2019\/12\/06\/news-10855\/"},"modified":"2019-12-06T13:10:03","modified_gmt":"2019-12-06T21:10:03","slug":"news-10855","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/12\/06\/news-10855\/","title":{"rendered":"Fake Elder Scrolls Online developers go phishing on PlayStation"},"content":{"rendered":"<p><strong>Credit to Author: Christopher Boyd| Date: Fri, 06 Dec 2019 20:29:26 +0000<\/strong><\/p>\n<p>A player of popular gaming title <a href=\"https:\/\/www.elderscrollsonline.com\/en-gb\/home\" target=\"_blank\" rel=\"noopener noreferrer\">Elder Scrolls Online<\/a> recently took to Reddit to <a href=\"https:\/\/www.reddit.com\/r\/elderscrollsonline\/comments\/e1o08n\/got_this_from_a_playstation_private_message\/\" target=\"_blank\" rel=\"noopener noreferrer\">warn users of a phish via Playstation messaging.<\/a> This particular phishing attempt is notable for ramping up the pressure on recipients\u2014a classic <a href=\"https:\/\/blog.malwarebytes.com\/cybercrime\/2018\/08\/social-engineering-attacks-what-makes-you-susceptible\/\" target=\"_blank\" rel=\"noopener noreferrer\">social engineering technique<\/a> taken to the extreme.<\/p>\n<h3>A terms of service violation?<\/h3>\n<p>In <a href=\"https:\/\/en.wikipedia.org\/wiki\/Massively_multiplayer_online_role-playing_game\" target=\"_blank\" rel=\"noopener noreferrer\">MMORPG<\/a> land, the scammers take a theoretically plausible deadline, crunch it into something incredibly short and ludicrous, and go fishing for the catch of the day. Behold the pressure-laden missive from one fake video game developer to a player:<\/p>\n<p><a href=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext.png\" data-rel=\"lightbox-0\" title=\"\"><img loading=\"lazy\" decoding=\"async\" data-attachment-id=\"41377\" data-permalink=\"https:\/\/blog.malwarebytes.com\/social-engineering\/2019\/12\/fake-elder-scrolls-online-developers-go-phishing-on-playstation\/attachment\/scamtext\/\" data-orig-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext.png\" data-orig-size=\"516,606\" data-comments-opened=\"1\" data-image-meta=\"{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}\" data-image-title=\"scam text\" data-image-description=\"\" data-medium-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext-255x300.png\" data-large-file=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext-511x600.png\" class=\"aligncenter size-medium wp-image-41377\" src=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext-255x300.png\" alt=\"scam text\" width=\"255\" height=\"300\" srcset=\"https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext-255x300.png 255w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext-511x600.png 511w, https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/scamtext.png 516w\" sizes=\"auto, (max-width: 255px) 100vw, 255px\" \/><\/a><\/p>\n<p style=\"text-align: center;\">Click to enlarge<\/p>\n<p>The text of the phishing message reads as follows:<\/p>\n<blockquote>\n<p><em>We have noticed some unusual activity involving this account. To be sure you are the rightful owner, we require you to respond to this alert with the following account information so that you may be verified,<\/em><\/p>\n<p><em>&#8211; Email address<\/em><\/p>\n<p><em>&#8211; Password<\/em><\/p>\n<p><em>_ Date of birth on the account<\/em><\/p>\n<p><em>In response to a violation of these Terms of Service, ZeniMax may issue you a warning, suspend or restrict certain features of the account. We may also immediately terminate any and all accounts that you have established. Temporarily or permanently ban the account, device, and\/or machine from accessing, receiving, playing or using all or certain services.<\/em><\/p>\n<p><em>Under the current circumstances, you have 15 minutes from opening this alert to respond with the required information. Failure to do so will result in an immediate account ban, permanently losing access to our servers on all platforms, along with all characters<span class=\"Apple-converted-space\">\u00a0 <\/span>associated with the account in question. Please be sure to double check your information and spelling before sending.<\/em><\/p>\n<\/blockquote>\n<p>Yes, you read that correctly\u2014a grand total of 15 whole minutes to panic email scammers back with your login details. But what exactly happened to warrant such an immediate need for verification? The vagueness of the fake message may actually work in the scammer\u2019s favour here because MMORPG titles are often rife with cheating\/botting\/scamming, so developers are typically light on information when genuine infractions occur.<\/p>\n<h3>FOMO: oh no<\/h3>\n<p>FOMO, <a href=\"https:\/\/www.verywellmind.com\/how-to-cope-with-fomo-4174664\" target=\"_blank\" rel=\"noopener noreferrer\">fear of missing out<\/a>, is the lingering fear that not only have they never had it so good, but the \u201cthey\u201d in question almost certainly isn\u2019t you.<\/p>\n<p>Marketers and sales teams exploit this ruthlessly, with sudden sales and the promise of things you can\u2019t do without. Breaking hotel deals on websites can\u2019t help but tell you how many people have the same deal open RIGHT NOW.<\/p>\n<p>Video games, especially online titles and MMORPGs, take a similar approach, offering in-game purchases but rotating items slowly, leading to a form of digital scarcity that encourages transactions because gamers don\u2019t know if the item will be seen again.<\/p>\n<p>Inventory space, character slots, and many more crucial elements are at a premium, and people invest serious money to make the most out of their experience. With this in mind, people tend to be particular about keeping their account secure.<\/p>\n<p>As a result, scammers are hugely effective at turning FOMO on its head, giving people a nasty dose of \u201cfear of something about to happen or else.&#8221; Had a spot of bother with <a href=\"https:\/\/blog.malwarebytes.com\/awareness\/2019\/10\/europol-ransomware-remains-top-threat-in-iocta-report\/\" target=\"_blank\" rel=\"noopener noreferrer\">ransomware<\/a>? No sweat, pay us in Bitcoin and you\u2019ll get your documents back\u2014as long as you do it within three days. Fake <a href=\"https:\/\/blog.malwarebytes.com\/scams\/2019\/08\/the-lucrative-business-of-bitcoin-sextortion-scams\/\" target=\"_blank\" rel=\"noopener noreferrer\">sextortion email<\/a> claiming they\u2019ve recorded you watching pornography? Yeah, that\u2019ll be $1,000 in 48 hours or we&#8217;ll release the footage and tell all your friends and family.<\/p>\n<h3>&#8220;It wasn&#8217;t me, what did I do?&#8221;<\/h3>\n<p>You\u2019ll often see people banned<span class=\"Apple-converted-space\">\u00a0 <\/span>from titles complaining on forums that all access has been revoked, with no explanation why besides a \u201cYou are banned, sorry\u201d type message. Quite often they won\u2019t even be able to follow up with support because the<span class=\"Apple-converted-space\">\u00a0<\/span>ban also locks them out of being able to raise a ticket.<span class=\"Apple-converted-space\">\u00a0<\/span><\/p>\n<p>Scammers know they can skip some of the fake explanation shovel work as nobody <em>ever<\/em> receives a detailed explanation. This is to obscure the inner workings of fraud detection systems: If they spilled the beans, malicious individuals would adjust their behaviour accordingly. That\u2019s a tricky situation for developers to tightrope walk across, but it is possible in the form of additional security measures. Does Elder Scrolls Online meet the challenge?<\/p>\n<p>Sadly, the game doesn\u2019t allow players to lock down accounts with a third-party authenticator. There\u2019s no mobile app, and there are zero authentication sticks. What they do have is <a href=\"https:\/\/help.elderscrollsonline.com\/app\/answers\/detail\/a_id\/453\/~\/can-i-add-extra-security-like-an-authenticator-to-my-account%253F\" target=\"_blank\" rel=\"noopener noreferrer\">a few password suggestions<\/a> and some information about their <a href=\"https:\/\/help.elderscrollsonline.com\/app\/answers\/detail\/a_id\/8611\" target=\"_blank\" rel=\"noopener noreferrer\">one-time password system<\/a>.<\/p>\n<p>It\u2019s certainly good that the password system exists, and one would hope it would spring into life in this case, but players would probably appreciate a little more control over their security choices, as well as a few safety nets when things go wrong.<\/p>\n<p>By comparison, the hugely popular Black Desert Online offers <a href=\"https:\/\/blackdesert.zendesk.com\/hc\/en-us\/articles\/360000535909-2-Step-Verification-FAQ\" target=\"_blank\" rel=\"noopener noreferrer\">Google authenticator two-factor authentication (2FA)<\/a>. Blizzard has you covered with their <a href=\"https:\/\/us.battle.net\/support\/en\/article\/24520\" target=\"_blank\" rel=\"noopener noreferrer\">own authenticator<\/a>. Guild Wars offers both <a href=\"https:\/\/www.guildwars2.com\/en\/news\/a-new-way-to-protect-your-account\/\" target=\"_blank\" rel=\"noopener noreferrer\">an authenticator app and SMS lockdowns<\/a>.<\/p>\n<h2>Some simple rules to follow<\/h2>\n<p>Regardless of which game you play, remember:<\/p>\n<ul>\n<li>Don\u2019t reuse passwords<\/li>\n<li>Make the password as strong as the system allows<\/li>\n<li>Tie your account to a locked-down email address, ideally also secured with 2FA<\/li>\n<li>Never, ever send login details to an email or text message asking for them until you&#8217;ve authenticated the message by hovering over the email address and links to see if they are legitimate, Googling to see if there are known scams or phishes associated with the company in question, and reading over the instructions carefully.<\/li>\n<li>If you&#8217;re still in doubt whether an email is legitimate or not, err on the side of caution and go directly to your account&#8217;s website\/login page. If there is a need to verify or change credentials, you can change them there.<\/li>\n<\/ul>\n<p>Phishing is one of the oldest cyberattack methods on the book, yet it remains a favorite of scammers because, quite simply, it works. Don&#8217;t be fooled by FOMO, high-pressure deadlines, or too-good-to-be-true deals.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/social-engineering\/2019\/12\/fake-elder-scrolls-online-developers-go-phishing-on-playstation\/\">Fake Elder Scrolls Online developers go phishing on PlayStation<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n<p><a href=\"https:\/\/blog.malwarebytes.com\/social-engineering\/2019\/12\/fake-elder-scrolls-online-developers-go-phishing-on-playstation\/\" target=\"bwo\" >https:\/\/blog.malwarebytes.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Christopher Boyd| Date: Fri, 06 Dec 2019 20:29:26 +0000<\/strong><\/p>\n<table cellpadding='10'>\n<tr>\n<td valign='top' align='center'><a href='https:\/\/blog.malwarebytes.com\/social-engineering\/2019\/12\/fake-elder-scrolls-online-developers-go-phishing-on-playstation\/' title='Fake Elder Scrolls Online developers go phishing on PlayStation'><img src='https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2019\/11\/shutterstock_705666280.jpg' border='0'  width='300px'  \/><\/a><\/td>\n<\/tr>\n<tr>\n<td valign='top' align='left'>We take a look at a pressure-filled phishing attempt sent to players of the Elder Scrolls Online video game.<\/p>\n<p>Categories: <\/p>\n<ul class=\"post-categories\">\n<li><a href=\"https:\/\/blog.malwarebytes.com\/category\/social-engineering\/\" rel=\"category tag\">Social engineering<\/a><\/li>\n<\/ul>\n<p>Tags: <a href=\"https:\/\/blog.malwarebytes.com\/tag\/elder-scrolls-online\/\" rel=\"tag\">elder scrolls online<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/eso\/\" rel=\"tag\">ESO<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/gamers\/\" rel=\"tag\">gamers<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/gaming\/\" rel=\"tag\">gaming<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/gaming-scams\/\" rel=\"tag\">gaming scams<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/gaming-security\/\" rel=\"tag\">gaming security<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/mmorpg\/\" rel=\"tag\">MMORPG<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/passwords\/\" rel=\"tag\">passwords<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/phish\/\" rel=\"tag\">phish<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/phishing\/\" rel=\"tag\">phishing<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/playstation\/\" rel=\"tag\">playstation<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/scam\/\" rel=\"tag\">scam<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/scammers\/\" rel=\"tag\">scammers<\/a><a href=\"https:\/\/blog.malwarebytes.com\/tag\/social-engineering\/\" rel=\"tag\">Social Engineering<\/a><\/p>\n<table width='100%'>\n<tr>\n<td align=right>\n<p><b>(<a href='https:\/\/blog.malwarebytes.com\/social-engineering\/2019\/12\/fake-elder-scrolls-online-developers-go-phishing-on-playstation\/' title='Fake Elder Scrolls Online developers go phishing on PlayStation'>Read more&#8230;<\/a>)<\/b><\/p>\n<\/td>\n<\/tr>\n<\/table>\n<\/td>\n<\/tr>\n<\/table>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\/social-engineering\/2019\/12\/fake-elder-scrolls-online-developers-go-phishing-on-playstation\/\">Fake Elder Scrolls Online developers go phishing on PlayStation<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.malwarebytes.com\">Malwarebytes Labs<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10488,10378],"tags":[23649,14012,11224,1445,22169,22082,23650,10602,10511,3924,14779,3985,10512,10510],"class_list":["post-17119","post","type-post","status-publish","format-standard","hentry","category-malwarebytes","category-security","tag-elder-scrolls-online","tag-eso","tag-gamers","tag-gaming","tag-gaming-scams","tag-gaming-security","tag-mmorpg","tag-passwords","tag-phish","tag-phishing","tag-playstation","tag-scam","tag-scammers","tag-social-engineering"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/17119","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=17119"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/17119\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=17119"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=17119"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=17119"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}