Site icon Check Point Blog

Check Point Research analyzes files on the Dark Web and finds millions of records available

Closeup shot of an unidentifiable hacker using a cellphone in the dark

Highlights:

Following reports that hackers were selling WhatsApp numbers on the Dark Web (please note CPR cannot confirm or prove these numbers are from Whatapp users), CPR researchers decided to analyze these and revealed the leak contains 360 million phone numbers from 108 countries.

Each country has a different number of records that have been exposed, ranging from 604 in Bosnia and Herzegovina to 35 million attributed to Italy. In the past four days the files, which include international dial codes and were for first set for sale, are now being distributed freely amongst hackers.

 

The news about these files being sold on the Dark Web was first exposed on November 16th in a msg. published by the Hacker on the hacking forum BreachForums, claiming to be selling up-to-date personal information of 487 million WhatsApp users from 84 countries.

Source: Darkweb

 

Important to note: In a more recent report, it has been claimed that there  is evidence that the leaked database is actually a re-use of an older 2019 Facebook leak.

Phishing, Vishing and Smishing expected to rise amid data breach

Once cybercriminals have access to phone numbers that are then sold on, attacks such as vishing or smishing are likely to follow. Vishing is a form of social engineering attack where a victim is duped into giving information over the phone, while smishing is conducted through SMS. With millions of records available to buy, it is highly likely these types of attacks will increase. It is also possible that hackers could access other online services using the phone number, which may have more damaging consequences.

Check Point Research has found an increase in phishing attacks around the holiday season, with a 17% rise in malicious emails during Black Friday and Cyber Monday. This year, Amazon Prime Day also saw an 86% increase in Amazon-related phishing emails.

 

 Top Principles to follow in order to remain safe

Check Point offers a range of solutions that can help organizations to mitigate vishing, phishing, and other related attacks. Check Point’s Harmony Email and Office includes anti-phishing protections and can help detect attempted data exfiltration inspired by a vishing attack. To learn more about how Check Point can protect your organization against social engineering threats, you’re welcome to request a free demo today.

 

 

 

Exit mobile version