Pokemon GO users targeted it phishing scam that demands money to keep playing the game
Augmented reality game Pokemon GO has been an unprecedented success, but where ever there is something highly successful cybercriminals are sure to follow and sadly a new phishing scam is doing just that.
The new Pokemon GO phishing scam involves users receiving an email pretending to be from game developer Niantic, Inc. and demands players pay $12.99 a month to use a full version of the game to compensate for the “overwhelming response” and “the need for more powerful servers.”
In the event players do not pay up the email claims that their account will be frozen within 24 hours.
Users who do fall for the phishing scam are delivered to a page which is designed to steal their passwords and credit card account information.
Niantic Labs does offer purchases of virtual goods within the game itself but the app is completely free and users are able to use it that way indefinitely.
Modus operandi
In an email to SiliconANGLE Minecast, Inc. cybersecurity strategist Orlando Scott-Cowley explained the modus operandi behind the scam.
“We see these scams all the time, usually on Facebook, and sadly people fall for them every time, so I can’t say I’m shocked,” Scott-Cowley said.
“Cyber criminals are very, very good at issues-jumps. They’re able to turn their campaigns around on a dime, and often much quicker than the market can respond. Any good opportunity to make some cash and they’ll capitalize on it. This is similar to how they’re able to influence SEO results within a few hours of a large event, to trick people into heading to their websites instead of real ones. They’re so good they put most of the corporate worlds’ marketing campaigns to shame.”
“I suppose it’s a kind of extortion in a way, but only if you’re really gullible. This game’s popularity in particular, though, does raise more concerns that this phishing scam may just be the beginning of these extortion attempts. With the amount of people who are obsessing over this game, we might see more victims than we would normally think. And, since the app does actually offer in-app purchases, there is a chance that this phishing scheme may seem more legitimate to users.”
It probably goes without saying at this point but if you do receive an email asking you to pay for Pokemon GO report it as spam, then delete it, and under no circumstances should you click any link in the email.
Image credit: iphonedigital/Flickr/CC by 2.0
Since you’re here …
… We’d like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.’s business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we don’t have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary on SiliconANGLE — along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams at theCUBE — take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.
If you like the reporting, video interviews and other ad-free content here, please take a moment to check out a sample of the video content supported by our sponsors, tweet your support, and keep coming back to SiliconANGLE.