Cyber criminals are targeting Arabic users of popular streaming service Netflix, posing a risk to their personal data such as usernames, passwords and credit card details, Kaspersky found.
The Moscow-based cybersecurity firm detected a wave of phishing attacks in the Middle East and North Africa region targeting users of the service, who are then taken to a malicious domain created in Arabic that looks like a genuine Netflix landing page.
“Personal information and credentials are the most valuable digital products … we can only guess how fraudsters may exploit Netflix credentials gathered as a result of such attacks,” Tatyana Shcherbakova, a security researcher at Kaspersky, said.
“There are many variants – they [stolen credentials] might be sold on the dark web if the user has a prepaid subscription or used later to add credibility to a malicious e-mail attack, for example, informing users of a necessity to pay for the account restoration, stealing money and even blackmail,” she added.
Phishing is the fraudulent attempt to obtain sensitive information or data by disguising oneself as a trustworthy entity in an electronic communication.
It is one of the most common methods of attack by cyber criminals as it uses legitimate institutions, promoting a fraudster's chances of success, and is carried out on a large scale.
“When the victim’s password and login are the same as their credentials to other sensitive domains, the criminals might penetrate their social media or e-mails. This is why we always recommend using different passwords for different services and two-factor authentication,” Ms Shcherbakova said.
Kaspersky did not disclose the number of attacks carried out on Netflix users. In total, more than 2.57 million phishing attacks were detected across the Middle East in the second quarter of this year at the height of the Covid-19 stay-at-home measures, the company said in August.
Saudi Arabia, the biggest Arab economy, witnessed 973,061 phishing attacks – the most in the region. This was followed by the UAE with 617,347 attacks, Egypt (492,532), Oman (193,379), Qatar (128,356), Kuwait (106,245) and Bahrain (67,581), according to Kaspersky data.
"Did you receive an email or text requesting your Netflix username, password or payment method? If so, it probably did not come from us," said Netflix on its help centre page.
The company advised users who were suspicious about a potential phishing attempt to change their Netflix password to one that is strong and unique.
“Update your password on any websites where you use the same email and password combination. Contact your financial institution if you entered any payment information, as it may have been compromised,” it added.
JOKE'S%20ON%20YOU
%3Cp%3EGoogle%20wasn't%20new%20to%20busting%20out%20April%20Fool's%20jokes%3A%20before%20the%20Gmail%20%22prank%22%2C%20it%20tricked%20users%20with%20%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Fmentalplex%2F%22%20target%3D%22_blank%22%3Emind-reading%20MentalPlex%20responses%3C%2Fa%3E%20and%20said%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Fpigeonrank%2F%22%20target%3D%22_blank%22%3E%20well-fed%20pigeons%20were%20running%20its%20search%20engine%20operations%3C%2Fa%3E%20.%3C%2Fp%3E%0A%3Cp%3EIn%20subsequent%20years%2C%20they%20announced%20home%20internet%20services%20through%20your%20toilet%20with%20its%20%22%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Ftisp%2Finstall.html%22%20target%3D%22_blank%22%3Epatented%20GFlush%20system%3C%2Fa%3E%22%2C%20made%20us%20believe%20the%20Moon's%20surface%20was%20made%20of%20cheese%20and%20unveiled%20a%20dating%20service%20in%20which%20they%20called%20founders%20Sergey%20Brin%20and%20Larry%20Page%20%22%3Ca%20href%3D%22https%3A%2F%2Farchive.google%2Fromance%2Fpress.html%22%20target%3D%22_blank%22%3EStanford%20PhD%20wannabes%3C%2Fa%3E%20%22.%3C%2Fp%3E%0A%3Cp%3EBut%20Gmail%20was%20all%20too%20real%2C%20purportedly%20inspired%20by%20one%20%E2%80%93%20a%20single%20%E2%80%93%20Google%20user%20complaining%20about%20the%20%22poor%20quality%20of%20existing%20email%20services%22%20and%20born%20%22%3Ca%20href%3D%22https%3A%2F%2Fgooglepress.blogspot.com%2F2004%2F04%2Fgoogle-gets-message-launches-gmail.html%22%20target%3D%22_blank%22%3Emillions%20of%20M%26amp%3BMs%20later%3C%2Fa%3E%22.%3C%2Fp%3E%0A
Company%20Profile
%3Cp%3E%3Cstrong%3EName%3A%20%3C%2Fstrong%3EDirect%20Debit%20System%3Cbr%3E%3Cstrong%3EStarted%3A%3C%2Fstrong%3E%20Sept%202017%3Cbr%3E%3Cstrong%3EBased%3A%3C%2Fstrong%3E%20UAE%20with%20a%20subsidiary%20in%20the%20UK%3Cbr%3E%3Cstrong%3EIndustry%3A%3C%2Fstrong%3E%20FinTech%3Cbr%3E%3Cstrong%3EFunding%3A%3C%2Fstrong%3E%20Undisclosed%3Cbr%3E%3Cstrong%3EInvestors%3A%3C%2Fstrong%3E%20Elaine%20Jones%3Cbr%3E%3Cstrong%3ENumber%20of%20employees%3A%3C%2Fstrong%3E%208%3Cbr%3E%3C%2Fp%3E%0A
Formula Middle East Calendar (Formula Regional and Formula 4)
Round 1: January 17-19, Yas Marina Circuit – Abu Dhabi
Round 2: January 22-23, Yas Marina Circuit – Abu Dhabi
Round 3: February 7-9, Dubai Autodrome – Dubai
Round 4: February 14-16, Yas Marina Circuit – Abu Dhabi
Round 5: February 25-27, Jeddah Corniche Circuit – Saudi Arabia
ESSENTIALS
The flights
Emirates flies direct from Dubai to Rio de Janeiro from Dh7,000 return including taxes. Avianca fliles from Rio to Cusco via Lima from $399 (Dhxx) return including taxes.
The trip
From US$1,830 per deluxe cabin, twin share, for the one-night Spirit of the Water itinerary and US$4,630 per deluxe cabin for the Peruvian Highlands itinerary, inclusive of meals, and beverages. Surcharges apply for some excursions.
The%20specs
%3Cp%3E%3Cstrong%3EPowertrain%3A%20%3C%2Fstrong%3ESingle%20electric%20motor%0D%3Cbr%3E%3Cstrong%3EPower%3A%20%3C%2Fstrong%3E201hp%0D%3Cbr%3E%3Cstrong%3ETorque%3A%20%3C%2Fstrong%3E310Nm%0D%3Cbr%3E%3Cstrong%3ETransmission%3A%20%3C%2Fstrong%3ESingle-speed%20auto%0D%3Cbr%3E%3Cstrong%3EBattery%3A%20%3C%2Fstrong%3E53kWh%20lithium-ion%20battery%20pack%20(GS%20base%20model)%3B%2070kWh%20battery%20pack%20(GF)%0D%3Cbr%3E%3Cstrong%3ETouring%20range%3A%20%3C%2Fstrong%3E350km%20(GS)%3B%20480km%20(GF)%0D%3Cbr%3E%3Cstrong%3EPrice%3A%20%3C%2Fstrong%3EFrom%20Dh129%2C900%20(GS)%3B%20Dh149%2C000%20(GF)%0D%3Cbr%3E%3Cstrong%3EOn%20sale%3A%3C%2Fstrong%3E%20Now%3C%2Fp%3E%0A
Spare
Profile
Company name: Spare
Started: March 2018
Co-founders: Dalal Alrayes and Saurabh Shah
Based: UAE
Sector: FinTech
Investment: Own savings. Going for first round of fund-raising in March 2019
Visit Abu Dhabi culinary team's top Emirati restaurants in Abu Dhabi
Yadoo’s House Restaurant & Cafe
For the karak and Yoodo's house platter with includes eggs, balaleet, khamir and chebab bread.
Golden Dallah
For the cappuccino, luqaimat and aseeda.
Al Mrzab Restaurant
For the shrimp murabian and Kuwaiti options including Kuwaiti machboos with kebab and spicy sauce.
Al Derwaza
For the fish hubul, regag bread, biryani and special seafood soup.