TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself

144 点作者 rexbee大约 1 年前

10 条评论

bombcar大约 1 年前
USPS.gov redirecting to USPS.com certainly doesn&#x27;t help matters.<p>Things like this should use one of the few TLDs that actually has policies and procedures in place; then it&#x27;s a simple &quot;if it&#x27;s not .gov, it&#x27;s not real.&quot;
评论 #40199316 未加载
评论 #40202226 未加载
评论 #40199034 未加载
评论 #40199128 未加载
miyuru大约 1 年前
Its not just in US, it happens in every country. SMS is the main way these links are distributed. So much so that in Sri Lanka, gov planned to add a centralized SMS firewall.<p><a href="https:&#x2F;&#x2F;economynext.com&#x2F;sri-lanka-to-study-infobip-centralized-sms-firewall-proposal-145888&#x2F;" rel="nofollow">https:&#x2F;&#x2F;economynext.com&#x2F;sri-lanka-to-study-infobip-centraliz...</a><p>Google messages have a good spam filter than can filter in real time them, but I have seen some get though for a small period of time.
评论 #40197941 未加载
评论 #40195067 未加载
评论 #40195096 未加载
评论 #40194953 未加载
评论 #40199448 未加载
tylervigen大约 1 年前
&gt; We have found that the USPS is under attack from text scams<p>The core challenge of phishing attacks is that USPS is not, in fact, the primary victim of these attacks.<p>The victims are distributed citizens who fall for the scam. USPS doesn&#x27;t have very many levers available to them to address the attacks (besides a warning on their site, which they have), but also doesn&#x27;t &#x27;feel&#x27; the impact so would have a hard time justifying substantial investment in addressing it.<p>Ultimately the solution needs to come from regulatory regimes that target fraud, particularly SMS message spam.
评论 #40204571 未加载
InCityDreams大约 1 年前
I get no spam, until I send something...then it&#x27;s an avalanch for a few weeks then they dry up until next time I need DHL (or, indeed, any other carrier - €40 to send a registered letter, DHL priced themselves out of my budget).
ChrisArchitect大约 1 年前
Related from earlier this month:<p><i>USPS jumps to first place as most imitated brand in phishing attacks</i><p><a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=39969527">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=39969527</a>
petesergeant大约 1 年前
I&#x27;m disappointed by how little protection we&#x27;re getting against phishing campaigns. Google&#x27;s SafeSearch takes forever to process stuff, where presumably very quick response times are much more effective, Fastmail, despite being great in general, is _terrible_ at detecting phishing, Booking.com met my report of a phishing campaign over their site (hotel got hacked) with a &quot;it happens, we might talk to the hotel about it one day&quot; shrug, and banks and other institutions continue to send legitimate messages that look like phishing.
评论 #40194709 未加载
评论 #40194729 未加载
评论 #40194774 未加载
评论 #40194679 未加载
squirrel大约 1 年前
Reminds me of the fake police station in Do Androids Dream of Electric Sheep [1]. In order to keep up the pretense for three years, the androids have to take crime reports, do paperwork, and arrest perpetrators. In other words, they have to run an actual real police station. So perhaps the fake USPS sites should just start delivering the post!<p>[1] <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Do_Androids_Dream_of_Electric_Sheep%3F" rel="nofollow">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Do_Androids_Dream_of_Electric_...</a>
wslh大约 1 年前
Try posting on a relatively popular cryptocurrency Telegram group and will be receive a lot of messages and calls within 30&#x27;
gowld大约 1 年前
Why don&#x27;t DNS providers offer anti-malicious-URL protection?
评论 #40205640 未加载
habosa大约 1 年前
It might not change anything, but I think the criminal penalties for scams need to be significantly raised.<p>The idea of reaching out to someone you don&#x27;t know at all and attempting to steal their money by lying and betraying their confidence is morally disgusting. The type of people who can do this hundreds or thousands of times a day are criminals of the worst and least redeemable kind, yet if caught they would likely face a smaller penalty than someone who steals a single piece of jewelry from a store.<p>We are slowly losing our ability to trust each other because of the prevalence of scams which adds massive transaction costs to every legitimate exchange. These costs are unseen but they make almost everything we buy slower and more expensive.
评论 #40200581 未加载
评论 #40212687 未加载