Scammers Impersonate Google, Warn of Iranian Login Attempts
Translated & summarized from N12 by baba
Scammers are sending fake Google messages warning of login attempts from Iran, urging users to call fraudulent support numbers. Cybersecurity firms and the National Cyber Directorate warn that these phishing tactics exploit fear and fake trust to steal money or personal information. Users are advised to ignore suspicious messages and verify account activity only through official channels.
The story in 5 lines · by baba
- Fake Google messages warn of Iranian login attempts, directing users to fraudulent support numbers.
- Scammers exploit fear and fake trust elements to trick users into revealing sensitive information.
- Some scam numbers mimic legitimate toll-free prefixes, potentially incurring international charges.
- The National Cyber Directorate warns against sharing passwords or account details from unsolicited calls.
- Users should verify account status solely through official Google apps or websites.
A new phishing scam is circulating, with messages impersonating Google and warning users about login attempts from Iran. These fraudulent messages urge recipients to urgently contact a "support center" via a provided phone number. The scam was identified by Fisherman Security, a cybersecurity firm, and the National Cyber Directorate has issued warnings about it.
According to Fisherman Security, the attackers exploit fear and use fake trust-building elements. Some of the phone numbers provided in the messages begin with the 1-809 prefix, designed to mimic the familiar 1-800 toll-free number, potentially leading users to incur international calling charges. Other local numbers are used for "vishing" (voice phishing) attempts, similar to previous scams targeting Binance users with fake support centers.
Matan Gadanian, CEO of Fisherman Security, stated that the attackers leverage fear tactics and fake trust elements to trick users into calling premium-rate numbers or contacting fraudulent support centers aimed at stealing money. He noted that these methods are similar to those previously observed targeting financial platforms.
The National Cyber Directorate also reported receiving alerts about calls and text messages impersonating Binance and other platforms, aiming to steal personal and account information. These messages sometimes appear within legitimate conversation threads, falsely claiming unusual login activity and directing users to call a specific number. During these calls, scammers request sensitive data like email credentials, financial account details, or login information.
Both Fisherman Security and the National Cyber Directorate advise users not to return calls to suspicious numbers, never to share passwords, verification codes, or account details, and to avoid confirming actions or entering numbers during unsolicited calls. Users should only check their account status through official apps or websites, as even messages within familiar threads may not be legitimate.
The same event, reported separately by each outlet. Open a few to compare what different newsrooms emphasize — and what they leave out.
Centre 1Right 1Other 2
Not the same event — other stories that share this one’s people, places, or theme: background, reactions, and follow-ups.
