Google Security Alert Scam Targets Users With Fake Breach Warnings
Translated & summarized from Behadrei Haredim by baba
A phishing scam impersonating Google security alerts is warning users of account breaches from Iran and directing them to call fraudulent support numbers. Identified by Fisherman Security, the scam aims to steal money or personal data by charging for international calls or tricking users into revealing sensitive information. The National Cyber Directorate also warned of similar scams targeting platforms like Binance, advising users to verify alerts through official channels and avoid sharing credentials.
The story in 5 lines · by baba
- Scammers are impersonating Google security alerts to trick users into calling fraudulent phone numbers.
- The fake alerts claim an account breach from Iran and direct users to fake support centers.
- The scam aims to steal money through premium-rate calls or by obtaining personal and financial data.
- Fisherman Security and the National Cyber Directorate have issued warnings about these phishing attempts.
- Users are advised to verify alerts through official channels and avoid sharing sensitive information.
A phishing scam impersonating Google security alerts has been circulating since Tuesday, warning users of a potential account breach originating from Iran. The fraudulent messages instruct recipients to urgently call a provided phone number, but this is a trap designed to steal money or personal information. The scam was identified by the cybersecurity firm Fisherman Security.
The fake alerts claim a suspicious login has been detected and direct users to a "support center" for assistance. Some of the numbers listed begin with the prefix 1-809, which resembles the toll-free 1-800 prefix, potentially leading users to incur international calling charges. Other scams use local numbers that connect to fake support centers where fraudsters attempt to obtain login credentials, personal details, or financial information.
Matan Gadanian, CEO of Fisherman Security, stated that attackers exploit fear and fake trust-building elements to trick users into calling premium-rate numbers or contacting fraudulent support centers, similar to tactics previously seen targeting financial platforms. He added that the goal is to steal money.
Separately, the National Cyber Directorate issued its own warning about impersonation attempts targeting Binance and other platforms. These deceptive messages sometimes appear within existing message threads, making them seem more legitimate. The Directorate advises users not to call suspicious numbers, share passwords or verification codes, or approve uninitiated actions. Users should always verify account status directly through official apps or websites, as even messages within familiar threads may not be genuine.
Mentioned
The same event, reported separately by each outlet. Open a few to compare what different newsrooms emphasize — and what they leave out.
Haredi 1Other 1
Not the same event — other stories that share this one’s people, places, or theme: background, reactions, and follow-ups.