Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Sunshine And March Vibes (2025 Wallpapers Edition)

      May 16, 2025

      The Case For Minimal WordPress Setups: A Contrarian View On Theme Frameworks

      May 16, 2025

      How To Fix Largest Contentful Paint Issues With Subpart Analysis

      May 16, 2025

      How To Prevent WordPress SQL Injection Attacks

      May 16, 2025

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025

      Bing Search APIs to be “decommissioned completely” as Microsoft urges developers to use its Azure agentic AI alternative

      May 16, 2025

      Microsoft might kill the Surface Laptop Studio as production is quietly halted

      May 16, 2025

      Minecraft licensing robbed us of this controversial NFL schedule release video

      May 16, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      The power of generators

      May 16, 2025
      Recent

      The power of generators

      May 16, 2025

      Simplify Factory Associations with Laravel’s UseFactory Attribute

      May 16, 2025

      This Week in Laravel: React Native, PhpStorm Junie, and more

      May 16, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025
      Recent

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025

      Bing Search APIs to be “decommissioned completely” as Microsoft urges developers to use its Azure agentic AI alternative

      May 16, 2025

      Microsoft might kill the Surface Laptop Studio as production is quietly halted

      May 16, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Development»Cybercriminals Prepare Fake Domains Ahead of Amazon Prime Day

    Cybercriminals Prepare Fake Domains Ahead of Amazon Prime Day

    July 5, 2024

    As online shoppers ready themselves for the approaching Amazon Prime Day on July 16-17, 2024, a day known for unusually extensive deals and exclusive offers, cybercriminals appear ready to lure potential victims.

    Researchers observed an increase in new domains that incorporated the use of the Amazon brand over the last month, with the vast majority of these found to be suspicious and designed to steal sensitive information such as login credentials, payment details, and personal data from victims.

    Amazon Prime Day Fake Domains

    Researchers from Check Point observed the registration of over 1,230 such domains during June 2024, with   85% of these identified domains flagged as malicious or suspicious. These domains pose a significant threat to shoppers’ personal and financial information.

    The researchers identified phishing activity, deceptive emails and malicious file attachments:

    Fake Domains: Newly created Amazon impersonating domains that mimic various legitimate Amazon Mexico websites to trick users into providing sensitive information and details.

    Source: blog.checkpoint.com

    Examples of these fake domains include:

    -amazon-onboarding[.]com
    -amazonmxc[.]shop
    -amazonindo[.]com
    -shopamazon2[.]com
    -microsoft-amazon[.]shop
    -amazonapp[.]nl
    -shopamazon3[.]com
    -amazon-billing[.]top

    Distribution of malicious phishing files over alleged payment failures: Phishing campaigns use urgent language to prompt immediate action. One such attempt claimed a payment failure for an Amazon Prime Video order, directing users to a fraudulent login page.

    Source: blog.checkpoint.com

    Some attacks distribute files with misleading names like “Mail-AmazonReports-73074[264].pdf,” containing false alerts about account suspension to steal payment details.

    The file lures victims by creating a false sense of urgency in informing them that their Amazon account had been suspended due to mismatched billing information, instructing them to update their payment details through a provided phishing link: trk[.]klclick3[.]com.

    The message within the file threatens account closure if immediate action is not taken by the victim, stoking fears about possible account termination or loss of access to services.

     

    Source: blog.checkpoint.com

    Staying Safe With Online Shopping During Amazon Prime Day

    According to a report on the Global State of Scams by the Global Anti-Scam Alliance consumers lost over  USD $1 trillion globally in 2023. Researchers behind the recent study have shared the following tips to help online shoppers stay safe during the Amazon Prime Day sales:

    Scrutinize URLs for misspellings or unusual domain extensions.
    Use strong, unique passwords for your Amazon account.
    Verify website security by looking for “https://” and the padlock icon.
    Be wary of requests for excessive personal information.
    Approach urgent emails with caution and verify their legitimacy.
    Trust your instincts about deals that seem too good to be true.
    Use credit cards for better fraud protection when shopping online.

    A customer trust report from Amazon in March of this year indicated that over two-thirds of observed scams purported to be order or account issues. A paraphrased customer quote within the report stated:
    “I got a random call from someone who claimed I bought something on Amazon that I hadn’t and they wanted my account information to verify this was an error.”
    Amazon maintains a separate email address for customers to report scams at reportascam@amazon.com. In 2023, the e-commerce giant had taken down over 40,000 phishing websites and 10,000 phone numbers.

    Amazon also partners with organizations such as the Better Business Bureau (BBB, the Anti-Phishing Council in Japan, Microsoft and several cross-industry investigative groups to collaborate and add depth to the information collected by customers over reported scams.

    It is unknown if Amazon is taking any specific action related to scams that claim association with the Amazon Prime Day event.

    Source: Read More

    Hostinger
    Facebook Twitter Reddit Email Copy Link
    Previous ArticleEuropol Faces ‘Serious Challenge for Lawful Interception’ With Mobile Roaming Networks
    Next Article Splunk Addresses Critical Vulnerabilities in Enterprise and Cloud Platforms

    Related Posts

    Security

    Nmap 7.96 Launches with Lightning-Fast DNS and 612 Scripts

    May 16, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-47916 – Invision Community Themeeditor Remote Code Execution

    May 16, 2025
    Leave A Reply Cancel Reply

    Hostinger

    Continue Reading

    You can now remove Android/iPhone from Phone Link app & Mobile devices setting

    Operating Systems

    Researchers Reveal the Kursk Offensive: Ukraine’s Strategic Campaign for 2024

    Development

    Elden Ring DLC: Scadutree Avatar location and how to beat in Shadow of the Erdtree

    Development

    QVC is selling a PS5 Slim digital bundle that includes everything you need to play for just $680

    News & Updates

    Highlights

    Development

    PrimeNG setup in Angular 19

    January 19, 2025

    1. What is PrimeNG? PrimeNG is an open-source library with prebuilt and customizable UI components…

    This AI Paper from Princeton and Stanford Introduces CRISPR-GPT For Innovative Gene-Editing Enhancements

    May 2, 2024

    How to Set Date Time from Mac Command Line

    June 17, 2024

    CVE-2025-43853 – “WAMR Symlink Following Vulnerability”

    May 15, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.