privacysavvy

privacysavvy

Thursday, June 2, 2022

[New post] Cybercriminals continue to prey on Malaysian job-seekers. Here’s why. 

Site logo image Veronica posted: " Photo by Anna Shvets on Pexels.com If money motivates cybercriminals to trick, swindle and steal, then why are they targeting job-seekers who are supposedly income-less and are themselves in need of money? Job scams have been around for a long time" Hoodietek

Cybercriminals continue to prey on Malaysian job-seekers. Here's why. 

Veronica

Jun 2

Photo by Anna Shvets on Pexels.com

If money motivates cybercriminals to trick, swindle and steal, then why are they targeting job-seekers who are supposedly income-less and are themselves in need of money?

Job scams have been around for a long time. But it's getting extra attention lately as Malaysians report receiving way more job invitations through text messages than ever before. These unsolicited job offers promise unbelievably generous earnings in exchange for seemingly easy work that is too tempting to not even try.

Screenshots of actual job scam messages

Official statistics reveal that as of First Quarter 2022, there are 671.2 thousand unemployed Malaysians. According to a poll by a local university, about 66% of Malaysians are now keen on hybrid working environment due to pandemic concerns such as health and safety. For scammers, this is a goldmine they just wouldn't miss taking advantage of. 

Personal information such as name, birthday, phone number, email address are already valuable — it can actually cost up to $10 on the dark web, according to Kaspersky data. Recently a database seller with claims that they are in possession of dataset that belonged to the registration department for a asking price of RM44,000.  

Once in the hands of fake job recruiters a.k.a. cybercriminals, these data can then be sold or traded to other cybercriminals or companies. Scammers will also use these data to commit other cybercrimes such as identity theft or to infect your device with malicious software (malware) to steal more data stored in it. 

Cybercriminals also play on a job seeker's desperation to make money immediately. In Malaysia, most job scams include having the victim send money to the fake recruiter to pay for "investment fees" or to get "commissions" or "bonuses" with higher returns as long as the victim tops up. 

"By now, people are already aware of the standard red flags of fake job offers sent via email such as the sender's address, layout, etc. More or less we know how to recognize and avoid it so scammers have changed their delivery mode to text/SMS," said Yeo Siang Tiong, general manager for Southeast Asia at Kaspersky. 

"There is also a lowered expectation of danger in text messages so it's less scrutinized by the receiver, which means the scam is likely to succeed. When an unsuspecting person gets a message like a job offer with an irresistible pay, she is likely to disregard her mental checklist of warning signs and just click through," he added.

Yeo also advises companies to take necessary measures to protect their brand and reputation from scammers who exploit their corporate identity and information for fake job offers. Possible reputational losses can be avoided by having the company website, which lists contact details (such as for HR), audited for vulnerabilities. 

Yeo Siang Tiong, General Manager, SEA, Kaspersky

Kaspersky offers the following tips to job-hunters to help you avoid falling victim to this kind of scam:

  1. Limit job searches to official sources.
  2. Do not respond nor click on links if they come from people or organizations you don't know. Replying simply confirms to the sender that your phone number is active. 
  3. Install a trusted security solution with fraud and phishing protection and follow its recommendations. This will solve most of the problems automatically and alert you if necessary. Remember, personal vigilance is not enough when dealing with sophisticated scam methods used by cybercriminals. 
  4. Use multi-factor authentication (MFA). A common variant is a two-factor authentication (2FA) which often uses a text message verification code while a stronger variant includes using a dedicated app for verification (like Google Authenticator).
  5. Check the company's official website for open vacancies matching your job skills. 
  6. Check contact information on companies' official websites. If needed, send an email to the company to verify if the person who contacted you actually works there. 
  7. Be wary of offers to discuss a job or hold an interview in secret chats where messages are encrypted, cannot be forwarded and which alerts the participants if anyone takes a screenshot.
  8. Make an additional phone call to the company to ensure that the job offer is legitimate. 
  9. Review your job offer for possible mistakes: carefully check the company name or job title and responsibilities. 
  10. Report all SMS phishing attempts to designated authorities. 

What to do if you become a victim? Limit the damage with these important steps:

  1. Report to any institutions that could assist.
  2. Change all passwords and account PINs where possible.
  3. Monitor finances, credit and other online accounts for strange login locations and other activities.  
Comment
Like
Tip icon image You can also reply to this email to leave a comment.

Unsubscribe to no longer receive posts from Hoodietek.
Change your email settings at manage subscriptions.

Trouble clicking? Copy and paste this URL into your browser:
http://hoodietek.com/2022/06/02/cybercriminals-continue-to-prey-on-malaysian-job-seekers-heres-why/

Powered by WordPress.com
Download on the App Store Get it on Google Play
at June 02, 2022
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest

No comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments (Atom)

The AI Exchange: Innovators in Payment Security Featuring Utimaco

...

  • Dork List
    ...
  • End of week Artemis update - July 18th 2025
    A round-up of our ILS focused news from this week ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌...
  • Artemis London 2025: Under two months to go
    Register now to attend at the lowest price ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌...

Search This Blog

  • Home

About Me

privacysavvy
View my complete profile

Report Abuse

Blog Archive

  • June 2026 (69)
  • May 2026 (73)
  • April 2026 (94)
  • March 2026 (92)
  • February 2026 (76)
  • January 2026 (77)
  • December 2025 (79)
  • November 2025 (73)
  • October 2025 (88)
  • September 2025 (79)
  • August 2025 (71)
  • July 2025 (89)
  • June 2025 (78)
  • May 2025 (95)
  • April 2025 (85)
  • March 2025 (78)
  • February 2025 (31)
  • January 2025 (50)
  • December 2024 (39)
  • November 2024 (42)
  • October 2024 (54)
  • September 2024 (83)
  • August 2024 (2665)
  • July 2024 (3210)
  • June 2024 (2908)
  • May 2024 (3025)
  • April 2024 (3132)
  • March 2024 (3115)
  • February 2024 (2893)
  • January 2024 (3169)
  • December 2023 (3031)
  • November 2023 (3021)
  • October 2023 (2352)
  • September 2023 (1900)
  • August 2023 (2009)
  • July 2023 (1878)
  • June 2023 (1594)
  • May 2023 (1716)
  • April 2023 (1657)
  • March 2023 (1737)
  • February 2023 (1597)
  • January 2023 (1574)
  • December 2022 (1543)
  • November 2022 (1684)
  • October 2022 (1617)
  • September 2022 (1310)
  • August 2022 (1676)
  • July 2022 (1375)
  • June 2022 (1458)
  • May 2022 (1297)
  • April 2022 (1464)
  • March 2022 (1491)
  • February 2022 (1249)
  • January 2022 (1282)
  • December 2021 (1663)
  • November 2021 (3139)
  • October 2021 (3253)
  • September 2021 (3136)
  • August 2021 (732)
Powered by Blogger.