A dangerous scam has targeted Netflix users, tricking unsuspecting victims into handing over their personal information, including account login details and credit card numbers. With phishing scams on the rise, cybersecurity experts are urging users to remain vigilant and take steps to protect themselves. Urgent warning for Netflix users. Here’s everything you need to know about this scam and how to stay safe.
How the Scam Works
The scam, uncovered by cybersecurity firm Bitdefender, primarily targets Netflix users via phishing text messages. These fraudulent messages claim that the recipient’s subscription payment has failed, and their account will be suspended unless they update their payment details.
The message includes a link to a fake Netflix login page, where victims unknowingly provide their login credentials and payment information. This data is then harvested by scammers, giving them access to accounts and potentially bank accounts.
Example of the Fraudulent Message
One such phishing message reads:
“NETFLIX: There was an issue processing your payment. To keek (sic.) your services active, please sign in and confirm your details at https://account-details[.]com.”
Key Signs of a Netflix Scam
Cybersecurity analyst Miguel Calles from Bitdefender highlighted several red flags to look out for:
- Misspelt Words: Scammers often use poorly written messages with errors like “keek” instead of “keep.”
- Suspicious Links: Legitimate Netflix links start with “https:” and include the Netflix domain. Scams often use “http:” or unrelated domains.
- Urgent Language: Messages emphasizing immediate action, like “update now,” aim to panic recipients.
- Unregulated Payment Methods: Requests to pay via gift cards or other unconventional methods are a red flag.
- Excessive Captcha Checks: Scammers may add multiple captcha verifications to make fake sites appear secure.
Global Impact of the Scam
This phishing scam has been identified in 23 countries, including the US, Germany, France, Australia, and the UK. Given Netflix’s global popularity, millions of users could be at risk.
Netflix’s Official Statement
Netflix has reiterated that it would “never ask you to enter your personal information in a text or email.” If you receive any communication that seems suspicious, Netflix advises users to:
- Report the message to Netflix directly.
- Avoid clicking on any links in the text or email.
- Access their Netflix account by typing the URL directly into the browser.
How to Protect Yourself
Here are steps you can take to avoid falling victim to phishing scams:
1. Don’t Click on Suspicious Links
Never click on links from unknown senders. Even if the message looks legitimate, type the URL directly into your browser to verify the authenticity.
2. Check for Secure URLs
Ensure the URL begins with “https:” and includes Netflix’s official domain (e.g., netflix.com).
3. Enable Two-Factor Authentication (2FA)
Add an extra layer of security to your Netflix account by enabling 2FA. This requires a verification code in addition to your password.
4. Inspect the Sender’s Details
Legitimate Netflix communications will come from official Netflix domains or numbers. Cross-check these details with what you know.
5. Be Cautious with Payment Methods
Netflix never asks for gift cards or unregulated payment methods. Always verify payment requests through your official account page.
6. Update Your Security Tools
Use antivirus software and keep your devices updated to protect against malware that phishing links might install.
What to Do If You’re a Victim
If you suspect you’ve fallen for this scam:
- Change your Netflix password Immediately: Update your credentials to lock out scammers.
- Check Your Bank Statements: Look for unauthorised transactions and report them to your bank.
- Enable 2FA on All Accounts: Protect other accounts that might share the same login credentials.
- Report the scam: Notify Netflix and report the phishing message to Action Fraud UK or your local cybersecurity authority.
Conclusion
Phishing scams like the Netflix account scam are becoming increasingly sophisticated, targeting users with urgent messages designed to steal personal information. By staying informed, paying attention to red flags, and following security best practices, you can protect yourself from becoming a victim.
Remember, Netflix will never ask for personal or payment information via text or email. If in doubt, always verify communications through Netflix’s official website or app.
For more tips on staying safe online, visit MoneySavvyUK.com.
Source:
- Original article by Jacob Jaffa via The Sun
- Bitdefender has released its official findings on phishing scams.
Related posts