Cyber criminals use social engineering techniques in fake emails or texts from a trusted source to dupe victims. Photo: Science Photo Library
Cyber criminals use social engineering techniques in fake emails or texts from a trusted source to dupe victims. Photo: Science Photo Library
Cyber criminals use social engineering techniques in fake emails or texts from a trusted source to dupe victims. Photo: Science Photo Library
Cyber criminals use social engineering techniques in fake emails or texts from a trusted source to dupe victims. Photo: Science Photo Library

Phishing email threats in the UAE surged 77% last quarter, Kaspersky says


Alvin R Cabral
  • English
  • Arabic

The UAE recorded a steep increase in the number of emails that contain phishing threats in the second quarter of 2023.

With the volume of such mails increasing by 77 per cent quarter over quarter, a new report from Kaspersky suggests that these illicit tactics are becoming more sophisticated.

The figure is a significant jump with phishing emails using mainly four methods, the cybersecurity company said in the study released on Wednesday.

These methods, which are prevalent in the Middle East, Turkey and Africa region, include mails involving undelivered parcels, know-your-customer messages, free money and unusual email login activity.

These tactics are known as social engineering techniques, which are built on how people think and act. In the case of electronic communications, it involves an email or text message pretending to be from a trusted source.

They are part of the broader scope of spam emails, which carry potentially more than one threat – malware and ransomware among the most notable – and pose significant danger to users, be they individuals or enterprises.

Spam emails are unsolicited messages sent in bulk that potentially carry malicious content, while phishing involves fake emails that appear to be from a reputable source with the aim of securing personal information, such as passwords and credit card numbers.

Emails about undelivered parcels, in particular, increased greatly in the UAE this year.

In January, the Telecommunications and Digital Government Regulatory Authority warned consumers to be alert for unexpected text messages that appear to be from well-known courier companies, including Emirates Post, Aramex and DHL Express, as they could be phishing scams.

Etisalat by e&, the UAE's biggest telecoms operator, and Dubai Police issued similar warnings this year over fake rewards and bogus fine payments, respectively.

"Once a cybercriminal understands what motivates an individual’s actions, they try to exploit their lack of knowledge and manipulate their behaviour to meet the end goal," Kaspersky said in Wednesday's report.

Cybersecurity attacks can cause reputational and financial damages to individuals and companies. The global average for a data breach in 2022 was $4.35 million, up from $4.24 million the previous year, according to the latest edition of IBM's Cost of a Data Breach report.

IBM's study included exploits resulting from emails that are of the spam, phishing, malware and ransomware types, among several other threats.

Last year, nearly half of all emails worldwide were spam, which was a more than 3 per cent increase over 2021, Kaspersky said in its spam and phishing report for 2022.

Spam and phishing attacks soared in 2021 as cyber criminals lured users by focusing on topics related to lucrative investments, online streaming of box-office hits including the James Bond film No Time to Die, and themes related to the pandemic, Kaspersky said previously.

In 2022, the trend continued, this time with threat actors using the new season of Netflix's Stranger Things, The Batman movie, Academy Awards and the Fifa World Cup in Qatar as a cover for their illegal operations, the company said.

“There is no aspect of our life that cyber criminals cannot exploit. Human behaviour and emotion is no exception," Maher Yamout, lead security researcher at Kaspersky, wrote in the report.

The four methods meant in the latest study are all incredibly dangerous. The free money technique is a long-running scam that tries to convince users to provide sensitive details to receive a cash deposit.

The KYC tactic, meanwhile, involves bogus messages posing as prominent banks requesting people to complete verification to comply with financial regulations or avoid suspension of transactions, while unusual email account log-in activity techniques flag false sign-in activity that prompts a user to report the activity via a link.

In all cases, cyber criminals are trying to manipulate user emotions, including by using terms such as urgent, trying to instil fear in them, or entice them so that they will be coerced to fall victim to these tactics.

"These scams are a result of manipulation based on fear, curiosity and greed. The key takeaway is to pay attention to basic details in emails before responding, even if they are from trusted sources, because one wrong click can lead to harsh consequences," the report said.

While you're here
All%20The%20Light%20We%20Cannot%20See%20
%3Cp%3E%3Cstrong%3ECreator%3A%20%3C%2Fstrong%3ESteven%20Knight%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStars%3A%C2%A0%3C%2Fstrong%3EMark%20Ruffalo%2C%20Hugh%20Laurie%2C%20Aria%20Mia%20Loberti%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%20%3C%2Fstrong%3E1%2F5%C2%A0%3C%2Fp%3E%0A
BABYLON
%3Cp%3EDirector%3A%20Damien%20Chazelle%3C%2Fp%3E%0A%3Cp%3EStars%3A%20Brad%20Pitt%2C%20Margot%20Robbie%2C%20Jean%20Smart%3C%2Fp%3E%0A%3Cp%3ERating%3A%204%2F5%3C%2Fp%3E%0A
Sole survivors
  • Cecelia Crocker was on board Northwest Airlines Flight 255 in 1987 when it crashed in Detroit, killing 154 people, including her parents and brother. The plane had hit a light pole on take off
  • George Lamson Jr, from Minnesota, was on a Galaxy Airlines flight that crashed in Reno in 1985, killing 68 people. His entire seat was launched out of the plane
  • Bahia Bakari, then 12, survived when a Yemenia Airways flight crashed near the Comoros in 2009, killing 152. She was found clinging to wreckage after floating in the ocean for 13 hours.
  • Jim Polehinke was the co-pilot and sole survivor of a 2006 Comair flight that crashed in Lexington, Kentucky, killing 49.
UAE squad v Australia

Rohan Mustafa (C), Ashfaq Ahmed, Chirag Suri, Rameez Shahzad, Fahad Nawaz, Amjed Gul, Shaiman Anwar, Ahmed Raza, Imran Haider, Muhammad Naveed, Amir Hayat, Ghulam Shabir (WK), Qadeer Ahmed, Tahir Latif, Zahoor Khan

Sunday's games

Liverpool v West Ham United, 4.30pm (UAE)
Southampton v Burnley, 4.30pm
Arsenal v Manchester City, 7pm

Try out the test yourself

Q1 Suppose you had $100 in a savings account and the interest rate was 2 per cent per year. After five years, how much do you think you would have in the account if you left the money to grow?
a) More than $102
b) Exactly $102
c) Less than $102
d) Do not know
e) Refuse to answer

Q2 Imagine that the interest rate on your savings account was 1 per cent per year and inflation was 2 per cent per year. After one year, how much would you be able to buy with the money in this account?
a) More than today
b) Exactly the same as today
c) Less than today
d) Do not know
e) Refuse to answer

Q4 Do you think that the following statement is true or false? “Buying a single company stock usually provides a safer return than a stock mutual fund.”
a) True
b) False
d) Do not know
e) Refuse to answer

The “Big Three” financial literacy questions were created by Professors Annamaria Lusardi of the George Washington School of Business and Olivia Mitchell, of the Wharton School of the University of Pennsylvania. 

Answers: Q1 More than $102 (compound interest). Q2 Less than today (inflation). Q3 False (diversification).

Star%20Wars%3A%20Ahsoka%20
%3Cp%3E%3Cstrong%3EDirector%3A%3C%2Fstrong%3E%20Various%20%3Cbr%3E%3Cstrong%3EStarring%3A%3C%2Fstrong%3E%20Rosario%20Dawson%2C%20Natasha%20Liu%20Bordizzo%2C%20Lars%20Mikkelsen%20%3Cbr%3E%3Cstrong%3ERating%3A%3C%2Fstrong%3E%204%2F5%0D%3Cbr%3E%3C%2Fp%3E%0A
UPI facts

More than 2.2 million Indian tourists arrived in UAE in 2023
More than 3.5 million Indians reside in UAE
Indian tourists can make purchases in UAE using rupee accounts in India through QR-code-based UPI real-time payment systems
Indian residents in UAE can use their non-resident NRO and NRE accounts held in Indian banks linked to a UAE mobile number for UPI transactions

Specs
Engine: Electric motor generating 54.2kWh (Cooper SE and Aceman SE), 64.6kW (Countryman All4 SE)
Power: 218hp (Cooper and Aceman), 313hp (Countryman)
Torque: 330Nm (Cooper and Aceman), 494Nm (Countryman)
On sale: Now
Price: From Dh158,000 (Cooper), Dh168,000 (Aceman), Dh190,000 (Countryman)
David Haye record

Total fights: 32
Wins: 28
Wins by KO: 26
Losses: 4

Updated: August 23, 2023, 2:27 PM`