'Cybercriminals using fake LinkedIn accounts to scam users'

Image
Press Trust of India New Delhi
Last Updated : Dec 07 2015 | 5:07 PM IST
Cybercriminals are using fake LinkedIn profiles to map out the networks of business professionals to scrape contact information and later use these to send spear-phishing emails, security solutions firm Symantec today said.
LinkedIn, which has over 400 million users globally, is a prime target for scammers looking to connect with professionals across a variety of industries, including information security and oil and gas, it said on its official blog.
Scammers copy information from real LinkedIn profiles to pose as recruiters and attract new connections, it added.
"Over the last year, we have seen a growing number of incidents involving fake LinkedIn accounts targeting members of the business-oriented social networking service. We worked with LinkedIn to take down some fake accounts that we had come across during our research," it said.
Symantec said most of these fake accounts followed a specific pattern. They bill themselves as recruiters for fake firms or are supposedly self employed and primarily use photos of women pulled from stock image sites or of real professionals.
"We were able to confirm this by using reverse image search tools like TinEye and Google's Search by Image," it said.
The scammers copy text from profiles of real professionals and keyword-stuff their profile for visibility in search results, the blog added.
Symantec said the primary goal of these fake LinkedIn accounts is to map out the networks of business professionals.
"Using these fake LinkedIn accounts, scammers are able to establish a sense of credibility among professionals in order to initiate further connections," it said.
In addition to mapping connections, scammers can also scrape contact information from their connections, including personal and professional email addresses as well as phone numbers.
This information could be used to send spear-phishing emails, it added.
Symantec said LinkedIn users should be very skeptical of who they add to their network.
"If you've never met the person before, don't just add them. We weren't surprised to learn that these fake LinkedIn accounts received endorsements from real users," it said.
(REOPENS DCM68)
When contacted, LinkedIn Head of Communications India and Hong Kong Deepa Sapatnekar said the company has a number of measures in place to protect its members, including violations to 'User Agreement' such as fake profiles.
"We investigate violations and take immediate actions where necessary. We also encourage members to utilise our Help Center to report violations," she added.
*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Dec 07 2015 | 5:07 PM IST

Next Story