Online Holiday Shopping Brings New Shipping Phishing Attacks

Shipping Phishing Attacks Featured

Over the past few weeks, we filled you in on many great Black Friday and Cyber Monday deals. Because of that, we feel we should also warn you about a phishing attack attached to online shopping. There are new shipping-related phishing attacks that send emails that look like they’re from DHL, Amazon, or FedEx, yet have a goal to steal your information.

Hackers Prey on Holiday Shopping Season

There were many great deals on laptops, smart TVs, smart speakers, robot vacuums, etc. Many of us took advantage of the deals. Additionally, because of the global health crisis, more people than usual are choosing to do their shopping online rather than in brick-and-mortar stores.

However, hackers were privy to these deals as well. They set up an email phishing attack designed to make you think you are receiving an email about your upcoming shipment. Many times the emails are carrying the message of “Delivery Issue” or “Track Your Shipment.”

Shipping Phishing Attacks Online

The hackers could be hitting the mother lode. United States consumers spent $9 billion online on Black Friday, a figure up 21.6 percent over last year.

CheckPoint security researchers warned that this led to a 440 percent global increase in shipping-related phishing attacks in November compared to the month before.

DHL is the brand most imitated globally. Up to 56 percent of the total volume of shipping-related phishing emails are imitating DHL, with 37 percent imitating Amazon, and 7 percent imitating FedEx. The U.S. saw a 427 percent increase in shipping-related phishing emails, mostly imitating Amazon; Europe saw a 401 percent increase, mostly imitating DHL; and Asia Pacific saw a 185 percent increase, mostly imitating DHL.

Hackers aren’t just targeting consumers – they are also attempting to take advantage of the shippers who are overloaded with work delivering all these extra purchases. Check Point researchers noted a systematic operation with hackers targeting the entire online shopping ecosystem.

Shipping Phishing Attacks Globe

While typical phishing emails have the goal of convincing recipients to supply personal details, credit card information, or bank account credentials, these new phishing emails are impersonating shipping vendors to convince the recipients to submit the same information. Check Point believes hackers are assuming recipients aren’t as wary of opening shipping-related emails.

To Avoid Phishing Scams:

  • Never share credentials, such as usernames and passwords.
  • Be suspicious of emails asking you to reset your password.
  • Verify you are using an authentic URL.
  • Beaware of domains that look like the ones you use but are slightly different.
  • Pay attention to the language used in the emails before you act on them.
  • Watch for misspellings and bad grammar.

While diligently combing over emails, looking for shipping-related phishing attacks, don’t let your guard down regarding other phishing scams. Read on to learn how to combat cell phone phishing scams and how to recognize a phishing site and what to do if you gave away your credentials.

Subscribe to our newsletter!

Our latest tutorials delivered straight to your inbox

Laura Tucker Avatar

Read next

When the SS Great Eastern laid the first working transatlantic telegraph cable in 1866, a message that had taken ten days by steamship suddenly crossed the ocean in minutes, and the financial markets of London and New York were forced, within a single trading week, to invent the modern concept of synchronised global price.
The Big Ear telescope was scanning at 1420.4056 megahertz on the night of 15 August 1977, the exact frequency at which hydrogen atoms vibrate across the universe, because Giuseppe Cocconi and Philip Morrison had argued years earlier that any species trying to be found would broadcast on that channel — and then, for 72 seconds, something did.
In 2016, archaeologists dated two rings of snapped stalagmites in France’s Bruniquel Cave to 176,500 years ago, evidence that Neanderthals had walked 336 metres into darkness with fire and built architecture deep underground long before modern humans reached Europe
Otto von Bismarck was 74 when Germany adopted the world’s first national old-age social insurance program in 1889, setting the pension age at 70 after years of fighting socialists with bans, laws, and a promise few workers would live long enough to use
When cosmonaut Valeri Polyakov stepped out of his Soyuz capsule in March 1995 after 437 consecutive days aboard Mir, doctors recorded him at several centimetres above his pre-flight height, and his spine had become so unaccustomed to gravity that the recovery team carried him to a chair rather than risk the compression of letting him walk.
When Bell Labs engineer Karl Jansky pointed a rotating antenna at the sky in 1932 looking for sources of transatlantic radio static, he kept picking up a faint hiss that peaked every 23 hours and 56 minutes, and he eventually realized he had become the first human to hear the center of the Milky Way.
When Harvard astronomer Cecilia Payne submitted her 1925 doctoral thesis arguing that the Sun was made almost entirely of hydrogen, the field’s senior figure Henry Norris Russell talked her into adding a line calling the result ‘almost certainly not real,’ and then published the same conclusion himself four years later to widespread acclaim.
When seismic waves from the Chicxulub impact reached what is now North Dakota roughly ten minutes after the asteroid struck, they appear to have triggered a ten-metre standing wave in an inland river that flung fish onto the bank and buried them under glass beads still falling from the sky.