Recently, reports have emerged about new fraudulent schemes on WhatsApp. Malicious actors impersonate messenger support staff or acquaintances of users, urging them to connect to a proxy server, supposedly to bypass restrictions or enhance the app’s performance. As a result, users often lose access to their accounts, which then become hubs for illegal activities.
Against the backdrop of recent restrictions on WhatsApp in Russia, an ideal environment has been created for such attacks, as people seek ways to regain access to the service. Meanwhile, fake websites and apps are appearing online, preying on people’s trust.
Contents
How it looks
The victim receives a message or call supposedly from WhatsApp technical support or from a user who has been hacked. The scammers claim that there are problems with accessing the account due to blocking and promise to connect a proxy server to WhatsApp.
The user is asked to use a WhatsApp proxy or manually enter a third-party proxy address and port in the messenger settings, in the appropriate menu section. After doing so, all WhatsApp traffic will start going through the attacker’s server.
During this “proxy setup” process, the scammers convince the victim to send them an SMS code from WhatsApp. The user is persuaded to confirm login from a “new device” and send the secret code by SMS. As a result, the scammer gains full control over the victim’s account.
What threats are for users
The consequences of such actions are obvious. Fraudsters can use a hacked account to deceive other people: they start writing to contacts on behalf of the victim, luring them into giving money or misleading them into revealing personal data.
The victim’s voice messages can be used to imitate their voice. At the same time, all criminal actions are registered to the owner’s number and it is they who will have to face the consequences. In addition, WhatsApp quickly detects spam and fraud, after which it blocks the number, which is almost impossible to restore after a serious ban.
In other words, hacking a proxy gives fraudsters access to all of the user’s contacts and data, leading to financial and reputational losses.
How to protect your account
Follow these simple rules to avoid falling victim to such a scheme:
- Only set up a proxy server for WhatsApp through the official messenger settings and only when required. Download applications and updates only on the official App Store and Google Play stores and the official WhatsApp website.
- WhatsApp support will never ask you to share or send them your SMS code. If someone you don’t know asks for your confirmation code, it’s definitely a scam.
- Set a PIN code in your WhatsApp settings and change it regularly. Log in to the app using biometric authentication or your fingerprint to make it difficult for others to access your account. Update the app frequently, check the list of active sessions and do not share personal information with strangers in your chats.
Following these simple precautions will protect you from most scams. Remember, the vast majority of such cases occur with the assistance of the victims, who ease steps by providing all the data needed for hacking. It is important to remain vigilant and trust only official sources.
Conclusion
The new wave of WhatsApp scams shows how important it is to stay vigilant and practice good digital hygiene, as cybercriminals come up with new ways to steal people’s data and commit illegal acts. Malicious actors take advantage of ordinary users’ desire to bypass messenger restrictions, but ultimately pay double the price for it.
We sincerely hope that these recommendations will help you avoid WhatsApp restrictions and protect your accounts from such cases. We remind you that GREEN-API provides a flexible API for mailings and process automation in WhatsApp. Our technical support and sales departments will be happy to share all the necessary information and offer the best solution for your tasks.
GREEN-API is your gateway to the world of technology and communication!