Kurzfassung
Scammers submitted fraudulent data breach disclosures to the Maine Attorney General's public portal, fabricating incidents that named VRChat (2.4M users) and Discord (10M users) without any real compromise. The portal accepts unverified...
Wie es funktioniert
Scammers submitted fraudulent data breach disclosures to the Maine Attorney General's public portal, fabricating incidents that named VRChat (2.4M users) and Discord (10M users) without any real compromise. The portal accepts unverified...
Warnzeichen
- Breach notice lists vague or inconsistent dates (e.g., discovery after notification, placeholder phone numbers, free Gmail contacts). The cited submitting employee or email does not exist at the company. Official portals accept filings without identity verification, so the appearance of a notice does not prove a real breach
Was tun
- 1Verify any breach notice by contacting the company through its official website, never via links or numbers in the notice itself. Check the company's own security advisory page and known reporter outlets before reacting. Treat unsolicited follow up calls
Quelle
bleepingcomputer
Quelle geprueft vom Mythos Forensic Team
https://www.bleepingcomputer.com/news/security/maine-breach-portal-abused-to-publish-fake-data-breach-disclosures/FAQ
Ist Fake data breach notices posted on Maine portal hit VRChat and Discord ein reales Betrugsmuster?
Ja. Behandeln Sie Nachricht, Anruf oder Zahlungsaufforderung als verdaechtig, bis ein offizieller Kanal sie bestaetigt.
Was sind die ersten Warnzeichen?
Breach notice lists vague or inconsistent dates (e.g., discovery after notification, placeholder phone numbers, free Gmail contacts). The cited submitting employee or email does not exist at the company. Official portals accept filings without identity verification, so the appearance of a notice does not prove a real breach
Was sollte ich zuerst tun?
Verify any breach notice by contacting the company through its official website, never via links or numbers in the notice itself. Check the company's own security advisory page and known reporter outlets before reacting. Treat unsolicited follow up calls
Kann LegalAudit meinen Fall pruefen?
Ja. Starten Sie den kostenlosen Chat und fuegen Sie Nachricht, Link, Absender oder Zahlungsdaten ein.