En bref
Scammers submitted fraudulent data breach disclosures to the Maine Attorney General's public portal, fabricating incidents that named VRChat (2.4M users) and Discord (10M users) without any real compromise. The portal accepts unverified...
Comment ca fonctionne
Scammers submitted fraudulent data breach disclosures to the Maine Attorney General's public portal, fabricating incidents that named VRChat (2.4M users) and Discord (10M users) without any real compromise. The portal accepts unverified...
Signaux d'alerte
- Breach notice lists vague or inconsistent dates (e.g., discovery after notification, placeholder phone numbers, free Gmail contacts). The cited submitting employee or email does not exist at the company. Official portals accept filings without identity verification, so the appearance of a notice does not prove a real breach
Que faire
- 1Verify any breach notice by contacting the company through its official website, never via links or numbers in the notice itself. Check the company's own security advisory page and known reporter outlets before reacting. Treat unsolicited follow up calls
Source
bleepingcomputer
Source verifiee par Mythos Forensic Team
https://www.bleepingcomputer.com/news/security/maine-breach-portal-abused-to-publish-fake-data-breach-disclosures/FAQ
Fake data breach notices posted on Maine portal hit VRChat and Discord est une vraie arnaque ?
Oui. Traitez le message, l'appel ou la demande de paiement comme suspect jusqu'a verification via un canal officiel.
Quels sont les premiers signaux ?
Breach notice lists vague or inconsistent dates (e.g., discovery after notification, placeholder phone numbers, free Gmail contacts). The cited submitting employee or email does not exist at the company. Official portals accept filings without identity verification, so the appearance of a notice does not prove a real breach
Que faire en premier ?
Verify any breach notice by contacting the company through its official website, never via links or numbers in the notice itself. Check the company's own security advisory page and known reporter outlets before reacting. Treat unsolicited follow up calls
LegalAudit peut-il verifier mon cas ?
Oui. Lancez le chat gratuit et collez le message, le lien, l'expediteur ou les details de paiement.