Advertisement

We need your help now

Support from readers like you keeps The Journal open.

You are visiting us because we have something you value. Independent, unbiased news that tells the truth. Advertising revenue goes some way to support our mission, but this year it has not been enough.

If you've seen value in our reporting, please contribute what you can, so we can continue to produce accurate and meaningful journalism. For everyone who needs it.

Shutterstock
Cybersecurity

Android users warned over sophisticated 'missed delivery' text messages attempting to steal personal information

Vodafone Ireland, Eir and Three have all warned customers about the so-called FluBot scam today.

SOPHISTICATED SCAM TEXT messages circulating in Ireland are attempting to steal passwords and personal data through bogus package-tracking links.

The messages typically have a link which claims to contain details of a missed delivery. This link leads to what appears to be the company website but is, in fact, bogus.

The scam is believed to primarily target Android phones, but anyone with a smartphone is being warned to exercise caution.

Vodafone Ireland, Eir and Three have all warned customers about the so-called FluBot scam today, urging users to be cautious about any text messages they receive about a delivery which they are not expecting. 

The National Cybersecurity Centre (NCSC) confirmed that it had received reports of “a spyware software labeled FluBot affecting Android users in Ireland”.

“FluBot is used by malicious parties to steal passwords and sensitive data from the victims’ mobile device. It will access victims’ contacts and spread the malicious application through further text messages”, the centre said.

The link in the text goes to a fake website, prompting the user to download two .apk files, which are banking trojans – malware designed to deceive. Users will then be asked to manually override and allow an untrusted app download.

If you receive such a message, don’t click on any links – if you are expecting a delivery, check its status through the website where you ordered it.

The NCSC said that if victims have downloaded the untrusted app, they should perform a factory reset on their device. If you don’t have backups, you will lose your data, but you should not restore anything installed after you downloaded the untrusted app.

Reset your passwords, and if you have an Android phone, ensure that Google Play Protect is switched on.

Screenshot 2021-06-02 at 12.16.51 An example of the scam text messages circulating in Ireland

Your Voice
Readers Comments
53
This is YOUR comments community. Stay civil, stay constructive, stay on topic. Please familiarise yourself with our comments policy here before taking part.
Leave a Comment
    Submit a report
    Please help us understand how this comment violates our community guidelines.
    Thank you for the feedback
    Your feedback has been sent to our team for review.

    Leave a commentcancel