Life Begins At » Beware scam emails this Christmas Holiday Season
Tech Talk

Beware scam emails this Christmas Holiday Season

The Australian Government has emailed alerts to hilight an increase in scam emails this holiday season. In recent months, scam emails claiming to be sent from reputable organisations are being used to harvest your personal details or to infect your computer with malicious software such as ransomware. Based on previous experience across Australia, email-based scams may increase during the 2016 holiday season.

The Government’s scam watch site has highlighted that in recent months, scammers have circulated fake email messages with malicious content that claim to be from the Australian Tax Office, AGL and Telstra. They have also used global brands such as PayPal to trick victims into providing personal details.

In many cases, scammers target these emails around events or deadlines that make the scam seem legitimate – such as the due date for submitting your business activity statements.

Shortly before Christmas 2015, the Australian Competition and Consumer Commission issued a warning about fake parcel deliveries that involved scammers taking advantage of the busy holiday season to send victims emails about ‘missed parcel deliveries’, purportedly from trusted services such as Australia Post or FedEx.

The ACCC said last year the scam emails may be personalised with individuals’ names and addresses, and include logos from the company the emails claim to be from.

“The email may mention a fee will be charged while they hold your undelivered item,” ACCC Deputy Chair Delia Rickard said at the time. “Scammers ask you to open an attachment or download a file to retrieve your parcel. If you follow these instructions, an executable file (.exe) will load on to your computer and install ransomware as soon as it is opened.”

What is ransomware?

Ransomware is a type of malicious software that handicaps computer functionality, for example, through browser hijacking or encrypting personal data, and offers to restore the functionality for a fee, which is a form of extortion.

Recovery of systems that have been infected with ransomware is almost impossible without clean backups, so prevention is always the best approach.

While there have been reports that files are recovered if the ransom is paid, this does not protect your computer against further attacks. The attacker may simply encrypt your files again, and increase the ransom. For this reason, responding to extortion is not encouraged.

Staying safe

Prevention is the best antidote to ransomware and other malware attacks.

  1. Use spam filters and be cautious when opening emails, especially if there are attachments.
  2. Make sure you are using a reputable security software product.
  3. Make sure it is up-to-date and switched on.
  4. Make sure your operating system and applications are up-to-date and fully patched.
  5. Run a full scan of your computer—regularly – or preferably set it to run automatically.
  6. Use strong and unique passwords.
  7. Set passwords on all your hardware devices (modems and routers) and change them regularly – never leave the default, factory set password in place – it is usually ‘admin’.
  8. Back up your data regularly.
  9. Keep a backup copy of your data in a safe place, disconnected from your computer and the internet, on a device that has been scanned.
  10. Only visit reputable websites and online services.

For information on how to recognise a scam email  CLICK HERE.



This story was first published by the ACCC Online and re-published by The Retiree in the interest of community safety.

About the author

Alana Lowes

Add Comment

Click here to post a comment