Amazon Phishing Emails

Look-out for fake Amazon order notification emails that ask you to call “fraud prevention support” if you didn’t authorise the supposed payment. The emails, which feature seemingly authentic Amazon branding, list supposed purchases for high priced items such as smart TVs and game consoles. The total cost of the listed purchases is usually several thousand dollars.

These emails are not from Amazon and they do not contain details of any real purchases made via your Amazon account. Even if you’ve never logged on to Amazon some of these scams can affect you, too. 

The goal of the scam emails is to panic you into calling the supposed fraud prevention number. The scammers hope that you will call in the mistaken belief that your account has been compromised and that high-value items have been purchased using your credit card. If you do call, you will be connected to a scammer posing as an Amazon fraud prevention support worker.  After you explain the situation, the scammer will claim that the purchase can be reversed and the supposed account breach rectified.

Then, the scammer will claim that to proceed with the reversal, he or she will need you to provide your credit card details, your Amazon login credentials, your name and address, and other sensitive personal information. After you provide the requested information, the scammer will assure you that the transaction has been reversed and that the funds will be put back into your account within a specified time-frame such as 24 hours.

You might relax, believing that you have dealt with the issue. But, now, the scammers can use the information stolen from you to hijack your Amazon account and make fraudulent purchases in your name, fraudulently use your credit card, and, possibly, steal your identity as well.

If you receive an email that claims to be from Amazon and lists purchases you know nothing about, be sure to proceed with caution. Do not call any number listed in the email. Do not click any links or open any attachments that the email contains.
Instead, log in to your Amazon account via your browser or a trusted app and check for any unauthorised purchases. Also, check your bank or credit card provider.  If the email is a scam, there will be no unexpected transactions listed in your accounts.

These are sophisticated frauds thar share some  characteristics with the fake Tech Support scams that have generated over £2m for criminals un the UK last year, according to Action Fraud.

If there are such transactions, you can then contact your credit card provider and Amazon for assistance. These scams work because the emails may appear genuine at first glance and they are designed to get people to act quickly without due forethought.

Amazon takes phishing and spoofing attempts seriously. If you receive correspondence you think may not be from Amazon, please report it to Amazon.

Amazon:       Kaspersky:       Hoax Slayer:     Hertforshire Mercury:      Action Fraud:

You Might Also Read:

Popular Types Of Phishing Emails:

 

« Pro-Active Cyber Protection
Bug Bounty & Crowd-Sourced Cyber Security »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Perimeter 81 / How to Select the Right ZTNA Solution

Perimeter 81 / How to Select the Right ZTNA Solution

Gartner insights into How to Select the Right ZTNA offering. Download this FREE report for a limited time only.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

Astra

Astra

Astra's website security solution provides real-time protection against malware, hackers, SQLi, XSS, DDoS, LFI and RFI.

Citicus

Citicus

Citicus provides world-class security, risk and compliance management software, plus supporting services.

KPN

KPN

KPN is a leading supplier of ICT services including Cyber Security, Identity & Privacy, Secure Communications and Business Continuity.

GeoLang

GeoLang

GeoLang’s Ascema platform protects sensitive information at the content level by identifying, classifying and tracking data across the corporate infrastructure.

Cytelligence

Cytelligence

Cytelligence is a cyber security consulting company with deep expertise in Cyber Breach Response, Cyber Breach Investigations, and Digital Forensics.

Women in CyberSecurity (WiCyS)

Women in CyberSecurity (WiCyS)

Women in CyberSecurity (WiCyS) is a non-profit organization dedicated to the recruitment, retention and advancement of women in the cybersecurity field.

Dale Peterson

Dale Peterson

Dale Peterson, a leading ICS security and control system IT information expert, provides consulting services to assess and improve the security of SCADA and DCS.

Business Hive Vilnius (BHV)

Business Hive Vilnius (BHV)

BHV is one of the oldest startup incubator and technology hubs in the Baltics, primarily focused on hardware, security, blockchain, AI, fintech and enterprise software.

Orca Security

Orca Security

Orca Security delivers full stack visibility including prioritized alerts to vulnerabilities, compromises, misconfigurations, and more across your entire inventory on all your cloud accounts.

Infosequre

Infosequre

Infosequre builds up your security awareness culture and turns your employees into the first line of defense against cyber risks.

Tyler Technologies

Tyler Technologies

Tyler Technologies is a leading provider of end-to-end information management solutions and services for local governments.

Centraleyes

Centraleyes

Centraleyes (formerly CyGov) is a cutting-edge integrated cyber risk management platform that gives organizations unparalleled understanding of their cyber risk and compliance.

Laminar

Laminar

Laminar provides the only Public Cloud Data Protection solution that provides full visibility and enforcement capabilities across your entire public cloud infrastructure.

Nasuni

Nasuni

The Nasuni File Data Platform offers the protection, detection, and recovery of file shares from ransomware attacks or random disasters within minutes.

Silent Circle

Silent Circle

Silent Circle is the leader in end-to-end enterprise solutions for secure mobile communications.

Coastline Cybersecurity

Coastline Cybersecurity

Coastline Cyber is a cybersecurity consulting firm dedicated to helping organizations strengthen their security posture by reducing risks, mitigating threats, and protecting against attacks.