Feeds

Queensland Police warn of tax refund phishing

Fake email mimics Australian Taxation Office formats

Top 5 reasons to deploy VMware with Tegile

Queensland Police are warning residents of the Sunshine State about a new phishing scam that sees emails arrive in Australian Taxation Office (ATO) livery, complete with promise of a refund.

Such emails are, we imagine here in El RegM’s antipodean eyrie, probably the only email one really wants to open from the ATO.

Queensland advise the email’s subject line is’ Subject: ID: 46 – Tax Refund Notice !’ and that the scam unfurls as follows:

The email advises the recipient to wait 6-9 working days for their “refund” to be received and they are directed to click on a link which appears to start as a genuine “ato.gov.au” email address, but on closer inspection contains a “@hotmail.com” address within the link. The fraudsters tell the recipient they will record their IP address, date and time and threaten that deliberate wrong inputs are criminally pursued and persecuted. When directed to the website recipients are confronted with an authentic looking web page and are required to enter an array of identity details, credit card number, credit card estimated credit card balance and amongst other things to upload a scan of their driver’s license.

The mail is, of course, a scam and no refund will be forthcoming. Instead, identity theft and unwanted credit card purchases await those who fall into this trap.

Detective Superintendent Brian Hay of the State Crime Operations Command’s Fraud and Corporate Crime Group says “While fake emails like the ATO scam email are nothing new, people are still falling victim to it each day. This is very much a concern to us.”

And to us, Detective Superintendent. And to us. ®

Internet Security Threat Report 2014

More from The Register

next story
'Kim Kardashian snaps naked selfies with a BLACKBERRY'. *Twitterati gasps*
More alleged private, nude celeb pics appear online
Home Depot ignored staff warnings of security fail laundry list
'Just use cash', former security staffer warns friends
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
UK.gov lobs another fistful of change at SME infosec nightmares
Senior Lib Dem in 'trying to be relevant' shocker. It's only taxpayers' money, after all
Who.is does the Harlem Shake
Blame it on LOLing XSS terroristas
Snowden, Dotcom, throw bombs into NZ election campaign
Claim of tapped undersea cable refuted by Kiwi PM as Kim claims extradition plot
Freenode IRC users told to change passwords after securo-breach
Miscreants probably got in, you guys know the drill by now
THREE QUARTERS of Android mobes open to web page spy bug
Metasploit module gobbles KitKat SOP slop
BitTorrent's peer-to-peer chat app Bleep goes live as public alpha
A good day for privacy as invisble.im also reveals its approach to untraceable chats
prev story

Whitepapers

Secure remote control for conventional and virtual desktops
Balancing user privacy and privileged access, in accordance with compliance frameworks and legislation. Evaluating any potential remote control choice.
Intelligent flash storage arrays
Tegile Intelligent Storage Arrays with IntelliFlash helps IT boost storage utilization and effciency while delivering unmatched storage savings and performance.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Beginner's guide to SSL certificates
De-mystify the technology involved and give you the information you need to make the best decision when considering your online security options.