Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Match Group CEO Spencer Rascoff says growing women’s share on Tinder is his “primary focus” to stem user declines; Sensor Tower says 75% of Tinder users are men (Kieran Smith/Financial Times)
    • Today’s NYT Connections Hints, Answers for April 20 #1044
    • AI Machine-Vision Earns Man Overboard Certification
    • Battery recycling startup Renewable Metals charges up on $12 million Series A
    • The Influencers Normalizing Not Having Sex
    • Sources say NSA is using Mythos Preview, and a source says it is also being used widely within the DoD, despite Anthropic’s designation as a supply chain risk (Axios)
    • Today’s NYT Wordle Hints, Answer and Help for April 20 #1766
    • Scandi-style tiny house combines smart storage and simple layout
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Monday, April 20
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»Address bar shows hp.com. Browser displays scammers’ malicious text anyway.
    News

    Address bar shows hp.com. Browser displays scammers’ malicious text anyway.

    Editor Times FeaturedBy Editor Times FeaturedJune 19, 2025No Comments4 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link


    Not the Apple web page you are in search of

    “If I confirmed the [webpage] to my dad and mom, I do not assume they’d have the ability to inform that that is faux,” Jérôme Segura, lead malware intelligence analyst at Malwarebytes, stated in an interview. “Because the person, if you happen to click on on these hyperlinks, you assume, ‘Oh I am truly on the Apple web site and Apple is recommending that I name this quantity.’”

    The unknown actors behind the rip-off start by shopping for Google adverts that seem on the prime of search outcomes for Microsoft, Apple, HP, PayPal, Netflix, and different websites. Whereas Google shows solely the scheme and host identify of the positioning the ad hyperlinks to (for example, https://www.microsoft.com), the ad appends parameters to the trail to the proper of that tackle. When a goal clicks on the ad, it opens a web page on the official website. The appended parameters then inject faux telephone numbers into the web page the goal sees.

    A faux telephone quantity injected right into a Microsoft webpage.

    Credit score:
    Malwarebytes

    A faux telephone quantity injected right into a Microsoft webpage.


    Credit score:

    Malwarebytes



    A faux telephone quantity injected into an HP webpage.

    Credit score:
    Malwarebytes

    A faux telephone quantity injected into an HP webpage.


    Credit score:

    Malwarebytes

    Google requires adverts to show the official area they hyperlink to, however the firm permits parameters to be added to the proper of it that are not seen. The scammers are benefiting from this by including strings to the proper of the hostname. An instance:

    /kb/index?web page=search&q=☏☏Callpercent20Uspercent20percent2B1-805-749-2108percent20AppIepercent20HeIpIinepercent2Fpercent2Fpercent2Fpercent2Fpercent2Fpercent2Fpercent2F&product=&doctype=&currentPage=1&includeArchived=false&locale=en_US&sort=natural

    The parameters aren’t displayed within the Google ad, so a goal has no apparent motive to suspect something is amiss. When clicked on, the ad results in the right hostname. The appended parameters, nonetheless, inject a faux telephone quantity into the webpage the goal sees. The method works on most browsers and in opposition to most web sites. Malwarebytes.com was among the many websites affected till not too long ago, when the positioning started filtering out the malicious parameters.



    Faux quantity injected into an Apple webpage.

    Credit score:
    Malwarebytes

    Faux quantity injected into an Apple webpage.


    Credit score:

    Malwarebytes

    “If there’s a safety flaw right here it’s that once you run that URL it executes that question in opposition to the Apple web site and the Apple web site is unable to find out that this isn’t a authentic question,” Segura defined. “It is a preformed question made by a scammer, however [the website is] not capable of determine that out. In order that they’re simply spitting out no matter question you’ve.”

    Thus far, Segura stated, he has seen the scammers abuse solely Google adverts. It is not identified if adverts on different websites may be abused in an analogous manner.

    Whereas many targets will have the ability to acknowledge that the injected textual content is faux, the ruse might not be so apparent to individuals with imaginative and prescient impairment, cognitive decline, or who’re merely drained or in a rush. When somebody calls the injected telephone quantity, they’re related to a scammer posing as a consultant of the corporate. The scammer can then trick the caller into handing over private or cost card particulars or permit distant entry to their laptop. Scammers who declare to be with Financial institution of America or PayPal attempt to acquire entry to the goal’s monetary account and drain it of funds.

    Malwarebytes’ browser safety product now notifies customers of such scams. A extra complete preventative step is to by no means click on on hyperlinks in Google adverts, and as a substitute, when doable, to click on on hyperlinks in natural outcomes.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Match Group CEO Spencer Rascoff says growing women’s share on Tinder is his “primary focus” to stem user declines; Sensor Tower says 75% of Tinder users are men (Kieran Smith/Financial Times)

    April 20, 2026

    Sources say NSA is using Mythos Preview, and a source says it is also being used widely within the DoD, despite Anthropic’s designation as a supply chain risk (Axios)

    April 19, 2026

    Vercel says it detected unauthorized access to its internal systems after a hacker using the ShinyHunters handle claimed a breach on BreachForums (Lawrence Abrams/BleepingComputer)

    April 19, 2026

    A look at Dylan Patel’s SemiAnalysis, an AI newsletter and research firm that expects $100M+ in 2026 revenue from subscriptions and AI supply chain research (Abram Brown/The Information)

    April 19, 2026

    Google is in talks with Marvell Technology to develop a memory processing unit that works alongside TPUs, and a new TPU for running AI models (Qianer Liu/The Information)

    April 19, 2026

    At the Beijing half-marathon, several humanoid robots beat human winners by 10+ minutes; a robot made by Honor beat the human world record held by Jacob Kiplimo (Reuters)

    April 19, 2026

    Comments are closed.

    Editors Picks

    Match Group CEO Spencer Rascoff says growing women’s share on Tinder is his “primary focus” to stem user declines; Sensor Tower says 75% of Tinder users are men (Kieran Smith/Financial Times)

    April 20, 2026

    Today’s NYT Connections Hints, Answers for April 20 #1044

    April 20, 2026

    AI Machine-Vision Earns Man Overboard Certification

    April 20, 2026

    Battery recycling startup Renewable Metals charges up on $12 million Series A

    April 20, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    Study links societal conditions to dark personality traits

    June 20, 2025

    Newest Roomba makes mopping and vacuuming even more hands-off

    January 31, 2025

    SEC charges Lottery.com and former executives for alleged financial fraud

    January 27, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.