Crooks Cold-Calling UK Schools and Tricking Staff Into Installing Ransomware

Jack

Administrator
Thread author
Verified
Staff Member
Well-known
Jan 24, 2011
9,378
The "ActionFraud" UK National Fraud & Cyber Crime Reporting Center has issued an alert this week to UK educational institutes, warning against cyber-criminals cold-calling British schools and tricking staffers into installing ransomware on the school's computers.

According to the alert, crooks are posing as government officials and asking for the phone and email address for the school's head teacher or financial administrator.

The scammers convince the person who answered the phone to provide the desired information by saying they need to deliver sensitive files and must make sure the head teacher or financial administrator receives them.

In most cases, crooks say they have to deliver files about exam guidance procedures or mental health assessments, which they don't want to land in generic school inboxes, due to their sensitive nature.

Scammers have been very active, successful
According to the ActionFraud center, crooks deliver an email with a ZIP file attached, which contains an Excel or Word document. Users that opened these files have had their computers infected with ransomware.

Several schools have had their computer network locked down by ransomware after receiving these type of calls.

In some cases, the ransom note asked by the ransomware was as high as £8,000 ($9,800).

According to ActionFraud experts, the scammers are easy to recognize because they make a simple mistake. During their phone calls, they claim to be from the Department of Education, but the Department's real title is the Department for Education. This small detail could help British schools identify scammers during their initial calls.



Read more: Crooks Cold-Calling UK Schools and Tricking Staff Into Installing Ransomware
 
K

KGBagent47

That's clever social engineering. By claiming it has to do with health assessments an unwitting teacher, counselor or principal will probably be less likely to involve IT, due to privacy concerns or laws.
 
  • Like
Reactions: DardiM and frogboy

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top