{"id":65090,"date":"2024-08-05T15:43:36","date_gmt":"2024-08-05T07:43:36","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=65090"},"modified":"2024-08-05T15:43:39","modified_gmt":"2024-08-05T07:43:39","slug":"new-modus-exposed-pldt-group-flags-unclickable-links-being-sent-by-scammers","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2024\/08\/05\/new-modus-exposed-pldt-group-flags-unclickable-links-being-sent-by-scammers\/","title":{"rendered":"New modus exposed, PLDT Group flags unclickable links being sent by scammers"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>PLDT&#8217;s wireless unit Smart Communications, Inc. (Smart) continues to step up its measures against text scams. As Smart rolls out its improved blocking tool and boosts its #BeCyberSmart awareness campaign, it also warns against cybercriminals employing new strategies to reach potential victims.<br><\/strong>\u00a0<br>\u201cSmart\u2019s much improved blocking capabilities have prevented a significant number of SMShing messages from reaching customers. But scammers keep looking for new ways to run their phishing activities. They now send unclickable links, but with the same goal of luring customers into opening malicious domains,\u201d said Jojo G. Gendrano, SVP and Chief Information Security Officer at PLDT and Smart.<br>\u00a0<br>Based on Smart\u2019s investigation, scammers replace the dots in a URL with another character like \u2018underscore\u2019 or \u2018slash\u2019 to mask or conceal the hyperlinks. They will then ask potential victims to manually copy the address, place it on their browser and replace the special characters with dots, thereby activating the link. Another method is sending what may look like IP addresses but are numeric clickable links.<br>\u00a0<br>Coupled with advancement in the PLDT Group\u2019s cybersecurity tools, PLDT and Smart likewise engage customers to become force multipliers in the fight against SMShing and other mobile technology-aided crimes and #BeCyberSmart. Useful #BeCybersmart tips to identify phishing, the most common form of cyberattack, can be summed up in the acronym \u2018SCAM\u2019.<br>\u00a0<br><strong>S is for \u2018Suspicious\u2019.<\/strong>\u00a0Never answer calls or respond to messages from unknown persons or entities, especially those asking for one-time passwords or OTPs. Official bank and Smart agents will never ask for your OTP.<br>\u00a0<br><strong>C is for \u2018Clickbait\u2019.<\/strong>\u00a0Scam texts often bait victims with too-good-to-be-true offers or prize winnings, urging them to click the link to avail of the limited-time offer.<br>\u00a0<br><strong>A is for \u2018Alarming\u2019.<\/strong>\u00a0Scammers also prod potential victims to respond to the message or to click the embedded link by creating a false sense of alarm such as account suspension or loss of access.<br>\u00a0<br><strong>M stands for \u2018Malicious\u2019.<\/strong>\u00a0Whether sent via SMS or email, these messages are often accompanied by a link that leads to a phishing website.<br>\u00a0<br>If you receive suspicious messages or calls, please report them to cybersecurityincidents@smart.com.ph and cybersecurityincidents@pldt.com.ph or to Smart\u2019s verified and official social media pages &#8211; Smart Communications on Facebook and @SmartCares on X &#8211; or call our hotline *888.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u201cSmart\u2019s much improved blocking capabilities have prevented a significant number of SMShing messages from reaching customers. But scammers keep looking for new ways to run their phishing activities. They now send unclickable links, but with the same goal of luring customers into opening malicious domains,\u201d said Jojo G. Gendrano, SVP and Chief Information Security Officer at PLDT and Smart.<\/p>\n","protected":false},"author":1,"featured_media":45550,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[286,379,54,343],"class_list":["post-65090","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-it-security","tag-pldt","tag-security","tag-smart-communications"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/65090","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=65090"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/65090\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/45550"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=65090"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=65090"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=65090"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}