{"id":15268,"date":"2020-01-16T14:05:23","date_gmt":"2020-01-16T10:05:23","guid":{"rendered":"https:\/\/me-en.kaspersky.com\/blog\/data-leak-compensation-scam\/15268\/"},"modified":"2020-01-16T14:06:35","modified_gmt":"2020-01-16T10:06:35","slug":"data-leak-compensation-scam","status":"publish","type":"post","link":"https:\/\/me-en.kaspersky.com\/blog\/data-leak-compensation-scam\/15268\/","title":{"rendered":"Uncle Sam compensates you for data leaks (yeah, right)"},"content":{"rendered":"<p><a href=\"https:\/\/www.kaspersky.com\/blog\/collection-numba-one\/25403\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Data leaks<\/a> of all sorts regularly crop up in the news, and recently so have fines, some potentially reaching into the <a href=\"https:\/\/edition.cnn.com\/2018\/12\/14\/tech\/facebook-billion-dollar-fine\/index.html\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">billions<\/a>, slapped on the companies responsible. If companies have to pay for data leaks, surely some of that money goes to the victims, right?<\/p>\n<h2>Surprise from the US Trading Commission<\/h2>\n<p>Recently, a curious site caught our eye. Seemingly owned by a certain Personal Data Protection Fund, the website\u2019s main page states that the fund was created by the \u201cUS Trading Commission.\u201d<\/p>\n<p>At first glance, the site looks reasonably sound, with a restrained design showing a hefty sum on the right. A large banner at the top of the page announces that the fund awards compensation for leaks of personal data \u2014 for which citizens of any country in the world can apply.<\/p>\n<div id=\"attachment_32059\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140531\/data-leak-compensation-scam-screen-1.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32059\" class=\"size-full wp-image-15269\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140531\/data-leak-compensation-scam-screen-1.jpg\" alt=\"US Trading Commission offers compensation for data leaks\" width=\"1346\" height=\"740\"><\/a><p id=\"caption-attachment-32059\" class=\"wp-caption-text\">US Trading Commission offers compensation for data leaks<\/p><\/div>\n<p>For those interested, the site offers to check whether your data has ever leaked. For this, you need to specify your surname, first name, phone number, and social media accounts. Above the input form is a warning that entering other people\u2019s data will result in a severe penalty.<\/p>\n<div id=\"attachment_32060\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140540\/data-leak-compensation-scam-screen-2.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32060\" class=\"size-full wp-image-15271\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140540\/data-leak-compensation-scam-screen-2.jpg\" alt=\"To find out how much money you are entitled to, you must provide personal information\" width=\"1346\" height=\"830\"><\/a><p id=\"caption-attachment-32060\" class=\"wp-caption-text\">To find out how much money you are entitled to, you must provide personal information<\/p><\/div>\n<p>However, it turns out that the website accepts any information, even complete gobbledegook. For example, we inquired about the personal data of a citizen named fghfgh fghfgh. The site pondered for a while, seemingly connecting to a database of information about leaks\u2026<\/p>\n<div id=\"attachment_32061\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140548\/data-leak-compensation-scam-screen-3.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32061\" class=\"size-full wp-image-15273\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140548\/data-leak-compensation-scam-screen-3.jpg\" alt=\"The site supposedly searches for information about leaks\" width=\"1346\" height=\"800\"><\/a><p id=\"caption-attachment-32061\" class=\"wp-caption-text\">The site supposedly searches for information about leaks<\/p><\/div>\n<p>\u2026and lo and behold, found that our fictional character with an unpronounceable name had indeed had their data leaked. Moreover, it turned out that someone had already used their photos, videos, and contact information, and so fghfgh was entitled to compensation in excess of $2,500!<\/p>\n<div id=\"attachment_32062\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140555\/data-leak-compensation-scam-screen-4.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32062\" class=\"size-full wp-image-15275\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140555\/data-leak-compensation-scam-screen-4.jpg\" alt=\"The site found information about a leak and calculated the amount of compensation\" width=\"1346\" height=\"850\"><\/a><p id=\"caption-attachment-32062\" class=\"wp-caption-text\">The site found information about a leak and calculated the amount of compensation<\/p><\/div>\n<h2>Buy a temporary SSN<\/h2>\n<p>One might think it would suffice to give a bank card number and wait for the payment to be credited. Not quite. The charitable fund cannot send money without knowing your SSN (social security number), a nine-digit number issued to U.S. citizens as well as permanent and temporary working residents.<\/p>\n<p>This unique number is used for almost everything in the U.S., including paying taxes, applying for a job, renting a home, and so on.<\/p>\n<p>But if you don\u2019t have one, never fear: You can simply check the box next to the line \u201cI\u2019am don\u2019t have SSN\u201d (English grammar doesn\u2019t seem to be the scammers\u2019 strong point).<\/p>\n<div id=\"attachment_32063\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140603\/data-leak-compensation-scam-screen-5.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32063\" class=\"size-full wp-image-15277\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140603\/data-leak-compensation-scam-screen-5.jpg\" alt=\"Form for entering a card number and SSN\" width=\"1346\" height=\"820\"><\/a><p id=\"caption-attachment-32063\" class=\"wp-caption-text\">Form for entering a card number and SSN<\/p><\/div>\n<p>To get around the problem of not having an SSN, the site offers to sell you a temporary one! In comparison with the amount of compensation dangling in front of your eyes, the $9 price tag is a trifle.<\/p>\n<div id=\"attachment_32064\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140610\/data-leak-compensation-scam-screen-6.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32064\" class=\"size-full wp-image-15279\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140610\/data-leak-compensation-scam-screen-6.jpg\" alt=\"Scammers offer a temporary SSN for a small fee\" width=\"1346\" height=\"820\"><\/a><p id=\"caption-attachment-32064\" class=\"wp-caption-text\">Scammers offer a temporary SSN for a small fee<\/p><\/div>\n<p>If you do try to complete the transfer without buying an SSN, the site will return an error and demand a temporary number. And if by some chance you happen to specify a valid SSN in the fraudulent form, you will still be asked to buy a temporary one.<\/p>\n<div id=\"attachment_32065\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140618\/data-leak-compensation-scam-screen-7.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32065\" class=\"size-full wp-image-15281\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140618\/data-leak-compensation-scam-screen-7.jpg\" alt=\"The site returns an error if the user tries to complete the transfer without a temporary SSN\" width=\"1346\" height=\"790\"><\/a><p id=\"caption-attachment-32065\" class=\"wp-caption-text\">The site returns an error if the user tries to complete the transfer without a temporary SSN<\/p><\/div>\n<p>Those who decide to purchase a temporary SSN get redirected to a payment form. If you happen to do it from a Russian IP address, this payment form appears in Russian, and the purchase price is specified in rubles. This is strange. Why would a U.S. government agency require payment in a foreign currency?<\/p>\n<div id=\"attachment_32066\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140626\/data-leak-compensation-scam-screen-8.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32066\" class=\"size-full wp-image-15283\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140626\/data-leak-compensation-scam-screen-8.jpg\" alt=\"Russian-language temporary SSN payment form\" width=\"1346\" height=\"820\"><\/a><p id=\"caption-attachment-32066\" class=\"wp-caption-text\">Russian-language temporary SSN payment form<\/p><\/div>\n<p>Residents of other countries are likely to be redirected to a less suspicious English-language form asking for payment in dollars.<\/p>\n<div id=\"attachment_32067\" style=\"width: 1356px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140634\/data-leak-compensation-scam-screen-9.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-32067\" class=\"size-full wp-image-15285\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/37\/2020\/01\/16140634\/data-leak-compensation-scam-screen-9.jpg\" alt=\"English-language temporary SSN payment form\" width=\"1346\" height=\"750\"><\/a><p id=\"caption-attachment-32067\" class=\"wp-caption-text\">English-language temporary SSN payment form<\/p><\/div>\n<h2>Are Russian online scammers going international?<\/h2>\n<p>Of course, this is scam. The Personal Data Protection Fund does not exist, and neither does the US Trading Commission, as you might have guessed. The name of the real organization the scammers apparently are trying to impersonate here is Federal Trade Commission, but the FTC does not hand out compensation indiscriminately.<\/p>\n<p>The scammers themselves are most likely Russian speakers, as suggested by the ruble payment form, plus the suspicious similarity of the scheme to other easy money offers that regularly tempt residents of Russia and the CIS.<\/p>\n<p>The e-bait in those schemes varies \u2014 <a href=\"https:\/\/www.kaspersky.com\/blog\/youtube-phishing-scam\/25600\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">giveaways<\/a>, <a href=\"https:\/\/www.kaspersky.ru\/blog\/youtube-scam-videos\/23256\/\" target=\"_blank\" rel=\"noopener noreferrer\">surveys<\/a>, <a href=\"https:\/\/www.kaspersky.ru\/blog\/pension-fraud\/21259\/\" target=\"_blank\" rel=\"noopener noreferrer\">secret retirement savings<\/a>, even a <a href=\"https:\/\/www.kaspersky.ru\/blog\/taxi-dispatcher-scam\/23726\/\" target=\"_blank\" rel=\"noopener noreferrer\">part-time job as a taxi dispatcher<\/a> \u2014 but they tend to be in Russian (as are some of the preceding links), and the bottom line is always the same: the juicy promise of quite a bit of easy money, followed by a demand to pay for an inexpensive service, be it a commission, a \u201csecuring\u201d payment, or a temporary SSN.<\/p>\n<p>The present scheme uses the same payment systems as previous ones. This too leaves a familiar trail of Russian cybercriminal breadcrumbs. The only difference with the compensation scam is the wider attack geography. For example, this time victims were located not only in Russia and neighboring countries, but also in Algeria, Egypt, the UAE, and elsewhere.<\/p>\n<h2>How to avoid the trap<\/h2>\n<p>Such scams are aimed at those hopeful victims who wouldn\u2019t find such an offer suspicious. Therefore, our main tip is to remain vigilant:<\/p>\n<ul>\n<li><strong>Do not trust<\/strong>. If someone promises a large cash payout for something as trivial as taking part in a survey, it is almost certainly a trick. And if you are asked to pay something to get the funds, you can be doubly sure it\u2019s a swindle.<\/li>\n<li><strong>Verify<\/strong>. Google the organization to see if it actually exists, and if it does, take a close look at its website. Pay attention to the language: A reputable organization will not publish text full of errors and typos.<\/li>\n<li><strong>Use trusted resources<\/strong>. If you are concerned about your data\u2019s security, specifically passwords, you can check whether it has been affected by a leak at <a href=\"https:\/\/haveibeenpwned.com\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">haveibeenpwned.com<\/a>. Created by infosec expert Troy Hunt, this data breach search resource provides the most up-to-date information about data leaks.<\/li>\n<li><strong>Protect yourself<\/strong>. Use a reliable antivirus solution with protection against phishing and online fraud, such as <a href=\"https:\/\/me-en.kaspersky.com\/plus?icid=me-en_bb2022-kdplacehd_acq_ona_smm__onl_b2c_kdaily_lnk_sm-team___kplus___\" target=\"_blank\" rel=\"noopener\">Kaspersky Plus<\/a>.<\/li>\n<\/ul>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kis-top3\">\n","protected":false},"excerpt":{"rendered":"<p>Under the pretext of compensation for data leaks, fraudsters are selling &#8220;temporary U.S. social security numbers.&#8221;<\/p>\n","protected":false},"author":2462,"featured_media":15287,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1486],"tags":[80,695,2215,2216],"class_list":{"0":"post-15268","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-threats","8":"tag-fraud","9":"tag-scam","10":"tag-swindle","11":"tag-trick"},"hreflang":[{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/data-leak-compensation-scam\/15268\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/data-leak-compensation-scam\/18394\/"},{"hreflang":"ar","url":"https:\/\/me.kaspersky.com\/blog\/data-leak-compensation-scam\/7357\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/data-leak-compensation-scam\/20154\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/data-leak-compensation-scam\/18455\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/data-leak-compensation-scam\/16875\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/data-leak-compensation-scam\/20898\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/data-leak-compensation-scam\/19646\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/data-leak-compensation-scam\/26027\/"},{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/data-leak-compensation-scam\/7554\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/data-leak-compensation-scam\/32057\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/data-leak-compensation-scam\/13600\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/data-leak-compensation-scam\/13876\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/data-leak-compensation-scam\/12641\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/data-leak-compensation-scam\/21898\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/data-leak-compensation-scam\/26623\/"},{"hreflang":"nl","url":"https:\/\/www.kaspersky.nl\/blog\/data-leak-compensation-scam\/24821\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/data-leak-compensation-scam\/20837\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/data-leak-compensation-scam\/25679\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/data-leak-compensation-scam\/25510\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/me-en.kaspersky.com\/blog\/tag\/fraud\/","name":"fraud"},"_links":{"self":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/15268","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/users\/2462"}],"replies":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/comments?post=15268"}],"version-history":[{"count":9,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/15268\/revisions"}],"predecessor-version":[{"id":15286,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/15268\/revisions\/15286"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/media\/15287"}],"wp:attachment":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/media?parent=15268"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/categories?post=15268"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/tags?post=15268"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}