- What: A fraud campaign impersonates Russian companies to steal funds.
- Impact: International businesses are targeted through fake websites and phishing.
Phishing Fraud campaign impersonates Russian companies to steal funds July 29, 2026 Share By SC Staff Per The Hacker News, a sophisticated, long-running fraud campaign has been uncovered, where threat actors create fake websites impersonating major Russian companies to deceive international businesses and siphon funds. This operation has been active since 2017, according to F6. The attackers meticulously clone legitimate websites of Russian firms across various sectors, including manufacturing, logistics, and banking. These fraudulent sites, available in multiple languages, are used to trick international clients into making advance payments for non-existent goods. The scheme primarily targets businesses in Commonwealth of Independent States countries, utilizing cold calls, phishing emails, and fake corporate websites to initiate contact and distribute fraudulent banking details of shell companies. In some instances, unsuspecting sales representatives are hired to make initial contact, with communications then handed over to the fraudsters for final negotiations. These actors then provide fake commercial offers, contracts, and invoices, directing payments to their own accounts. One Azerbaijani company reportedly lost $150,000 in April 2025. Researchers have identified nearly 100 counterfeit domains linked to this coordinated campaign, with infrastructure sharing common DNS records and IP addresses. The campaign's evolution includes using .com, .org, and .net domains alongside earlier .ru domains, and even copying fraud warnings from legitimate company sites onto their fake counterparts. Businesses are advised to independently verify contact and payment details, check domain registration dates, and use trusted sources to vet business partners. Source: The Hacker News SC Staff Related Phishing Gen Z shows low cybersecurity awareness, Kaspersky study finds SC Staff July 29, 2026 A Kaspersky study of 7,200 respondents across 18 countries highlights that only 27% of Gen Z use mobile antivirus software, and a mere 28% regularly back up their phone data. Ransomware Steam forums used for ClickFix cryptominer attacks SC Staff July 27, 2026 In a report by Bleeping Computer, threat actors are exploiting Steam discussion forums to distribute cryptominers through a social engineering tactic known as ClickFix. Phishing Phishing attacks on insurance companies evolve to real-time account hijacking SC Staff July 27, 2026 Phishing campaigns targeting financial institutions are evolving from credential harvesting for later use to real-time account hijacking, based on information published by The Hacker News. Get daily email updates SC Media's daily must-read of the most current and pressing daily news Business Email By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy . Subscribe You can skip this ad in 5 seconds