New threat of phishing in messenger apps

The biggest share of detected malicious links between December 2020 and May 2021 were sent via WhatsApp (89.6%), followed by Telegram (5.6%), Viber (4.7%) and Hangouts (< 1%).

Anonymized data voluntary provided by Kaspersky Internet Security for Android users has shown messenger apps are popular targets by phishing scammers.

Kaspersky Internet Security for Android has a new feature, Safe Messaging, which prevents users from opening malicious links that they receive in messenger apps and through SMS.

As a result, Kaspersky analyzed anonymized clicks on phishing links across messenger apps and found that between December 2020 and May 2021, 91,242 detections were recorded globally.

It was revealed that the biggest share of detected malicious links during the 6-month period were sent via WhatsApp (89.6%), followed by Telegram (5.6%). Viber is in third place with a share of 4.7% and Hangouts has less than one percent.

Countries experiencing the highest number of phishing attacks were Russia (46%), Brazil (15%) and India (7%). Globally, 480 detections were recorded per day. 

According to the statistics, Kaspersky Internet Security for Android detected the biggest number of malicious links in WhatsApp, partly due to the fact that it is the most popular messenger globally.

The biggest share of such messages was detected in Russia (42%), Brazil (17%) and India (7%). Telegram had the least amount of detections, but was similar in geography to WhatsApp.

The biggest number of malicious links were detected in Russia (56%), India (6%) and Turkey (4%). High figures in Russia are probably due to the increased level of popularity of this messenger in the country.

Based on statistics, Viber and Hangouts received a smaller number of recorded detections. The key difference between them is regional representation.

The biggest number of detects in Viber was identified mostly in Russia with 89%, and the CIS countries – Ukraine 5% and Belarus 2%, and the majority of Hangouts’ detections were from the USA (39%) and France (39%).

In terms of the number of phishing attacks recorded per user on WhatsApp, Brazil (177) and India (158) led the way. At the same time, Russian users have become leaders in the number of detections on Viber (305) and Telegram (79) compared to other countries.

Tatyana Shcherbakova, senior web content analyst at Kaspersky.

Tatyana Shcherbakova, senior web content analyst at Kaspersky said scammers have the ability to use the built-in functionality of applications to carry out attacks.

“Vigilance combined with anti-phishing technologies form a reliable tool in the fight against phishing in messenger apps,” she said.

Kaspersky has provided the following tips to reduce the risk of falling foul of scams and receiving malicious links across messenger:

  • Be vigilant and look for misspellings or other irregularities in links.
  • Be aware and don’t share any suspicious links with your contacts. A ‘chain scheme’ is common practice, where a scammer asks a user to share the malicious link that appears legitimate to his contacts, as it is from a person they know.
  • Scammers often use WhatsApp and other messengers to communicate with users who were found on a legitimate resource (e.g. various marketplaces and accommodation booking services) and also use them as a method of communication in malicious messages. Even if messages and websites look real, the hyperlinks, most likely, will have incorrect spelling, or they can redirect you to a different place.
  • Even if a message or letter came from one of your best friends, remember that their accounts could also have been hacked. Remain cautious in any situation. Even if a message seems friendly, be wary of links and attachments.
  • Install a trusted security solution such as Kaspersky Internet Security for Android.