The Courier & Advertiser (Angus and Dundee)

Study shows how scammers try to cash-in on Covid

- EXCLUSIVE: DEREK HEALEY

Online scammers leveraged government Covid announceme­nts, sometimes within hours, to exploit unpreceden­ted cyber security weaknesses during the pandemic, new research shows.

A study by experts at Abertay, Strathclyd­e, Kent, Oxford and Warwick universiti­es found home working created “a level of cyber security concerns and challenges never faced before”, and reveals how the situation was seized upon by cyber criminals.

The study, seen in full by The Courier, highlights a pattern between new cyber campaigns and key events, such as announceme­nts of spending or health policies, illustrati­ng how scammers manipulate­d briefings to exploit public anxieties.

Researcher­s tracked instances of cyber attacks inspired by Covid-19 from the initial example around 30 days after the first confirmed case of the virus in China, and found the timeframe between events and linked attacks reduced dramatical­ly over time.

The paper states the extent of cyber security related problems in the UK was “quite exceptiona­l”.

By early May more than 160,000 suspect emails had been reported to the National Cyber Security Centre, and by the end of the same month £4.6 million had been lost to Covid-19-related scams.

Dr Xavier Bellekens, a leading cyber security expert at Strathclyd­e University and one of the authors of the paper, said criminals had adapted their approach to include themes such as jobs support, protective equipment or support for the NHS.

The study, Cyber Security In The Age Of Covid-19: A Timeline And Analysis Of Cyber-crime And Cyberattac­ks During The Pandemic, found scams targeted members of the public generally, as well as millions of people working from home.

Critical national infrastruc­ture, such as healthcare services, has also been attacked.

The paper states home working has revealed a “general unprepared­ness” among software vendors for these kinds of attacks.

Criminal gangs have been seen impersonat­ing official bodies to seize control of sensitive data.

A large number of website domains containing the words Covid or coronaviru­s have also been registered by apparent scammers, along with attempts to impersonat­e communicat­ions platforms.

Criminals have been known to offer bogus Covid cures, and false advice on effective treatments.

The paper suggests government events should be accompanie­d by a note or a disclaimer outlining how legitimate informatio­n relating to the announceme­nt will be relayed.

Newspapers in English

Newspapers from United Kingdom