Categories: FeaturedNews

Top 3 Social Engineering Attacks Of 2016

Social engineering has been a popular attack vector for criminals, both in the online and offline world. Over time, some of these social engineering attacks have evolved over time. Three types of attack have made a significant impact in 2016, and it is likely similar methods will be used throughout 2017 and beyond.

#3 The Resume Spam And Ransomware

Initially discovered in June of 2015, the “resume social engineering attack” has proven to be quite successful. Criminals send batches of emails to enterprises and retailers. Every email contains a message in which someone sends over their resume in the hopes of landing a job. Although these messages may seem harmless, they are capable of wreaking a lot of havoc.

To be more precise, these spam emails involve a ransomware-laden email attachment. The resume in question contains the CryptoWall 3.0 ransomware family, which locks down the infected system and demands a Bitcoin ransom. In 2016, similar spam email campaigns have been noted by security experts. Using infected attachments remains a popular way of distributing ransomware, a trend that will most likely continue throughout 2017.

#2 Olympic Vision And SnapChat

A somewhat new type of criminal activity revolves around compromising business emails. By turning employees into criminal accomplices, criminals have found new ways to exploit human nature. Olympic Vision was one of the more successful BEC social engineering schemes, causing close to US$130,000 in damages to every company it infected in 2015.



Related Post

In March of 2016, a BEC scam showing a lot of similarities to Olympic Vision targeted Snapchat employees, resulting in company information being stolen and exposed. Although this did not damage the day-to-day operations of SnapChat, it goes to show even technology companies are vulnerable to social engineering.

#1 SS&C Technology BEC Scam

Perhaps the biggest social engineering attack of 2016 targeted Wall Street technology firm SS&C Technology. The company lost US$6m due to a Business Email Compromise scam. Tillage Commodities Fund, a US investment firm, filed a lawsuit against SS&C Technology as a result of this cyber threat in September of 2016.

Six fraudulent money transfers were made during this scam, three of which were sent overseas. However, SS&C Technology failed to verify the legitimacy of these transfers, as they processed payments without requesting the necessary redemption letters. Moreover, sending funds to foreign entities is not something the Tillage fund has ever done, and the Wall Street tech firm should have known better.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

10 Trusted Cloud Mining Platforms to Earn Free Bitcoin Daily in 2026

  Cloud mining continues to gain massive traction as 2026 inches closer. In tough economic…

11 hours ago

Jupiter Pushes Onchain Finance Forward With Its Biggest Upgrade Wave Yet

Solana Breakpoint wasn’t just another conference this year. It doubled as a stage for Jupiter…

1 day ago

Ripple Payments Lands First European Bank With AMINA Bank AG

Ripple has scored a major regulatory milestone in Europe. AMINA Bank AG, a Swiss-regulated digital…

1 day ago

a16z’s 2026 Crypto Vision: Stablecoins Surge, Tokenization Grows, and Asia Becomes the Next Battleground

a16z just dropped its annual report, and the message is clear: crypto isn’t slowing down.…

2 days ago

Ethereum Activates BPO-1 Upgrade, Boosting Blob Capacity and Expanding the Network’s Scaling Roadmap

Ethereum has activated BPO-1, a protocol adjustment that increases blob capacity per block from 6…

2 days ago

CryptoBench: AI Meets DeFi, Head-On

CryptoBench just landed. Developed by ChainOpera AI and Princeton AI Lab, under the guidance of…

4 days ago