Blog Layout

High Profile Instagram Accounts Being Held For Ransom By Hackers

sccomputerguys • February 11, 2022

Hackers have recently hit upon a new money-making scheme.  Some groups have started breaking into Instagram accounts belonging to people with high numbers of followers.

They are then holding those accounts hostage until the owner agrees to pay the ransom.  In some cases, the hackers are charging as much as $40,000 USD to return an account back to its user.

They're gaining control of the accounts initially via some clever social engineering. The attack begins when the hackers contact the Instagram user claiming copyright infringement.

The email they send contains a link that takes the victim to a website the hackers control.  The user is prompted to enter their Instagram account information (username and password) which of course is harvested by the hackers.

Once they have that they log in and immediately change the victim's password.

They then modify the account profile so that it includes the phrase:

''this Instagram account is held to be sold back to its owner," followed by a contact link.

Clicking the contact link opens a WhatsApp chat session where the hackers make the ransom demands and wait.  If the victim doesn't initiate contact via the profile link, the hackers will start sending text messages to the phone number associated with the account.  Either way, the negotiation process begins

Security researchers who have begun investigating the scam have concluded that at least one of the threat actors involved is based in Turkey.

At this point, there is no reliable information about how many Instagram attacks have been compromised in this manner. There also isn't any information about how much money the hackers have made in total via this approach. If you are an Instagram user and you have an impressive number of followers it pays to at least be aware of the possibility.

By sccomputerguys July 22, 2022
Do you own one or more of the following products made by Cisco? The RV110W Wireless-N VPN Firewall The RV130 VPN Router The RV130W Wireless-N Multifunction VPN Router The RV215W Wireless-N VPN ...
By sccomputerguys July 21, 2022
Do you use Microsoft Teams?  If so, you'll be thrilled to know that the Redmond Giant is continuing to pour resources into improving the software with a specific focus on audio and ...
By sccomputerguys July 20, 2022
Corporate branding can be worth its weight in gold and certain images are absolutely iconic.  The Golden Arches, the Nike "swoosh," and Apple's Apple all come to mind. Logo images give companies ...
By sccomputerguys July 19, 2022
Remember the Heartbleed scare we had a couple years back?  It was a nasty side-channel attack that was somewhat exotic and difficult to pull off, and it was absolutely devastating and sent ...
By sccomputerguys July 18, 2022
Microsoft Exchange servers are once more in the crosshairs of hackers around the world.  Most recently, hacking groups have been specifically targeting them to deploy BlackCat ransomware. As is common among ransomware ...
By sccomputerguys July 16, 2022
If you grew up in the days before the internet, it's absolutely staggering to think of all the ways that mobile technology has changed our lives (and mostly for the better). Remember ...
By sccomputerguys July 15, 2022
It may seem as though Internet Explorer is the browser that will not die, but according to Microsoft, it is now a step closer to breathing its last virtual breath. Microsoft has ...
By sccomputerguys July 14, 2022
If you're involved with IT Security at any level and if your network includes Linux servers, keep a watchful eye out for the new Panchan botnet. It first appeared in the wilds ...
By sccomputerguys July 13, 2022
These days, companies spend significant sums of money to protect themselves from cyber criminals.  The threat matrix is vast, and attacks can come from almost any quarter. That is why many companies ...
By sccomputerguys July 12, 2022
Do you receive healthcare of any kind from Kaiser Permanente?  If so, be aware that they recently published a data breach notification indicating that an unidentified attacker accessed an email account that ...
More Posts
Share by: