FBI Warns of Fraudsters Impersonating IC3 Agents in Targeted DMs
The FBI has issued an alert regarding scammers impersonating IC3 agents to contact individuals who have previously reported being victims of online fraud, aiming to deceive them a second time.
English Brief
The FBI has issued an alert regarding scammers impersonating IC3 agents to contact individuals who have previously reported being victims of online fraud, aiming to deceive them a second time.
الموجز العربي
مكتب التحقيقات الفيدرالي يحذر من محتالين ينتحلون صفة وكلاء مركز شكاوى الجرائم الإلكترونية عبر الرسائل المباشرة
أصدر مكتب التحقيقات الفيدرالي تنبيهاً بشأن محتالين ينتحلون صفة وكلاء مركز شكاوى الجرائم الإلكترونية (IC3) للتواصل مع ضحايا عمليات الاحتيال السابقة، بهدف خداعهم مجدداً.
- 1Do not engage with individuals claiming to be law enforcement via DM.
- 2Verify all official communications by visiting the official ic3.gov portal directly via a browser.
- 3Never send funds or share sensitive credentials to recover lost money.
English Advisory
// Intelligence Summary
The FBI has identified a recurring social engineering campaign where threat actors impersonate personnel from the Internet Crime Complaint Center (IC3). These actors specifically target individuals who have previously submitted reports of financial fraud or cybercrime, leveraging the victim's prior experience to establish false credibility.
التقرير العربي
// ملخص استخباراتي
حدد مكتب التحقيقات الفيدرالي حملة هندسة اجتماعية متكررة حيث ينتحل المهاجمون صفة موظفي مركز شكاوى الجرائم الإلكترونية (IC3). يستهدف هؤلاء المهاجمون تحديداً الأفراد الذين سبق لهم تقديم بلاغات عن عمليات احتيال مالي أو جرائم إلكترونية، مستغلين تجربة الضحية السابقة لكسب ثقتها.
// Technical Context
Attackers utilize Direct Messages (DMs) across various social media and communication platforms to contact victims. By mimicking the tone and official language associated with the IC3, the actors attempt to extract additional funds under the guise of 'recovering lost assets' or 'securing legal processes.' This is a classic 'recovery scam' vector that exploits the trust and desperation of known victims.
// السياق الفني
يستخدم المهاجمون الرسائل المباشرة (DMs) عبر منصات التواصل الاجتماعي والمنصات المختلفة للتواصل مع الضحايا. من خلال محاكاة أسلوب ولغة الجهات الرسمية المرتبطة بـ IC3، يحاول المهاجمون الحصول على أموال إضافية بحجة 'استعادة الأصول المفقودة' أو 'تأمين إجراءات قانونية'. هذا أسلوب كلاسيكي لما يسمى 'احتيال الاسترداد' الذي يستغل ثقة ويأس ضحايا عمليات الاحتيال السابقة.
// Exposure Notes
Victims who have publicly or privately shared their status as a fraud victim are at the highest risk. Exposure is largely determined by the availability of contact information in previous breach data or public forum discussions related to scams.
// ملاحظات التعرض
الأفراد الذين شاركوا سابقاً معلوماتهم كضحايا احتيال عبر وسائل التواصل أو المنتديات العامة هم الأكثر عرضة للخطر. يعتمد التعرض بشكل كبير على توفر معلومات الاتصال الخاصة بالضحايا في تسريبات البيانات السابقة أو المناقشات العلنية.
// Defensive Priority
Organizations and users should implement strict communication verification protocols. The FBI and IC3 will not reach out to victims via unsolicited social media DMs to request payments or personal information. Verification must always occur through official, known-good channels (e.g., the official ic3.gov domain).
// أولوية الدفاع
يجب على المؤسسات والمستخدمين تنفيذ بروتوكولات صارمة للتحقق من الاتصالات. لن يقوم مكتب التحقيقات الفيدرالي أو مركز IC3 بالتواصل مع الضحايا عبر رسائل مباشرة غير مرغوب فيها لطلب مدفوعات أو معلومات شخصية. يجب أن يتم التحقق دائماً من خلال القنوات الرسمية المعروفة (مثل النطاق الرسمي ic3.gov).
Mitigation Checklist
- 1Do not engage with individuals claiming to be law enforcement via DM.
- 2Verify all official communications by visiting the official ic3.gov portal directly via a browser.
- 3Never send funds or share sensitive credentials to recover lost money.
- 4Report the fraudulent account to the platform provider immediately.
- 5Review privacy settings to limit visibility of past incident reports.
قائمة إجراءات التخفيف
- 1لا تتفاعل مع الأفراد الذين يدعون أنهم من جهات إنفاذ القانون عبر الرسائل المباشرة.
- 2تحقق من جميع المراسلات الرسمية عن طريق زيارة البوابة الرسمية ic3.gov مباشرة عبر المتصفح.
- 3لا تقم أبداً بإرسال أموال أو مشاركة بيانات اعتماد حساسة لاستعادة أموال مفقودة.
- 4قم بالإبلاغ عن الحساب المحتال إلى مزود المنصة فوراً.
- 5راجع إعدادات الخصوصية لتقليل ظهور بلاغات الحوادث السابقة.
- https://www.ic3.gov
# Defensive Verification Checklist for Suspected Impersonation:
# 1. Do not engage with individuals claiming to be law enforcement via DM.
# 2. Verify all official communications by visiting the official ic3.gov portal directly via a browser.
# 3. Never send funds or share sensitive credentials to recover lost money.
# 4. Report the fraudulent account to the platform provider immediately.
# 5. Review privacy settings to limit visibility of past incident reports.