Read Time:1 Minute, 42 Second

MyGov users are warned to be careful in clicking links and opening emails regarding new emails about Medicare reimbursement.

Millions of MyGov users in Australia have been warned by the leading Australian technological innovator that provides enterprises protection against cyber threats, MailGuard, about the roaming Medicare reimbursement scam.

Note that the subject line with the said email is “Your Medicare Claims from MyGov”. 

“The email is a relatively plausible replica that’s likely to catch some people unaware. It uses Australian Government branding in the header, addresses the recipient as’ myGov User’, and then explains that: ‘Your Medicare claims and payment are now available for filing and disbursement [sic]’ before directing them to click on hyperlinked text that appears as though it will direct them to an Australian Tax Office claims page,” MailGuard said.

The email source is a compromised account at Stuttgart University in Germany. 

“In reality, it hides the true link, which will take the recipient to a phishing page,” MailGuard added.

This scheme is sophisticated enough to trick those who do not have any suspicion in mind. The phishing page resembles MyGov’s log-in page. It then asks for a username and password to harvest the user’s account further. However, looking at the URL closely, you will see the difference.

Furthermore, the scammers will instruct the user to enter their credit card details, including the CVV and expiry date, in exchange for a $688.64 refund.

“This information, along with the rest that has already been entered, is very valuable for a cybercriminal and will likely be used for financial fraud,” MailGuard mentioned.

“Finally, the victim is asked to enter a payment verification code, which likely signals the cybercriminal is trying to charge their card to verify it’s valid.”

According to Services Australia, you should only be able to access the website by entering its URL (https://my.gov.au/) into your browser. According to Services Australia, sending someone an email or SMS with a URL does not belong to their list of protocols.

Happy
Happy
0 %
Sad
Sad
0 %
Excited
Excited
0 %
Sleepy
Sleepy
0 %
Angry
Angry
0 %
Surprise
Surprise
0 %
Previous post Some Help Asks For Something in Exchange: An Un-Australian Way of Connecting with Victims of Disasters
Next post AMA Steps Up on Calling Out Government’s Attention Regarding Patient Data Protection