MyGov users are warned to be careful in clicking links and opening emails regarding new emails about Medicare reimbursement.
Millions of MyGov users in Australia have been warned by the leading Australian technological innovator that provides enterprises protection against cyber threats, MailGuard, about the roaming Medicare reimbursement scam.
Note that the subject line with the said email is “Your Medicare Claims from MyGov”.
“The email is a relatively plausible replica that’s likely to catch some people unaware. It uses Australian Government branding in the header, addresses the recipient as’ myGov User’, and then explains that: ‘Your Medicare claims and payment are now available for filing and disbursement [sic]’ before directing them to click on hyperlinked text that appears as though it will direct them to an Australian Tax Office claims page,” MailGuard said.
The email source is a compromised account at Stuttgart University in Germany.
“In reality, it hides the true link, which will take the recipient to a phishing page,” MailGuard added.
This scheme is sophisticated enough to trick those who do not have any suspicion in mind. The phishing page resembles MyGov’s log-in page. It then asks for a username and password to harvest the user’s account further. However, looking at the URL closely, you will see the difference.
Furthermore, the scammers will instruct the user to enter their credit card details, including the CVV and expiry date, in exchange for a $688.64 refund.
“This information, along with the rest that has already been entered, is very valuable for a cybercriminal and will likely be used for financial fraud,” MailGuard mentioned.
“Finally, the victim is asked to enter a payment verification code, which likely signals the cybercriminal is trying to charge their card to verify it’s valid.”
According to Services Australia, you should only be able to access the website by entering its URL (https://my.gov.au/) into your browser. According to Services Australia, sending someone an email or SMS with a URL does not belong to their list of protocols.
More Stories
Killnet and AnonymousSudan Collaborate to Launch Cyber Attacks on Western Organisations
In recent news, it has been reported that two Russia-sympathetic hacktivist groups, Killnet and AnonymousSudan, have allegedly launched a series...
$4000 Gone In An Instant: Mother Defrauded in Facebook Marketplace Car Deal
A mother of four is warning others to be cautious after believing she had purchased a safe and dependable car...
Shocking Scam: Sydney Family Loses $200K Life-Savings in Suncorp Spoofing Fraud
A family from Sydney has lost their life savings worth $200,000 due to a fraudulent scam. Peter and Madison, who...
Mysterious Money Transfer Leaves Couple Speechless: How They Got an Unsolicited $4000
A young couple in Melbourne claims their bank is making up a personal loan they do not understand. Ashley and...
Phishing + AI + Voice Cloning= Big Trouble: The New Way Criminals are Stealing Your Money
New Alert: Criminals use AI and voice cloning to trick you out of your money. Earlier this year, Microsoft unveiled...
‘Impossible to Spot’ Delivery Scam Email Targets Australia Post Customers – Don’t Fall Victim!
Unsuspecting shoppers should be cautious as a parcel delivery scam that is hard to distinguish targets Australia Post customers. Email...