Scworld Surge in Fake Amazon Domains Ahead of Prime Day 2026
Article Content
- •Nearly 7,000 fake Amazon domains were registered ahead of Prime Day 2026.
- •9.2% of the identified domains were classified as malicious or suspicious.
- •Phishing tactics include fake storefronts and deceptive emails targeting consumers.
Researchers at Check Point identified 6,843 fraudulent Amazon-themed domains registered in the six months leading up to Prime Day 2026, with 9.2% classified as malicious or suspicious. The peak registration occurred in April 2026, with 1,446 domains created. Phishing campaigns targeting shoppers include fake storefronts and emails designed to steal personal and financial information. The surge in domains coincides with the Prime Day event, which runs from June 23 to June 26, 2026, across 22 countries. The tactics employed by cybercriminals mirror previous large-scale phishing operations, indicating a growing trend in domain-based fraud. Shoppers are advised to verify URLs directly and exercise caution with unsolicited communications. The findings highlight the increased risk during major retail events, which create a favorable environment for cybercriminals.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (7)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…