Theregister Cloud Phones Facilitate Rising Financial Fraud Threats
Article Content
- •Cloud phones are being used for APP fraud, making detection difficult for banks.
- •Estimated APP fraud losses in the U.S. could reach $14.9 billion by 2028.
- •Cloud phone services allow fraudsters to operate multiple accounts without owning hardware.
A recent report by Group-IB reveals that cloud phone technology is increasingly being exploited by financial scammers to commit Authorized Push Payment (APP) fraud. These virtual devices mimic legitimate smartphones, making it difficult for banks' fraud detection systems to identify fraudulent activities. The report highlights that APP fraud losses in the U.S. could rise to $14.9 billion by 2028, up from $8.3 billion in 2024. In the UK, losses linked to APP fraud reached £485.2 million ($649 million) in 2022, with cloud phones playing a significant role in facilitating these scams. Fraudsters use cloud phones to create dropper accounts that receive and transfer stolen funds, often without triggering security alerts due to the devices' realistic behavior. The technology's accessibility and low cost make it attractive to criminals, raising concerns among banks and cybersecurity teams about the effectiveness of traditional fraud detection methods.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…