Friday, 31 Jan 2025

Fake toll road texts sweep America as Chinese scammers target US drivers

Toll road text scam: Fake messages claim unpaid fees, seek payment via fraudulent links. Kurt "CyberGuy" Knutsson says this scam is becoming increasingly sophisticated and widespread.


Fake toll road texts sweep America as Chinese scammers target US drivers
1.7 k views

A new scam has come to light targeting residents across the United States with text messages that pretend to be from toll road operators. For many who receive these messages, it's an easy and expensive trap to fall into.

The scam begins when people receive a message claiming they have unpaid tolls and may be charged fines. Scammers then ask for card details and a one-time password sent via SMS to steal their money. Security researchers believe that Chinese smishing groups are behind this scam, selling SMS-based phishing kits to thousands of scammers.

Security researchers have traced the scam to Chinese smishing groups known for creating and selling sophisticated SMS phishing kits. One such kit, "Lighthouse," makes it easy for scammers to spoof toll road operators in multiple states. These kits are designed to trick users into sharing financial information, which is then used to commit fraud. 

Reports of these phishing attacks have surfaced across the U.S., targeting users of toll systems like EZDriveMA in Massachusetts, SunPass in Florida and the North Texas Toll Authority in Texas. Similar scams have been reported in states including California, Colorado, Connecticut, Minnesota and Washington. The phishing pages are mobile-optimized and won't load on non-mobile devices, making them even more deceptive.

Recent advancements in phishing kits include better deliverability through integration with Apple iMessage and Android's RCS technology, bypassing traditional SMS spam filters. These methods increase the likelihood of victims receiving and engaging with fraudulent messages. The phishing sites are operated dynamically in real time by criminals, making them harder to detect and shut down. Even individuals who don't own a vehicle have reported receiving these messages, indicating random targeting.

By staying vigilant and following the steps below, you can protect yourself from falling victim to toll scams. 

1) Verify directly with toll operators: If you receive a message about unpaid tolls or fines, do not click on any links. Instead, visit the official website of your toll operator or contact their customer service directly to verify the claim.

3) Do not share personal information: Never provide sensitive details like payment card information, Social Security numbers or one-time passwords via text or unverified websites. Legitimate toll operators will not request such information through SMS.

5) Be wary of urgency in messages: Scammers often create a sense of urgency, claiming immediate action is required to avoid penalties. Take a moment to assess the situation and verify the legitimacy of the message through official channels.

6) Report suspicious messages: If you suspect a phishing attempt, report it to the Federal Trade Commission or the FBI's Internet Crime Complaint Center. Include details like the sender's phone number and any links in the message. Additionally, inform your mobile carrier to help block similar scams.

It's deeply concerning how these scams are becoming increasingly sophisticated and widespread. It's no longer just about random phishing attempts. These are carefully crafted schemes designed to exploit our trust in systems we rely on daily. The fact that scammers can impersonate toll road operators so convincingly is alarming, and it shows how vulnerable we are to such attacks. It frustrates me to think of how many people may fall victim to these tactics, losing their hard-earned money.

Follow Kurt on his social channels:

Answers to the most asked CyberGuy questions:

New from Kurt:

Copyright 2024 CyberGuy.com. All rights reserved.

you may also like

Flight attendant takes to Reddit for passenger 'pet peeves,' sparks social media outpouring
  • by foxnews
  • descember 09, 2016
Flight attendant takes to Reddit for passenger 'pet peeves,' sparks social media outpouring

A flight attendant took to Reddit to ask flyers about their "flight attendant pet peeves" - sparking other social media users to share their biggest grievances when traveling.

read more