A Nine-Year Long Con: Russian Company Sites Cloned to Steal Advance Payments from Unsuspecting Victims
A staggering nine-year-long cybercrime campaign has been exposed, where hackers have been cloning websites of legitimate Russian companies to trick unsuspecting victims into making advance payments. The brazen scheme, which has been ongoing since 2017, has resulted in significant financial losses for numerous organizations.
At the heart of this operation are phishing attacks that use cloned websites to mimic those of real Russian companies. Victims are lured onto these fake sites, where they’re presented with fictitious invoices or contracts that appear authentic. The hackers then harvest sensitive information and extract advance payments from the victims before disappearing into thin air. According to reports, some of the targeted companies include state-owned enterprises, private corporations, and even government agencies.
The cloning process is surprisingly straightforward. Hackers utilize AI-powered tools to scrape real website designs, logos, and content from legitimate Russian company sites. They then create identical replicas on compromised servers or domain registrars. This cloned site is used as a phishing platform, where hackers can manipulate content in real-time to keep their ruse convincing.
This nine-year-long campaign highlights the ease with which cybercriminals can exploit vulnerabilities in online security. The fact that this operation has been ongoing for so long underscores the need for businesses and individuals alike to be vigilant about verifying website authenticity before making sensitive transactions. By doing so, they can avoid falling prey to these cunning attacks.
Moreover, this incident serves as a sobering reminder of the importance of keeping software up-to-date and patching vulnerabilities promptly. With AI-powered tools increasingly being used in cybersecurity, it’s more crucial than ever for organizations to invest in robust security measures that can detect and prevent such sophisticated phishing attempts.
In light of these findings, it’s essential for businesses and individuals to implement robust verification processes when dealing with online transactions or sensitive information sharing. This includes scrutinizing website URLs, checking for any red flags in email communications, and being cautious when receiving unsolicited invoices or contracts. By staying informed and taking necessary precautions, we can reduce the risk of falling victim to these brazen cybercrime schemes.
Source: The Hacker News — 2026-07-29