The link between passwords and sextortion

1 September 2018 Editor's Choice, Information Security

In recent weeks we have seen a massive increase in the number of sextortion attempts with SA’s press shining a spotlight on this increasing social media scourge.

Trusting people, looking for the perfect match, bored partners, or undercover porn viewers are being increasingly targeted by groups of people who work on insecurities, naïvety and poor cybersecurity behaviour to coerce unsuspecting victims into parting with their money in order to prevent public humiliation and embarrassment.

I have seen several versions of the attack, some via WhatsApp and other via email.

The WhatsApp variety is very common; boy meets girl by swiping right. The match is made and introductory texts are exchanged. Almost immediately the beautiful girl shares intimate pictures and asks for the same in return. There is an almost aggressive exchange to ensure that the unsuspecting victim sends compromising photos that include showing their face.

Almost immediately the attacker reveals his/her true intentions and threatens to put the risqué nudes on the Internet, being sure to name the victim’s family members and work colleagues with whom they intend to share the photos. Using information gathered from the texting – they identify victims’ social media accounts and in certain instances, use these details to compromise or hack their accounts. Once the bait is taken they move quickly to reel in their prey.

The tone is menacing and becomes increasingly urgent as they intimidate with threats of exposure and public humiliation. The modus operandi is pretty much always the same – demands for money in order to delete victims’ photos, mostly through eWallet or untraceable money transfers performed at retail stores.

Another alarming trend is for attackers to use compromised and leaked passwords that are easily available on the dark web and cyber underground. The would be attacker then utilises a free email service to deliver the news that they have the victim’s password and have accessed their online activities. This becomes a problem if the attacker has not only accessed the victim’s activities on an adult website or recorded adult videos but has also activated their webcam. The next step is extortion or face public exposure via videos of the victim watching porn.

These messages are mostly poorly written, lack basic grammar and for the most part are identical. It only takes a very small hit rate to ensure a lucrative return. Once you make the payment – they get rid of the pay as you go sim card and move to the next victim.

An extract of one of these emails is below:

Let’s get directly to the point. Nobody has paid me to check about you. You may not know me and you’re most likely wondering why you are getting this mail?

Well, I actually installed a malware on the xxx streaming (adult porn) web-site and you know what, you visited this website to experience fun (you know what I mean). While you were viewing video clips, your Internet browser started operating as a Remote Desktop with a keylogger which gave me access to your display screen as well as Web camera. Just after that, my software gathered all of your contacts from your Messenger, FB, and e-mail account. After that I made a double-screen video. 1st part shows the video you were viewing (you’ve got a nice taste : )), and 2nd part shows the recording of your cam, and it is you.

You have just two choices. Why don’t we check out each of these solutions in aspects?

1st choice is to dismiss this email message. In this instance, I am going to send your tape to almost all of your contacts and also just consider about the shame that you receive. Furthermore should you be in a romantic relationship, precisely how it is going to affect?

Number 2 option should be to pay me $1000. We are going to think of it as a donation. In this situation, I will instantaneously delete your video. You will keep going on daily life like this never occurred and you will never hear back again from me.

You’ll make the payment by Bitcoin (if you don’t know this, search “how to buy bitcoin” in Google).

There are numerous ways to combat this, the simplest being to ensure that you stay far away from any illicit websites and another is to ensure that you change your passwords regularly and please do not use the same password on every site, platform and computer.

But above all never take compromising selfies, because, like passwords, they should never be shared.

For more information contact J2 Software, +27 87 238 1870, [email protected], www.j2.co.za





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Zero-touch automation certificate life cycle management loop
Products & Solutions Information Security Security Services & Risk Management
ManageEngine completes the certificate life cycle management loop with CA-agnostic, zero-touch automation. New post-deployment automation in Key Manager Plus removes the last manual step in certificate renewal as lifespans gradually shrink to 47 days

Read more...
Fire safety in South Africa
Technoswitch Fire Detection & Suppression Technews Publishing SMART Security Solutions Fire & Safety Security Services & Risk Management Editor's Choice
Fire safety is sometimes ignored, sometimes relegated to whatever is cheapest, and sometimes treated with the seriousness it deserves, given that it focuses on protecting life and assets. SMART Security Solutions asked Brett Birch, MD of Technoswitch, for some insights into the realities of fire safety in South Africa.

Read more...
Sophos launches AI-native cybersecurity defence system
News & Events Information Security Security Services & Risk Management
Built for a threat landscape reshaped by AI, Sophos Fusion unites security operations, endpoint, network security, identity, email, and cloud into one defence system that prevents, detects, investigates, and responds at AI speed.

Read more...
Balancing secure access control and fire safety
Editor's Choice Access Control & Identity Management Fire & Safety
In modern building management, few topics create as much tension as the intersection between security access control and fire evacuation safety. Nichola Allen of G2 Fire sheds light on this delicate balance.

Read more...
Preventing and suppressing lithium fires
SMART Security Solutions Technews Publishing Editor's Choice Fire & Safety Security Services & Risk Management Smart Home Automation
SMART Security Solutions asked Clyde Becker, director of Pyro Brand, for some insight into the mechanics of lithium-ion battery fire risks, especially thermal runaway, and to define a comprehensive, layered approach to fire detection and suppression.

Read more...
How ‘TikTok Brain’ is breaking legacy security training
Training & Education Information Security
Between doomscrolling, rapid-fire Slack notifications, and algorithmic video feeds, the average employee is trapped in an aggressive, highly engineered dopamine loop that automatically shuts down in traditional training situations.

Read more...
Quantum is coming
Infrastructure Information Security
The global cybersecurity landscape is approaching a turning point as quantum computing accelerates faster than most organisations realise; the shift is not a distant, theoretical concern, but a present-day business risk that demands immediate action.

Read more...
Outpacing cyberthreats in the age of AI
SMART Security Solutions Technews Publishing News & Events Information Security
SMARTpod talks to Fred Streefland, Global Field CISO for EMEA at Check Point Software Technologies, about framing modern cyber defence around adaptability, rapid decision-making, and the OODA loop adapted for cybersecurity.

Read more...
Sophos establishes South African legal entity to strengthen local operations
News & Events Information Security
Global cybersecurity company, Sophos, has announced the formation of its local legal entity, which will support local invoicing, partner enablement, compliance requirements and expanded regional investment.

Read more...
71% of organisations suffered an identity breach
News & Events Information Security
The State of Identity Security 2026 report from Sophos finds human error and poor non-human identity management are the root causes of most attacks, as agentic AI accelerates the risk.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.