Criminals are flooding the internet with fake advice scams and adware, so watch out

Person typing
(Image credit: Shutterstock)

Cybersecurity giant Avast has published its Q4 2022 Threat Report, taking a close look at the type of scams targeting vulnerable users. 

Some of the most notable scam types included social engineering which exposes human error, like refund and invoice fraud tactics, as well as supposed tech support scams. Lottery-themed adware campaigns remained just as prevalent, as they have done in previous quarters.

Besides scams, the company noted a pair of zero-day exploits in Chrome and Windows, which have since been patched, highlighting the importance for users to keep software up-to-date.

TechRadar Pro needs you!
We want to build a better website for our readers, and we need your help! You can do your bit by filling out our survey and telling us your opinions and views about the tech industry in 2023. It will only take a few minutes and all your answers will be anonymous and confidential. Thank you again for helping us make TechRadar Pro even better.

D. Athow, Managing Editor

Avast Malware Research Director Jakub Kroustek explained that cybercriminals accredit a large proportion of their success to human nature, which sees us reacting with urgency, fear, and trying to regain control of issues.

Kroustek’s advice is: “When people face surprising pop-up messages or emails, we recommend they stay calm and take a moment to think before they act.”

An alarming increase in refund and invoice fraud was noted during the final months of 2022 leading up to Christmas, which saw fooled users given malicious actors control to their screen and online banking. Instead of calling the number on the scam email, unsure users may want to head directly to the platform’s website and use a number that they’re sure of.

Data theft also occurred in several lottery-type popups, as well as the Arkei information stealer which saw a staggering 437% increase. Arkei is known for stealing information from browsers’ autofill forms, among other sources.

Finally, a pair of zero-day exploits were found in Google Chrome and Windows. Avast says that both companies were notified and reacted promptly, helping to minimize risk to users.

TOPICS
Craig Hale

With several years’ experience freelancing in tech and automotive circles, Craig’s specific interests lie in technology that is designed to better our lives, including AI and ML, productivity aids, and smart fitness. He is also passionate about cars and the decarbonisation of personal transportation. As an avid bargain-hunter, you can be sure that any deal Craig finds is top value!

Read more
Fraud
Hackers are tricking victims into scam-yourself attacks with fake tutorials, CAPTCHAs, and updates
Phone scammer
Microsoft thinks it could stop this dangerous scam forever
A man falling into a mobile phone screen.
Safer Internet Day: how to avoid online scams and stay safe online
A padlock resting on a keyboard.
Understanding and avoiding malvertizing attacks
Best email services: image of email with one unread message alert
Over 400 million unwanted and malicious emails were received by businesses in 2024
A light pink gift box with blush pink bow, red hearts and confetti on a pastel pink background.
How to spot Valentine’s Day scams - stay safe on this most special day with our security tips
Latest in Security
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Representational image depecting cybersecurity protection
Cisco smart licensing system sees critical security flaws exploited
Latest in News
L-mount alliance
Sirui joins L-Mount Alliance to deliver its superb budget lenses for Leica, DJI, Sigma and Panasonic cameras
Security padlock and circuit board to protect data
Trust in digital services around the world sees a massive drop as security worries continue
A Lego Pikachu tail next to a Pebble OS watch and a screenshot of Assassin's Creed Shadow
ICYMI: the week's 7 biggest tech stories from LG's excellent new OLED TV to our Assassin's Creed Shadow review
Samuel and Romy standing very close together in A24's Babygirl movie
Everything new on Max in April 2025, including A24's Babygirl and The Last of Us season 2
An AMD Radeon RX 9070 XT made by Sapphire on a table with its retail packaging
AMD’s secret weapon against Nvidia seems to be stock – way more RX 9070 GPUs are rumored to be hitting shelves than RTX 5000 models
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks