A scampage is a slung used by the Fraud community to refer to a Scam Page or Scam website. In this article, I will explain everything you need to know about scampages. We will look at what they are, what they are used, and how to avoid scampages.
What is a Scampage
Scampage or Scam Pages refer to Scam websites or phishing page. These are illegal websites used to fool users into fraud. The fraud is orchestrated by imitating legitimate websites and fooling victims into entering sensitive information. Once done, the fraudster will get an email with all the details entered and then use it to commit fraud offenses.
How Are Scampages Used To steal Money?
Scampages can be used for various fraud activities. From gaining access to email addresses, to obtaining ones SSN to breaking into your online banking platforms, scampage can do all that.
Hackers will normally create a replica page like the DHL replica on top of this page. They will then modify it to include a mail out function. The hacker then either hosts the page as a website or emails it out as an email or both. When the victim gets the scampage, they will believe its the legit website since it looks and feels the same. Victims will be prompted to enter details like username and password then click Login. Upon clicking login, the victim’s details will be emailed to the hacker and the victim will be redirected to the legitimate login page. The victim then believes that something went wrong and they were not logged in so they enter details again and login successfully. If the above sounds familiar, you could have been a victim of a scampage attack.
How to Avoid a Scampage or phishing Attack.
Avoiding a phishing attack is actually very simple. the first cardinal rule is you should never enter your login details without verifying that the domain on which you are entering is legit. Hackers will normally get domains that look like the target domain. For example, instead of facebook.com a hacker may use facebo0k.com. Please note that in the second case, I have used a zero instead of letter O.
The second thing you should do to avoid a scam page attack is to always verify “email sender” and “reply to” details. Scampage attackers usually have the two as different emails. Even when they are the same, they are often illegitimate. Its very unusual for Facebook to send you a mail from something like facebookmail@gmail.com. While the email sounds believable, Facebook has no business using gmail in their official communication.