Kaspersky Lab has identified a fresh scam circulating over a Telegram-based service, aimed at stealing money along with personal and financial details. The fraudsters pose as a legitimate online currency exchange platform, luring users into a fake exchange experience. The deception centers on directing victims to a Telegram bot after they express interest in currency conversion, where they are manipulated into sharing sensitive data and closing a payment through the bot. The end result is a loss of funds and exposure of private information, while the supposed exchange remains illicitly operational in the background. (Source: Kaspersky Lab)
According to the security researchers, the attackers pull out money by convincing users to proceed with online payments and then capture the required personal and financial details. The criminals set up convincing websites that mimic real money and cryptocurrency exchanges. When users initiate a transaction, they are steered toward a Telegram bot where an agent appears to manage the process. In this setup, the user completes an application, makes an online payment through any available method, and expects to receive funds at a payment point. Instead, the victim loses funds and simultaneously risks personal data. (Source: Kaspersky Lab)
Experts observe a growing trend in which fraudsters increasingly rely on Telegram bots to execute schemes. The accessibility of bot creation and the relative unfamiliarity of many users with how these services operate appear to fuel the risk. This shift is notable because it allows attackers to present a convincing front while maintaining fast, automated interactions that are difficult to trace. (Source: Kaspersky Lab)
To reduce risk, professionals urge caution when payment requests come from individuals rather than registered entities. A red flag is when a transfer is asked to go directly to a person using a phone number instead of a verified business account. Specialists also recommend sticking to official, well-known services for financial transactions and verifying the legitimacy of any exchange platform before sharing sensitive data or completing payments. (Source: Kaspersky Lab)
There have been prior reports about different scams—one noted that a cryptic approach online could mislead men seeking dating experiences, while another flagged how quickly passwords could be compromised. These past warnings underscore the ongoing need for vigilance in online financial and personal information exchanges, particularly when new technologies like bots and messaging services are involved. (Source: Kaspersky Lab)