Email scam threatens to release video of people watching pornography if they don't pay bitcoin ransom

'You don’t know me and you’re thinking why you received this e mail, right?'

Andrew Griffin
Wednesday 25 July 2018 13:20 BST
Comments
In this photo illustration, A woman is silhouetted against a projection of a password log-in dialog box on August 09, 2017 in London, England. With so many areas of modern life requiring identity verification, online security remains a constant concern, especially following the recent spate of global hacks.
In this photo illustration, A woman is silhouetted against a projection of a password log-in dialog box on August 09, 2017 in London, England. With so many areas of modern life requiring identity verification, online security remains a constant concern, especially following the recent spate of global hacks. (Getty Images)

Your support helps us to tell the story

From reproductive rights to climate change to Big Tech, The Independent is on the ground when the story is developing. Whether it's investigating the financials of Elon Musk's pro-Trump PAC or producing our latest documentary, 'The A Word', which shines a light on the American women fighting for reproductive rights, we know how important it is to parse out the facts from the messaging.

At such a critical moment in US history, we need reporters on the ground. Your donation allows us to keep sending journalists to speak to both sides of the story.

The Independent is trusted by Americans across the entire political spectrum. And unlike many other quality news outlets, we choose not to lock Americans out of our reporting and analysis with paywalls. We believe quality journalism should be available to everyone, paid for by those who can afford it.

Your support makes all the difference.

People are being sent horrifying messages threatening to post video of their most intimate moments on the internet.

What's more, the messages are shockingly believable: they appear to include secret information about the recipient that suggests the threats are real.

But in fact the messages are a scam. And they seem to be relying on the vast number of stolen passwords that are available across the internet.

The messages always begin with the most convincing part of the email: the claim that the person sending it has your password, which is included in the message itself. After that, it begins with a series of threats and demand for a ransom.

"I'm going to cut to the chase," the message reads. "You don't know anything about me whereas I now know a lot about you and you are probably thinking why are you receiving this mail, right?"

It goes on to claim that the sender has been able to break into the computer and use some kind of malware, which is often wrongly identified, as a way of watching a person's screen and taking over their webcam. It claims that by doing so the sender has been able to put together a video of the recipient watching pornography.

If the person receiving the message doesn't pay a vast amount of money in bitcoin – often $1600, though the number seems to vary – then that video will be sent to the user's family and friends, the message claims.

Various parts of the message flag it up as a fake: despite claiming to have spent a great deal of time watching the recipient of the email, for instance, the person supposedly sending the message is unable to give any detail at all on what they have found.

But for senders they might be outweighed by the fact that the message includes a password, suggesting that there really has been some kind of breach. And in fact there has – though not of the kind the message claims.

In truth, the passwords are all thought to have come from one of the many leaks and hacks that have hit big companies in recent years. Many of the world's biggest online services – from LinkedIn to Adobe – have had passwords leaked onto the internet, and those are relatively readily available on the darker parts of the internet.

It appears that a scammer or group of them is using those passwords and probably automatically sending the emails out to users. It is then hoped that at least some of the users will panic and send the bitcoin – something that according to public records at least some recipients have actually done.

Join our commenting forum

Join thought-provoking conversations, follow other Independent readers and see their replies

Comments

Thank you for registering

Please refresh the page or navigate to another page on the site to be automatically logged inPlease refresh your browser to be logged in