#1 Middle East & Africa Trusted Cybersecurity News & Magazine |

37 C
Dubai
Thursday, July 3, 2025
HomeTopics 2cybercrimePhishing on the Fly: Scammers Target UAE Passengers with Fake Official Messages

Phishing on the Fly: Scammers Target UAE Passengers with Fake Official Messages

Date:

Related stories

CVE‑2025‑20309: Cisco Unified CM Exposes Root via Static SSH Credentials

Cisco disclosed a 10.0 CVSS-critical vulnerability (CVE‑2025‑20309) in its...

PDFs: Portable Documents or Perfect Phishing Vectors?

Cybersecurity professionals are sounding the alarm: PDF attachments are...

Google Urgently Patches CVE‑2025‑6554 Zero‑Day in Chrome 138 Stable Update

On 26 June 2025, Google rapidly deployed a Stable Channel update...
spot_imgspot_imgspot_imgspot_img

The United Arab Emirates (UAE) has become a global hub for travel and tourism. However, this growth also attracts cybercriminals seeking to exploit unsuspecting victims. A recent rise in phishing scams targeting UAE passengers using Nigerian and Ethiopian phone numbers highlights the evolving tactics used by fraudsters. This article explores this specific scam campaign, delves into the broader issue of travel-related phishing attacks, and offers 10 crucial tips to help travelers stay safe from these digital threats.

Fake Flights and Phony Fees: Unveiling the UAE Passenger Scam

In July 2024, UAE residents reported receiving suspicious text messages from unknown Nigerian and Ethiopian phone numbers. Here’s a breakdown of the scam:

  • Impersonation: The messages pose as official airline or travel agency communications, often mentioning well-known UAE carriers like Emirates or Etihad Airways.
  • Urgency and Fear: The messages typically create a sense of urgency, claiming issues with flight bookings, missed payments, or passport irregularities.
  • Phishing Links: The messages often include phishing links that, when clicked, can lead to fraudulent websites designed to steal personal information or financial details like credit card numbers.

This specific scam campaign highlights the evolving tactics used by cybercriminals to exploit travelers’ anxieties and limited familiarity with local regulations.

A Global Grounding: The Rise of Travel-Related Phishing Attacks

Travel-related phishing attacks are a global phenomenon, targeting individuals at various stages of their journeys:

  • Pre-Departure Scams: Phishing emails or messages might impersonate airlines, hotels, or booking platforms to steal payment information or travel documents.
  • In-Transit Scams: Fraudsters might target travelers with fake airport Wi-Fi login pages or messages claiming urgent visa or customs issues requiring immediate payment.
  • Post-Travel Scams: Phishing attempts could impersonate travel agencies or loyalty programs offering fake refunds, rewards, or deals that steal personal information.

Travelers need to be aware of these evolving tactics to protect themselves throughout their journeys.

10 Takeoff Tips: Avoiding Travel-Related Phishing Scams

Here are 10 crucial tips to safeguard yourself from travel-related phishing attacks:

  1. Verify Communication: Always verify the legitimacy of any communication claiming to be from an airline, travel agency, or official source. Contact the organization directly using phone numbers or email addresses listed on their official website.
  2. Beware of Urgency: Phishing attempts often create a sense of urgency to pressure you into clicking on links or disclosing information without proper verification.
  3. Suspicious Links: Do not click on links embedded within suspicious text messages or emails. It’s safer to navigate directly to the official website of the airline or travel agency.
  4. Secure Wi-Fi: Avoid using unsecured public Wi-Fi networks at airports or hotels for sensitive transactions like online banking or entering credit card information. Consider using a mobile hotspot or Virtual Private Network (VPN) for added security.
  5. Strong Passwords & MFA: Utilize strong, unique passwords for all travel-related online accounts and enable Multi-Factor Authentication (MFA) where available.
  6. Official Apps: Download travel apps directly from official app stores and avoid third-party app marketplaces that might harbor malicious software.
  7. Data Backups: Consider creating backups of travel documents and important information before your trip in case your device gets lost or compromised.
  8. Phishing Awareness: Educate yourself about common phishing tactics and red flags to identify and avoid suspicious messages.
  9. Travel Insurance: Consider travel insurance that might offer protection against financial losses resulting from phishing scams.
  10. Report Phishing Attempts: Report suspicious phishing messages to the relevant authorities and the organization being impersonated to help track down scammers.

Conclusion: A Secure Journey Awaits

Travel-related phishing scams can disrupt trips and lead to financial losses. By staying informed about common tactics, practicing caution with online communication, and prioritizing travel cybersecurity, you can navigate the digital world with confidence and ensure a smooth, secure journey. Remember, a little cybersecurity awareness can go a long way in protecting yourself from scams and safeguarding your valuable travel plans. So, pack your bags, embrace your sense of adventure, and prioritize cybersecurity for a worry-free travel experience.

Ouaissou DEMBELE
Ouaissou DEMBELEhttp://cybercory.com
Ouaissou DEMBELE is a seasoned cybersecurity expert with over 12 years of experience, specializing in purple teaming, governance, risk management, and compliance (GRC). He currently serves as Co-founder & Group CEO of Sainttly Group, a UAE-based conglomerate comprising Saintynet Cybersecurity, Cybercory.com, and CISO Paradise. At Saintynet, where he also acts as General Manager, Ouaissou leads the company’s cybersecurity vision—developing long-term strategies, ensuring regulatory compliance, and guiding clients in identifying and mitigating evolving threats. As CEO, his mission is to empower organizations with resilient, future-ready cybersecurity frameworks while driving innovation, trust, and strategic value across Sainttly Group’s divisions. Before founding Saintynet, Ouaissou held various consulting roles across the MEA region, collaborating with global organizations on security architecture, operations, and compliance programs. He is also an experienced speaker and trainer, frequently sharing his insights at industry conferences and professional events. Ouaissou holds and teaches multiple certifications, including CCNP Security, CEH, CISSP, CISM, CCSP, Security+, ITILv4, PMP, and ISO 27001, in addition to a Master’s Diploma in Network Security (2013). Through his deep expertise and leadership, Ouaissou plays a pivotal role at Cybercory.com as Editor-in-Chief, and remains a trusted advisor to organizations seeking to elevate their cybersecurity posture and resilience in an increasingly complex threat landscape.

Subscribe

- Never miss a story with notifications

- Gain full access to our premium content

- Browse free from up to 5 devices at once

Latest stories

spot_imgspot_imgspot_imgspot_img

LEAVE A REPLY

Please enter your comment!
Please enter your name here