This article is from Trend Micro.
With over 100 million subscribers, it’s no wonder that Disney+ is a prime target for cybercriminals. They employ the same common phishing scam tactics, but with a special Disney twist. Read on to learn how this scam works!
Disney Plus phishing scams mostly happen via email. The scammers will send out a massive number of emails to potential victims to try to see if any will take the bait — this is where the term phishing comes from.
One example of a Disney+ phishing scam. Source: Reddit
The emails will appear to come from Disney Plus and they will most often say that there is some kind of problem with the person’s Disney Plus account and that they need to log in to resolve it. Some common lies scammers will use in phishing email scams:
The above examples are by no means an exhaustive list. The scammers are always coming up with new ways to try to trick people.
Whichever lie they use in their emails the scammers’ goal is always the same: to try to trick you into clicking on the embedded phishing link. There will always be a malicious link included in the scammers’ emails, but instead of taking you to the Disney Plus website, it will take you to a malicious copycat version of the site.
The copycat site will be completely controlled by the scammer. This means that they will be able to access every piece of information you enter on the site. Your email address, password, phone number, credit card information — whatever it is, if you enter it onto the malicious copycat site, it will end up in the scammers’ hands.
The scammers' end goal is to either use your personal information to commit identity theft or sell it on an underground forum or the dark web.
The scammers are always getting craftier in their approach, but phishing scams will commonly exhibit some telltale signs.
If you think you’ve received a suspicious email, it could very well be a phishing scam. By far the best thing to do in this situation, and in any other situation where there is a problem with your Disney Plus account, is to contact their support team directly via theDisney+ Help Center. Don’t trust suspicious, unsolicited emails, and don’t enter your personal details onto dubious-looking websites.
If so, check out these posts below: