October 23, 2023

PAYROLL SCAM | SOCIAL ENGINEERING TIPS| BUSINESS EMAIL COMPROMISE | BEC 

HACKFREAKS OFFICIAL - LIST OF CARDING RESOURCES, CHANNEL WITH TOPICS, CHAT FOR COMMUNICATION, BOARD WITH TRUST SELLERS AND MARKETPLACE FOR THEIR ADVERTISING

The Payroll topic comes down to stealing someone else's salary. A fresh look at the approach to work

In the Americas and few other countries employers often use Payroll Software / HR Software to pay salaries , which completely automates the process and minimizes errors - you set everything up once, and the software automatically calculates wages and regularly sends them to employee accounts via Direct Deposit

people responsible for paying salaries to hard workers usually occupy the position of Payroll Officer , Payroll Coordinator or Human Resources, they also set up all payroll software for this matter

Now for a second imagine yourself as a hungry and resourceful Freak who doesn't want to work but wants a lot of money

when a freak wants to cheat the system , he looks for its weak points in order to exploit them and get his profit. As a rule, the weakest link in such systems is humans . That is why cybernigers resort to various attacks against a person by the methods of social engineering. one of these methods is sending letters with a substitution of the sender

This type of cyber crime, when companies are compromised using fake emails, is called Business Email Compromise (BEC)

in this case, the task of the cyber nigga is to impersonate some trust contractor and, through correspondence, induce the responsible employee of the company to take the necessary actions. for example, sending money to a fake account or giving out any confidential information . In general, this is how malware can be planted. From this type of scam, various businesses around the world lose billions of dollars every year, and especially actively after the global transition of many employees to remote work due to the pandemic

What does payroll have to do with it?

As you might have guessed, the Payroll topic comes down to stealing someone else's salary.

All you need to do is find a private company, identify its HR and use Social engineering methods to convince him to update the details for paying payrolls to the required ones

Most likely, HR once updates this data in its Payroll Software, and the reserve will automatically go to a new account until the company finds cyberniggishness

1.) First of all, we choose a business - Google , Linkedin and Quora to help

2.) we are looking for a section with employees on the company website

3.) Here you can find the data of employees on payroll in the desired company. choose who to pretend to be, save his/their name and email

4.) now we are looking for HR

HR will receive fake emails from its employees, so we save his email too

Then the question arises - how to fake the sender of a letter?

emkei.cz is the easiest option to use, but there are other smarter ways. Hackfreaks advise to purchase access to Cpanel Webmail for this in some spammark shop, for example:

basetools.skorders.bzolux.to

As niggas say, basestools often sells dead webmails . there is nothing to say about the other sites. no advertising, no guarantees

when asked which webmail is better to buy , the freaks answers that he uses Roundcube and does not complain. Brought to you by HACKFREAKS OFFICIAL

then we repeat after our black brother

5.) login to Webmail

6.) we log into the account with the data purchased in the store

7.) go to settings

8.) in the settings go to the Identities section

9.) click "create"

10.) We enter all the data for substitution and create a fake email. You can enter your other email in Reply To so that incoming emails are sent there as well. if you leave the field empty, emails will be sent by default to the webmail inbox

11 then go to the Compose section to create the letter itself

12 In the sender field we enter our fake email, in the recipient - HR email. in the subject of the letter - My Direct Deposit Update. First, it’s better to test everything on your email

13 It is better to make the text of the letter unique

according to the cunning idea of the cybernigger, HR will be led to this and will reply to the letter with a request to send him new bank details

Let's remember how statistics work, there is always a chance

It is not necessary to fake the email one to one. Often people are fooled by emails with a typo or simply similar to the original one

as a bonus, catch another hint on how spammers replace the sender

SETOOLKIT (Social Engineering Toolkit)

This tool for pentesters presents a whole range of different SE attacks against humans

There are plenty of instructions for installation and use on the Internet.

feel a little BLACK HAT

⭕ Any Questions or Queries you're welcome in Dm : Miss_ownr_bot .

📢 Link to the channel:

https://t.me/+9ZtRfQpkD84zNzdh

📢Chat Link:

https://t.me/hackfreaks

______________________________________

🎁( Updated) New private cc to btc without id verification method Hitting Hard available now.

FIRST THING FIRST ABOUT CC TO BTC WHY THIS IS MOST VERSATILE METHOD AND SMART METHOD OF 2024 ?

Well Buying Bitcoin with Stolen or Spammed CC is the best way of cashing out in 2023. Now, you don’t need to use it and buy things online (Carding) because, with this method, you are getting your cash immediately.

And to be security purposes everyone know BTC it’s a decentralized anonymous payment system. So in this method we safe too with free btc mixing method...