Skip to main content
  1. Home
  2. Computing
  3. News

Don’t fall for this devious new Microsoft Office scam

Add as a preferred source on Google

With packaging looking legitimate enough at first glance, scammers are sending out fake Microsoft Office USB sticks — loaded with ransomware — to individuals.

As reported by Tom’s Hardware and PCMag, the USBs are sent out to randomly selected addresses in the hopes of convincing targets that they inadvertently received a $439 Office Professional Plus package.

A package with a fake Microsoft Office USB stick.
Image source: Martin Pitman/LinkedIn/Tom’s Hardware Image used with permission by copyright holder

Alongside the bogus USB stick, a product key is also included. However, plugging the USB stick into a system directs the user toward calling a fake customer support line as opposed to an actual launch installation window for Office.

Recommended Videos

Once connected to the fraud support line, the threat actors attempt to install a remote access program in order to breach and control the target’s PC.

Cybersecurity consultant Martin Pitman confirmed the scam’s existence when his mother called him regarding the package. Because she tried to install what she thought would be Office programs, Pitman was able to get an insight into how the scheme operates.

An alert of a virus is presented to the victim when the USB is plugged in, prompting the user to call a support number. “As soon as they called the number on screen, the helpdesk installed some sort of TeamViewer (remote access program) and took control of the victim’s computer,” he said to Sky News.

Disguised as a Microsoft customer support technician, the individual on the other end of the phone would also ask for payment details.

As highlighted by Tom’s Hardware, postal packages schemes are not among the usual tactics used by criminals. But with the increasing awareness of email scams, it seems scammers are now reverting to sending out physical products.

Microsoft, which has launched an internal investigation into the matter, said it has seen such methods being used in the past, but they’re not widespread.

Robert Pooley, who works as a director at U.K.-based cybersecurity firm Saepio, brought attention to the counterfeit Microsoft Office USB strategy in July. “Quite the scam. Shows how important cyber awareness is at work and home,” he said via a LinkedIn post.

In a similar case that occurred in 2020, security company Trustwave found counterfeit USB sticks, disguised as a Best Buy $50 gift card promotion, were being sent to unsuspecting targets.

Zak Islam
Former Contributor
Zak covers the latest news in the technology world, particularly the computing field. A fan of anything pertaining to tech…
Google’s Gemini app adds a toggle to disable AI watermarks, with some exceptions
Your AI creations no longer need a visible stamp.
nano banana

If you have ever generated an image with Gemini and gotten annoyed by that stamped-on watermark, Google finally heard you. Gemini is rolling out a new setting called Media Watermarks that lets you toggle visible watermarks on or off across everything you create, including images made with Nano Banana, videos made with Omni, and music made with Lyria. Until now, that visible watermark was applied automatically with no way to turn it off.

https://twitter.com/geminiapp/status/2088277477672255830?s=46

Read more
U.S. courts will now make government use of spyware tools public
U.S. courts will soon start putting numbers on government spyware use
landfall-spyware-hacker

U.S. courts are set to begin publicly reporting how often federal judges authorize the government to use spyware and hacking tools to intercept real-time communications, giving the public its first standardized view of how frequently these surveillance techniques are being used.

The change will begin with data collected for the 2028 Wiretap Report, which will be published in 2029. The Administrative Office of the U.S. Courts told TechCrunch that the report will introduce a new “spyware/hacking” category covering wiretaps conducted using hacking tools and spyware, known to federal authorities as network investigative techniques, or NITs.

Read more
Mark Rober’s new CrunchLabs mysteries turn reading into a hands-on STEM adventure
Rober is expanding CrunchLabs with a series of mystery books focus on improving STEM skills with a fun twist.
Book, Publication, Comics

Mark Rober has spent years proving that science and engineering don’t have to feel like homework. His enormously popular videos turn subjects such as physics, robotics, and mechanical engineering into spectacular challenges, ingenious pranks, and machines that kids immediately want to understand.

CrunchLabs has carried that approach into the physical world with its Build Box subscriptions. Now Rober is taking it in another direction: children’s fiction.

Read more