By Hook or by Crook: Exposing the Diverse Abuse Tactics of Technical Support Scammers
Bharat Srinivasan, Athanasios Kountouras, Najmeh Miramirkhani, Monjur, Alam, Nick Nikiforakis, Manos Antonakakis, Mustaque Ahamad

TL;DR
This paper investigates the evolving tactics of technical support scammers by analyzing their abuse of search engines and advertisements, revealing extensive infrastructure and new methods used to deceive victims online.
Contribution
It introduces a data-driven approach combining search query analysis and DNS techniques to uncover and characterize the infrastructure supporting TSS campaigns.
Findings
Over 9,000 TSS domains identified
Scammers manipulate search engines and ad networks
Minimal overlap with previously studied abuse domains
Abstract
Technical Support Scams (TSS), which combine online abuse with social engineering over the phone channel, have persisted despite several law enforcement actions. The tactics used by these scammers have evolved over time and they have targeted an ever increasing number of technology brands. Although recent research has provided insights into TSS, these scams have now evolved to exploit ubiquitously used online services such as search and sponsored advertisements served in response to search queries. We use a data-driven approach to understand search-and-ad abuse by TSS to gain visibility into the online infrastructure that facilitates it. By carefully formulating tech support queries with multiple search engines, we collect data about both the support infrastructure and the websites to which TSS victims are directed when they search online for tech support resources. We augment this with…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsSpam and Phishing Detection · Advanced Malware Detection Techniques · Cybercrime and Law Enforcement Studies
