$ techbeacon▋
Threats

Scam Networks Deploy Dozens of Fake Government Sites Across Central Asia

Scam Networks Deploy Dozens of Fake Government Sites Across Central Asia

Cybercriminals have launched a wave of counterfeit government websites targeting internet users throughout Central Asian nations, according to a recent investigation by The Record. The fraudulent portals masquerade as official ministries, tax agencies and public service sites, enticing visitors to submit personal details such as phone numbers, email addresses and, in some cases, banking information.

Once the data is harvested, the scammers employ it to mount follow‑up attacks, ranging from phishing calls and emails that request money or additional credentials, to remote‑access exploits that can compromise users' devices. The scheme relies on the trust that citizens place in government portals, especially in regions where online public services are expanding but digital literacy varies widely.

Authorities in Kazakhstan, Kyrgyzstan, Tajikistan and Uzbekistan have reported a surge in complaints over the past several months, noting that many victims first encountered the fake sites through search engine results or social‑media links that appear legitimate. In several instances, the bogus pages replicated the visual design, language and even the domain naming conventions of real government sites, making it difficult for average users to spot the deception.

Cyber‑security experts warn that the operation is part of a broader trend of “credential‑harvesting” scams that have proliferated in the post‑pandemic era, as fraudsters exploit the growing reliance on digital channels for civic interactions. The collected contact details enable a “double‑dip” approach: first, scammers may attempt to extract money directly through fraudulent payment requests; second, they can use the information to launch more sophisticated identity‑theft schemes, potentially opening bank accounts or applying for loans in victims’ names.

Regional law‑enforcement agencies are coordinating with international partners to trace the hosting providers and payment processors used by the operators, but the cross‑border nature of the internet complicates rapid takedown efforts. Meanwhile, officials are urging the public to verify website URLs, look for secure HTTPS connections, and refrain from sharing personal data unless they are on verified government portals. As digital services continue to expand across Central Asia, vigilance and public awareness remain critical tools in curbing the impact of these deceptive campaigns.

Source: The Record
Mahesh Kumar Sahoo — Mahesh covers ransomware gangs, data leak sites, and dark web marketplaces, mapping how stolen data surfaces and gets sold. Follows ShinyHunters-style groups across leak forums.

Comments (0)

Be the first to comment.

Join the discussion

Protected by reCAPTCHA v3

Related