cancel
Showing results for 
Search instead for 
Did you mean: 

Possible fraud using inside information/hack

Anonymous
Not applicable
Hello.
I've been sent an SMS saying I've won 1M GBP, and should send an email with my phone number to myxmas@o2.co.uk.
as you can see - this is an official O2 domain email address - which is very hard to fake as one would need access to O2's email server, and thus I sent a mail with the phone number alone.
An hour later, got a reply (again from the same address, though it is easier to fake). With a soft-of-official O2 PDF inside. I'll quote a bit from it:
------------------------------------------------------------------------------------------
"We acknowledge the receipt of your mail with regard to the winning notification as earlier
sent to your Mobile. The 2010 O2 Live International Mobile Draw is no doubt, a momentous
achievement in the checkered history of this Corporation.
Your Mobile Telephone Number was selected randomly through our Computer Ballot System
(CBS) from World Mobile Telephone Directories, and you have been awarded
GBP1,000,000.00 (One Million Great Britain Pounds). This promotion is part of the financial
empowerment programme of the O2 Telecommunications Company of United Kingdom in its
desire to reward our numerous customers worldwide.
While basking in the euphoria of this achievement, I wish to seize this opportunity to
acquaint you with guidelines you must follow in order to complete your claims. On our part,
we have a mandate to see you through. We shall work assiduously to realize this mandate
as we respect your views, opinions and most importantly protect your Privacy..."

------------------------------------------------------------------------------------------
The PDF also contained special unique PIN number which will ID my winning from now on.
The PDF and email is signed as:
"Barrister M. Victor
(Prize Administrator)
Direct Line: +447407281237"
After digging around and also calling O2's press-room, I came to the conclusion this is a hoax (Nigerian fraud).
To test this, I opened a fake new gmail account, and sent this myxmas@o2.co.uk address a new letter saying I won the prize and thank you and blah blah blah.. and what should I do to get the money, this time I provided no phone number or any other id-ing detail, other than the fake email address and a made-up name.
To my surprise, a few minutes later, I yet again got the same email from the same Barrister M. Victor and WITH THE SAME PIN NUMBER!!!!

I have no idea how to contact O2 officials and warn them about this possible breach in security - as this fellow is either on their internal network by hacking - or has someone from IT collaborating with him - I see no other reason for him using an official O2 domain address.
What do you think? Could you help me throw a warning to O2's officials? Anyone knows how to contact them to help us all stop this fraud?
J.
Message 1 of 9
2,160 Views
8 REPLIES 8

Anonymous
Not applicable
Anyone can sign up for an o2.co.uk webmail account. Its a free service like gmail, hotmail etc.
Message 2 of 9
2,160 Views

adamtemp64
Level 66: Unequalled
  • 16454 Posts
  • 312 Topics
  • 1316 Solutions
Registered:
A forward the text to o2 spam reporting number 7726.
B contact o2 customerservices so they can shut down the spam email account.
Only emails from an @o2.com should be treated as official comms and then they do not send that sort of email out.
To set up an o2.co.uk address all you need is a mobile number so they only need a payg o2 phone to register the email address
iPhone 11 Pro 256gb on unlimited data
iPad Pro 12.9” 2020 256gb refresh o2 family discount
Apple Watch series 4
My first mobile was in 1995 a CM-R111 from sony on Cellnet.
Wincanton South Somerset (Full 4g 3G 2g indoor coverage) Remember we are all customers here not customer services

Message 3 of 9
2,160 Views

Anonymous
Not applicable
Thanks guys! this is most helpful!
@adamtemp64 - Many thanks for reporting this issue! Also you mentioned that registering must is having an O2 phone.. does that mean they would be able to trace this !@#!@#!@#!#@$#$#$@$@@ criminal?
Message 4 of 9
2,160 Views

adamtemp64
Level 66: Unequalled
  • 16454 Posts
  • 312 Topics
  • 1316 Solutions
Registered:
I have not reported it just told you how to
iPhone 11 Pro 256gb on unlimited data
iPad Pro 12.9” 2020 256gb refresh o2 family discount
Apple Watch series 4
My first mobile was in 1995 a CM-R111 from sony on Cellnet.
Wincanton South Somerset (Full 4g 3G 2g indoor coverage) Remember we are all customers here not customer services

Message 5 of 9
2,160 Views

Anonymous
Not applicable
Lovely spam :womanindifferent:
As said, report it, you have won nothing, it happens on all networks and some sucker(s) fall for it, please give us your bank details etc, cheers and off goes your months wages and overdraft 😮
Message 6 of 9
2,160 Views

Anonymous
Not applicable
I'm astounded that people are still getting hooked in by this "you have won...." scam in its various guises.
Message 7 of 9
2,160 Views

Anonymous
Not applicable
Ahm... I'm not O2 customer, hell, I'm not a UK citizen even (nor I'm there at the moment...) So I can't register for an account, nor I can forward the msg to 7726.
Anyone aware of a simple-old-email address or a phone number I can call for this?
Message 8 of 9
2,160 Views

adamtemp64
Level 66: Unequalled
  • 16454 Posts
  • 312 Topics
  • 1316 Solutions
Registered:
post flagged to the moderators asking your concerns are passed to the relevant department or use the email us from the contact us at the bottome of the o2 website and select I am not a customer
iPhone 11 Pro 256gb on unlimited data
iPad Pro 12.9” 2020 256gb refresh o2 family discount
Apple Watch series 4
My first mobile was in 1995 a CM-R111 from sony on Cellnet.
Wincanton South Somerset (Full 4g 3G 2g indoor coverage) Remember we are all customers here not customer services

Message 9 of 9
2,160 Views