惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Hugging Face - Blog
Hugging Face - Blog
B
Blog
博客园_首页
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
G
GRAHAM CLULEY
Microsoft Azure Blog
Microsoft Azure Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
WordPress大学
WordPress大学
The GitHub Blog
The GitHub Blog
Security Latest
Security Latest
F
Full Disclosure
云风的 BLOG
云风的 BLOG
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
C
Cyber Attacks, Cyber Crime and Cyber Security
L
LINUX DO - 热门话题
V
Visual Studio Blog
有赞技术团队
有赞技术团队
腾讯CDC
V
V2EX
Vercel News
Vercel News
C
Cisco Blogs
V2EX - 技术
V2EX - 技术
Scott Helme
Scott Helme
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
AWS News Blog
AWS News Blog
S
Schneier on Security
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
小众软件
小众软件
G
Google Developers Blog
C
Check Point Blog
C
CERT Recently Published Vulnerability Notes
博客园 - 叶小钗
S
SegmentFault 最新的问题
T
Tor Project blog
J
Java Code Geeks
L
Lohrmann on Cybersecurity
Application and Cybersecurity Blog
Application and Cybersecurity Blog
T
The Exploit Database - CXSecurity.com
Apple Machine Learning Research
Apple Machine Learning Research
T
Tailwind CSS Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
博客园 - 司徒正美
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
S
Secure Thoughts
量子位
N
News and Events Feed by Topic
MyScale Blog
MyScale Blog
TaoSecurity Blog
TaoSecurity Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
Engineering at Meta
Engineering at Meta

Comments for Securelist

New BitLocker extortion activity: RDP, MSSQL, RMM Abuse How to improve your organization's security based on compromise assessment findings SparkCat crypto stealer in Google Play and App Store How the ToddyCat APT group gains access to Gmail accounts The Gentlemen RaaS: rapid growth and a new ransomware variant Threat landscape for SMBs in 2026: fake AI tools, phishing and more Telegram phishing bots and channels: how it works An unknown actor distributes malicious VBS scripts via WhatsApp MiniPlasma: detecting exploitation Argamal: Malware hidden in hentai games Containers on fire: from container escapes to supply chain attacks What’s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security and Free Internet Kimsuky targets organizations with PebbleDash-based tools State of ransomware in 2026 Copy Fail: root on virtually any Linux Popular DAEMON Tools software compromised Operation ShadowHammer: a high-profile supply chain attack ‘Nigerian’ Letters - Now With a Syrian Twist PhantomRPC: A new privilege escalation technique in Windows RPC Operation Triangulation: The last (hardware) mystery Scammers’ delivery service: exclusively dangerous Operation Triangulation: iOS devices targeted with previously unknown malware Anatomy of a Cyber World Global Report 2026 Operation Triangulation: iOS devices targeted with previously unknown malware TGIF(P) - Thank god it’s fried phish TGIF(P) - Thank god it’s fried phish The Flame: Questions and Answers Story of the year: the impact of AI on cybersecurity Story of the year: the impact of AI on cybersecurity The game is over: when “free” comes at too high a price. What we know about RenEngine The game is over: when “free” comes at too high a price. What we know about RenEngine The game is over: when “free” comes at too high a price. What we know about RenEngine Arkanix Stealer: a C++ & Python infostealer Tusk: unraveling a complex infostealer campaign
Congratulations, you’ve won! The reality behind online lotteries
William Much · 2026-04-30 · via Comments for Securelist

It’s amazing how often we get a message telling us we’ve won the lottery. These glad tidings share plenty of similarities: the winner is notified that he has won a handsome sum of money in a certain lottery and must contact a lottery official to receive it. Sounds tempting, but alas, this is nothing more than network fraud .

In order to receive the winnings, the user is asked to send money – ranging from a few hundred to several thousand dollars – to a specified account. This is ostensibly to meet expenses like money transfer commission, taxes, fees for opening a bank account, etc. The “lucky winner” often sees this money as insignificant in comparison to the sum they’ve just won. However, once they receive the “fee”, the fraudsters disappear, and the unwary user has little chance of ever finding them.

Be careful! Do not fall for these scams!

Telltale signs of lottery fraud

So, how can a user identify a fraudulent message?

The answer is simple: if you haven’t participated in a lottery, all “winning” messages are fraudulent.

The reader’s next question may be: what if I have in fact taken part in a lottery in the hope of a big win?

If the prize draw has actually taken place and you have actually participated in the lottery, you will be addressed by your name (or the number of the lottery ticket that you purchased), and the letter will contain the address and the name of the company that organized the lottery.

Fake lottery win notifications may come in a variety of shapes and sizes. A lot of them contain bad spelling mistakes. This is a sure sign of a fraudulent message. Serious lottery companies have editors and copywriters to make sure their letters are written properly.

In some cases, the fake messages are well written, but they are sent from public mail servers like gmail.com, hotmail.com or yahoo.com. Please remember that messages from a reputable company are always sent from corporate addresses.

In some fake lottery messages, you may be asked to reply to an e-mail address which is different from the sender’s address, e.g. to the address of an “agent” or “manager”.

In other words, a fake lottery message will always contain some type of discrepancy. Watch out for them.

Congratulations…

Here are some typical ‘Lottery letters’ that make use of the ploys most favored by the fraudsters.

A European lottery…in Nigeria

One email informs recipients that they have won a prize in a European lottery:

Expressions such as “your email address was selected” or “your address has won” are telltale signs that the message is part of a scam. After all, you haven’t used your address to participate in a prize draw, have you? And even if you have, it was unlikely to have been the European lottery named here.

If nothing else, the request to contact a Mr. Marshall Ellis in Nigeria, who for some reason uses the public service live.com, is bound to convince us that what we are dealing with here is spam – lottery organizers just don’t ask winners to contact them at their personal email addresses. All communication in such cases would be sent to and from a business address. Moreover, if the lottery is European, then why does Mr. Ellis reside in Nigeria?

Highly inquisitive users may well wonder about the euroonlinelottery.com domain from which the message was sent. Their suspicions would be confirmed. Yes, that’s right, no such site actually exists. Instead, the browser redirects to wn.com (World News). There is no sign of a lottery at the site and never has been.

Participating in lotteries without knowing about it

The second message promises a lottery win from Coca Cola, but, inexplicably, is sent from a French Yahoo! server:

The fraudsters obviously expect some recipients to suspect a scam and attempt to convince them otherwise. Here’s another example of a scam that no doubt appears to be perfectly plausible from its authors’ point of view:

We won’t bother citing this rather long message, which is designed to look like an email from Google, in full. We only want to draw your attention to the second paragraph where it states: “The online draws was conducted by a random selection of email addresses from an exclusive list of E-mail addresses of individuals and corporate bodies picked by an advanced automated random computer search from the internet. However, no tickets were sold but all email addresses were assigned to different ticket numbers for representation and privacy.”

Name-dropping

It’s easier to get the victim to take the bait if the fake lottery uses the name of a reputable organization, be it Coca Cola or Google, BMW or McDonald’s, Microsoft or Yahoo! Unfortunately, these companies cannot do anything about random fraudsters exploiting their names for their own ends.

These messages claim to come from large companies which are allegedly conducting lotteries. The attachments contain more “you won” messages. But why would representatives of all these companies send messages from public mail servers like Gmail or MSN?

Should you receive an email of this type, visit the specific company’s official website; most likely, you will find that the company is not actually holding a lottery of any kind. Furthermore, if you Google “Coca Cola lottery”, “Yahoo lottery”, “Google lottery” etc., you will receive links to articles describing this type of online fraud with specific examples and even victims’ stories.

Lost in translation

The Google Translate service has made life much easier for online fraudsters with international ambitions. If earlier their target audience was limited to their compatriots, now they can send messages to users all over the world. We routinely receive such notifications in English, German, Spanish, Portuguese, Ukrainian, Polish, Norwegian and a number of other languages, not to mention Russian.

Below are examples of the joint creative efforts of the fraudsters and translating machines. The sample texts are in English, German and Spanish.

We can’t really imagine that any of our readers would be suckered by such linguistic creations, but still, we urge all users to be cautious. Real lottery organizers would not mutilate a language like that in the above examples.

Beware!

We could go on forever with examples of fake lottery win messages. According to Kaspersky Lab’s statistics, messages like this can make up as much as three percent of all spam in any given month – that’s thousands of messages. To avoid falling victim to online fraud, you need to follow some simple rules:

  1. Remember, you cannot win a cash prize in a lottery you have not participated in.
  2. Do not trust automatically translated messages or those containing obvious mistakes.
  3. Always check the sender’s email address(es). Lottery organizers will not send messages from free mail services.
  4. If you still think the message you have received is about a real win, check all the information. Use search engines to look at the lottery name, the senders’ names and telephone numbers. Among the search results you may find detailed commentary.
  5. Most importantly, always remember: there is no such thing as a free lunch.