The Federal Police Administration, Department for Combating Computer Crime, as a result of continuous monitoring of the state of security in cyber space, has issued an urgent warning to citizens and legal entities about the drastic increase in sophisticated online fraud.
It was pointed out that the attackers use advanced social engineering and artificial intelligence techniques to cause significant financial damage and steal personal data.
Among the most common and dangerous forms of fraud are BEC frauds (Business Email Compromise), in which companies that make payments abroad are the target. Attackers intercept e-mail communication, create fake addresses that differ by only one letter from the original ones, and send a “notification of giro account change”.
The payments end up in the criminals’ accounts, and the fraud is usually detected only after several weeks.
This is followed by fake investment scams and “crypto-traps” where attackers use aggressive marketing, promising guaranteed profits of 100 percent or more in a short period of time.
Professional websites are created that show the fictitious growth of your money. When the victim tries to withdraw funds, additional payments for “taxes” or “fees” are requested until the account is completely empty.
In “Pump and Dump” scams, price manipulation of unknown cryptocurrencies takes place via social networks.
Furthermore, in AI and Deepfake scams using artificial intelligence, attackers clone the voice of close people or superiors in the company.
Victims receive a call or voice message in which “your manager” or “family member” urgently requests payment of money due to an accident or business opportunity. The voice is identical to the original.
In Phishing (E-mail) scams, false messages are sent about “password expiration” or “security problem” on the bank account.
Smishing (SMS) presents mass messages about “pending packages” or “utility bills” with malicious links.
In Vishing scams, people pose as “Microsoft technical support” or “investigators” in order to gain access to your computer through applications like AnyDesk or TeamViewer.
Ransomware is a type of fraud in which through infected e-mail attachments (often disguised as “Job Competition” or “Invoice”), attackers encrypt all data in a computer system and demand a ransom.
Sextortion involves extorting money under the threat of publishing compromising recordings. Even if the footage doesn’t exist, attackers use your photos from social networks and AI to create fake material.
In the case of scams on classified ads (Njuškalo, OLX, etc.), the attackers contact the sellers via WhatsApp or Viber, claiming that they made the payment via a “courier service”.
Then they send a link to a fake courier page where the seller is asked to enter all the information from the card, including the CVC number, under the pretext that it is necessary to “receive money”.
Romance Scams represent long-term emotional manipulation of victims via social networks. Attackers build trust for months and then ask for money for “visas”, “treatment” or “visiting”.
The FUP warns citizens to never hand over the card’s CVC/CVV number (three digits on the back) or the codes they receive via SMS from the bank.
They are invited to check e-mail addresses and to always check the sender’s domain in detail (for example, instead of info@firma.ba, check if it says info@f1rma.ba).
Also, one should suspect urgency because criminals always create a sense of panic and urgency (eg “You only have 10 minutes left to save money”).
It is necessary to use double authentication and mandatory 2FA on all accounts where possible.
The Federal Police Administration appeals to all citizens to immediately stop all communication with the perpetrators and report the case to the nearest police station if they suspect an attempted fraud or if they have already become a victim.
The Federal Police Administration, Department for Combating Computer Crime, as a result of continuous monitoring of the state of security in cyber space, has issued an urgent warning to citizens and legal entities about the drastic increase in sophisticated online fraud.
It was pointed out that the attackers use advanced social engineering and artificial intelligence techniques to cause significant financial damage and steal personal data.
Among the most common and dangerous forms of fraud are BEC frauds (Business Email Compromise), in which companies that make payments abroad are the target. Attackers intercept e-mail communication, create fake addresses that differ by only one letter from the original ones, and send a “notification of giro account change”.
The payments end up in the criminals’ accounts, and the fraud is usually detected only after several weeks.
This is followed by fake investment scams and “crypto-traps” where attackers use aggressive marketing, promising guaranteed profits of 100 percent or more in a short period of time.
Professional websites are created that show the fictitious growth of your money. When the victim tries to withdraw funds, additional payments for “taxes” or “fees” are requested until the account is completely empty.
In “Pump and Dump” scams, price manipulation of unknown cryptocurrencies takes place via social networks.
Furthermore, in AI and Deepfake scams using artificial intelligence, attackers clone the voice of close people or superiors in the company.
Victims receive a call or voice message in which “your manager” or “family member” urgently requests payment of money due to an accident or business opportunity. The voice is identical to the original.
In Phishing (E-mail) scams, false messages are sent about “password expiration” or “security problem” on the bank account.
Smishing (SMS) presents mass messages about “pending packages” or “utility bills” with malicious links.
In Vishing scams, people pose as “Microsoft technical support” or “investigators” in order to gain access to your computer through applications like AnyDesk or TeamViewer.
Ransomware is a type of fraud in which through infected e-mail attachments (often disguised as “Job Competition” or “Invoice”), attackers encrypt all data in a computer system and demand a ransom.
Sextortion involves extorting money under the threat of publishing compromising recordings. Even if the footage doesn’t exist, attackers use your photos from social networks and AI to create fake material.
In the case of scams on classified ads (Njuškalo, OLX, etc.), the attackers contact the sellers via WhatsApp or Viber, claiming that they made the payment via a “courier service”.
Then they send a link to a fake courier page where the seller is asked to enter all the information from the card, including the CVC number, under the pretext that it is necessary to “receive money”.
Romance Scams represent long-term emotional manipulation of victims via social networks. Attackers build trust for months and then ask for money for “visas”, “treatment” or “visiting”.
The FUP warns citizens to never hand over the card’s CVC/CVV number (three digits on the back) or the codes they receive via SMS from the bank.
They are invited to check e-mail addresses and to always check the sender’s domain in detail (for example, instead of info@firma.ba, check if it says info@f1rma.ba).
Also, one should suspect urgency because criminals always create a sense of panic and urgency (eg “You only have 10 minutes left to save money”).
It is necessary to use double authentication and mandatory 2FA on all accounts where possible.
The Federal Police Administration appeals to all citizens to immediately stop all communication with the perpetrators and report the case to the nearest police station if they suspect an attempted fraud or if they have already become a victim.
The Federal Police Administration, Department for Combating Computer Crime, as a result of continuous monitoring of the state of security in cyber space, has issued an urgent warning to citizens and legal entities about the drastic increase in sophisticated online fraud.
It was pointed out that the attackers use advanced social engineering and artificial intelligence techniques to cause significant financial damage and steal personal data.
Among the most common and dangerous forms of fraud are BEC frauds (Business Email Compromise), in which companies that make payments abroad are the target. Attackers intercept e-mail communication, create fake addresses that differ by only one letter from the original ones, and send a “notification of giro account change”.
The payments end up in the criminals’ accounts, and the fraud is usually detected only after several weeks.
This is followed by fake investment scams and “crypto-traps” where attackers use aggressive marketing, promising guaranteed profits of 100 percent or more in a short period of time.
Professional websites are created that show the fictitious growth of your money. When the victim tries to withdraw funds, additional payments for “taxes” or “fees” are requested until the account is completely empty.
In “Pump and Dump” scams, price manipulation of unknown cryptocurrencies takes place via social networks.
Furthermore, in AI and Deepfake scams using artificial intelligence, attackers clone the voice of close people or superiors in the company.
Victims receive a call or voice message in which “your manager” or “family member” urgently requests payment of money due to an accident or business opportunity. The voice is identical to the original.
In Phishing (E-mail) scams, false messages are sent about “password expiration” or “security problem” on the bank account.
Smishing (SMS) presents mass messages about “pending packages” or “utility bills” with malicious links.
In Vishing scams, people pose as “Microsoft technical support” or “investigators” in order to gain access to your computer through applications like AnyDesk or TeamViewer.
Ransomware is a type of fraud in which through infected e-mail attachments (often disguised as “Job Competition” or “Invoice”), attackers encrypt all data in a computer system and demand a ransom.
Sextortion involves extorting money under the threat of publishing compromising recordings. Even if the footage doesn’t exist, attackers use your photos from social networks and AI to create fake material.
In the case of scams on classified ads (Njuškalo, OLX, etc.), the attackers contact the sellers via WhatsApp or Viber, claiming that they made the payment via a “courier service”.
Then they send a link to a fake courier page where the seller is asked to enter all the information from the card, including the CVC number, under the pretext that it is necessary to “receive money”.
Romance Scams represent long-term emotional manipulation of victims via social networks. Attackers build trust for months and then ask for money for “visas”, “treatment” or “visiting”.
The FUP warns citizens to never hand over the card’s CVC/CVV number (three digits on the back) or the codes they receive via SMS from the bank.
They are invited to check e-mail addresses and to always check the sender’s domain in detail (for example, instead of info@firma.ba, check if it says info@f1rma.ba).
Also, one should suspect urgency because criminals always create a sense of panic and urgency (eg “You only have 10 minutes left to save money”).
It is necessary to use double authentication and mandatory 2FA on all accounts where possible.
The Federal Police Administration appeals to all citizens to immediately stop all communication with the perpetrators and report the case to the nearest police station if they suspect an attempted fraud or if they have already become a victim. NOISE.




