Cyber Thieves Target Vacant Houses for Mail Theft and Identity Theft, Raising Concerns about Hybrid Cybercrime
Cybercriminals Evolve Beyond Traditional Hacking Techniques
Cybercriminals have adapted and evolved beyond traditional hacking methods, now leveraging legitimate services to intercept sensitive information. A concerning trend has emerged, where adversaries exploit vacant homes to intercept mail, leading to identity theft and financial fraud.
A New Low-Tech Approach to Identity Theft and Financial Fraud
This approach combines publicly available data, weak identity verification processes, and operational gaps to build scalable fraud workflows that are both low-cost and difficult to detect. It involves searching for “drop addresses” – real residential properties that are temporarily unoccupied and can be used to receive mail without alerting the rightful occupants.
Exploiting Digitalized Postal Services
Threat actors utilize legitimate digitalized postal services for discovering and monitoring incoming mail. Services like Informed Delivery provide residential consumers with digital previews of their incoming letter-sized mail and track package deliveries, transforming mail delivery into a form of intelligence gathering.
Fraud Ecosystems and Physical Address Control
Control over a physical address becomes an essential step in fraud operations that depend on both identity credibility and access to legitimate communication channels. The use of fake identities and the exploitation of legitimate services reflect a broader evolution in fraud operations, where digital intelligence gathering is combined with physical-world manipulation.
Challenges for Organizations
Detection increasingly depends on correlating signals across domains, including address usage patterns, mail forwarding activity, and identity inconsistencies. Many of the systems being abused exist outside the scope of traditional cybersecurity defenses, making it challenging for organizations to defend against these types of attacks.
- Financially, the impact is substantial, with mail theft schemes linked to hundreds of millions of dollars in suspicious activity tied to check fraud.
- The emergence of these techniques underscores a growing challenge for organizations.
