Scammers impersonated Russian firms online to deceive international companies into sending money for nearly a decade.
Cybersecurity professionals have uncovered a lengthy criminal operation that fooled businesses around the world into transferring funds to fraudsters. The scheme worked by creating counterfeit websites that mimicked legitimate Russian companies. When international firms tried to conduct business with what they thought were real organizations, they were actually dealing with criminals who intercepted their payments and disappeared with the money. This operation ran successfully for over nine years before security experts connected the pieces and went public with their findings.
Think of it like someone creating a fake storefront that looks identical to a real shop down the street. A customer walks in, makes a purchase, hands over their money, and walks out—only to realize later they bought from imposters. In this case, the criminals registered web addresses and designed pages that appeared almost identical to official company websites. Business representatives would find what seemed like the correct contact information, send purchase orders or payment requests, and unknowingly route their money into criminal accounts.
The threat actors demonstrated patience and technical skill by maintaining this operation across multiple fake sites simultaneously. They kept their scheme active for nearly a decade, which suggests they developed reliable methods to avoid detection and managed to convince enough victims to keep the illegal enterprise profitable.
This discovery highlights how vulnerable global commerce has become to sophisticated impersonation attacks. Unlike obvious phishing emails with poor spelling and suspicious links, these websites were nearly perfect replicas. Companies that thought they were following proper procedures—verifying contact information, requesting quotes, processing legitimate-looking invoices—still fell victim. The fact that this persisted for nine years means countless organizations lost money without necessarily realizing they had been targeted.
The real danger: If major corporations with resources and IT departments struggled to spot these fakes, smaller businesses with fewer security measures face even greater risk.
Now that researchers have publicly disclosed this scheme, law enforcement agencies worldwide have the information needed to investigate. However, the criminals behind this operation have likely already moved on to new tactics. Businesses should assume similar fraud campaigns are currently operating and take defensive action today rather than waiting for the next discovery.
The lesson is simple: trust, but always verify through independent channels before transferring money.
Want to understand the technology behind this story? ITVedas has beginner-friendly guides on every IT topic.
Explore IT Chapters →