From Free Game Cheats to Arson: Cybercriminals Recruit Children for Espionage and Violent Crimes
Cybercriminals are increasingly viewing children not merely as gateways to their parents' finances but as direct perpetrators of high-risk operations. During extended school breaks, teenagers spend significantly more time immersed in online games and messaging apps, where fraudsters infiltrate with offers of free in-game currency, custom mods, cheats, and cracked game versions.
After establishing initial trust, attackers pressure young users to share SMS verification codes, banking card information, or grant remote access to a parent's smartphone. When persuasion fails, the criminals escalate to intimidation and blackmail using previously obtained personal data.
According to Kaspersky Lab, more than 19 million attempts to spread malicious and unwanted files disguised as popular games were detected from April 2024 to April 2025. These files install spyware and RAT trojans capable of reading private conversations, logging keystrokes, and secretly controlling cameras and microphones.
The danger intensifies when children use a parent's device containing corporate email and business applications, potentially exposing entire organizations to compromise through a single downloaded cheat.
Beyond account theft, adolescents are deceived into thinking they are assisting law enforcement agencies. Criminals threaten the arrest of parents or leverage compromising material to coerce compliance, ultimately demanding that children photograph their homes, surrender keys, set fire to property, or physically attack individuals.
In July, a 12-year-old boy from Leningrad Oblast was forced to assault a police officer, while a 13-year-old from Podolsk was ordered to ignite a gas column at a filling station.
Warning signs include a child suddenly hiding their screen, deleting chat histories, becoming anxious after calls, experiencing sleep disturbances, or receiving unusual instructions. Punishment only strengthens the criminal's hold, as the teenager becomes even more reluctant to confess.
Parents and guardians must reinforce that no unknown contact has the right to request codes, funds, documents, or secret assignments. Any such interaction should be immediately terminated, the conversation preserved, and shown to adults. Genuine law enforcement never recruits minors through gaming chats, as noted in reporting by Izvestia.
Related articles
Mail.ru Blocks Phishing Wave Using Password-Protected RAR Archives
Mail.ru's antispam team has stopped a new phishing campaign that relies on password-protected RAR archives. These messages accounted for 13% of all blocked emails over the past month. The attackers impersonate business correspondents by sending contracts, signature requests, and tax-related notifications during the reporting season. Each email contains the archive password in plain text, allowing the recipient to open a malicious executable hidden inside. The malware is designed to steal credentials, grant remote access, or exfiltrate personal and corporate data. Mail.ru's filtering system uses more than 30 machine-learning models and antispam checks to detect such threats. Users are advised to verify senders carefully and avoid launching files from unexpected attachments even when a password is supplied.
Kaspersky Adds Call Filtering to Kaspersky Secure Mobility Management for Android Devices
Kaspersky has introduced call control capabilities into the expanded version of Kaspersky Secure Mobility Management. The new feature allows corporate Android devices running Kaspersky Endpoint Security for Android to check incoming call numbers against both local offline databases and global online reputation sources. Depending on company policy, the system can display warnings to employees or automatically block suspicious calls. Administrators gain the ability to define rules by call category, maintain black and white lists, and apply different policies to specific employee groups. The update targets risks from telephone fraud and social engineering attempts that aim to extract confidential corporate information or funds. It also helps reduce unwanted spam calls that disrupt staff who handle high volumes of incoming communications. Kaspersky Secure Mobility Management provides full lifecycle control over corporate mobile devices, applications, data, and security policies.
Behavioral Anti-Fraud: How Systems Analyze User Actions Beyond Device and Browser Fingerprints
Anti-fraud systems are shifting from static device and browser fingerprinting toward continuous behavioral analysis powered by machine learning. The article explains why matching User-Agent strings with Canvas or font rendering is no longer sufficient, as bot developers can easily synchronize these static signals. Modern defenses now record dozens of micro-events during a session, including keystroke timing, mouse trajectories, scroll speed, and focus changes, to build a dynamic Trust Score. These models are trained on large clusters of real-user behavior and flag sessions whose patterns fall outside legitimate clusters even when fingerprints appear realistic. The text details dwell time, flight time, error-correction patterns, natural hand tremor, and acceleration curves governed by Fitts’s law as key biometric markers. It also covers browser-level signals such as Event.isTrusted, CDP artifacts, and navigator.webdriver flags that reveal automation frameworks. The discussion extends to mobile sensors and concludes that perfectly error-free, mathematically smooth input is itself a strong indicator of synthetic activity.
Free Online Panel Examines Rising Omnichannel Scams and Multichannel Fraud Tactics
The Brazilian human risk management firm Eskive is hosting its third free online panel on August 18 at 11 a.m. to address the growing threat of omnichannel cyber fraud. Experts will discuss how attackers combine multiple channels such as email, SMS, and other vectors to create more convincing social-engineering narratives that bypass traditional single-channel defenses. The event will feature CEO Priscila Meyer as moderator along with cyber threat intelligence specialist Thiago Bordini and Santa Catarina Civil Police investigator Elias Edenis. Participants will gain practical insights from real client simulations, live Q&A sessions, and interactive quizzes designed to improve organizational preparedness. The panel aims to highlight why users accustomed to recognizing basic phishing or smishing attempts remain vulnerable when fraudsters deploy coordinated, multi-channel campaigns.