Everything You Need to Know About Brandjacking

Everything You Need to Know About Brandjacking

Brandjacking isn't new, but you should be aware of the ways you could be getting scammed.

You recently got an email from a company you're familiar with, such as Netflix, and the email tells you that something is wrong with your payment. You'll need to re-enter your credit card information for your entertainment to continue streaming. The email looks authentic enough, so you click.

Upon further inspection, however, you realize this is not the Netflix you know and love but rather a scammer phishing for your credit card information. What is this new trend and how can we prevent it?

Cybersecurity experts are calling this phishing scam "brandjacking." The term is defined as an activity whereby someone acquires or otherwise assumes the online identity of another entity for the purposes of acquiring that person's or business' brand equity.

In layman's terms, that means someone is pretending to be someone their not, like catfishing for businesses but riskier.

Brandjacking isn't exactly "new" but it is getting a lot of attention the past few years given the rise of social media and the ability to create a quick "fake" account. The intent isn't always malicious, for example, in 2015, Target announced it was planning on removing the gender descriptions from in-store signage within its children's toy sections. Many people flocked to the company's Facebook page to share their reactions to the news, it wasn't long before an account named "Ask ForHelp" with the Target logo as the profile picture started responding to unhappy customers with snarky, flippant remarks.

Turns out the account was created to appear as a Target customer service account, but it was, in fact, fake. Target responded to the internet troll by releasing an official statement outing the stunt as an incident facilitated by a fraudster.

However, scammers have been using brandjacking to facilitate their more malicious motives. At the start of the new year, Netflix has been at the center of a phishing scam much like the one I described before. An Australian cybersecurity firm is warning Netflix customers about a scam that informs users via email that their credit card no longer works.

Mailguard issued the warning recently, reporting that the scammers are using "brandjacking" emails in order to get customers' credit card information. This isn't the first time Netflix has been targeted, a similar phishing scam popped up last Fall.

While their isn't really a way to "prevent" brandjacking from happening, businesses can be on their guard about possible scams including their brand names. The quicker a brand realizes they are being targeted and alerts their customers of the scheme, the worst the result for the scammer and the better the result for the company.

Consumers can also do their part to ensure they aren't the victim of a brandjacking phishing scam. Consumers should be wary of all emails that come to their accounts. If there is a problem with your payment on any of your online accounts, make sure you go straight to that website and check out the problem there. Do not click through the email to get to the account settings.

The FDA has a list of tips to avoid phishing scams, you can view them here.

About the Author

Sydny Shepard is the Executive Editor of Campus Security & Life Safety.

Featured

  • New Report Reveals Top Trends Transforming Access Controller Technology

    Mercury Security, a provider in access control hardware and open platform solutions, has published its Trends in Access Controllers Report, based on a survey of over 450 security professionals across North America and Europe. The findings highlight the controller’s vital role in a physical access control system (PACS), where the device not only enforces access policies but also connects with readers to verify user credentials—ranging from ID badges to biometrics and mobile identities. With 72% of respondents identifying the controller as a critical or important factor in PACS design, the report underscores how the choice of controller platform has become a strategic decision for today’s security leaders. Read Now

  • Overwhelming Majority of CISOs Anticipate Surge in Cyber Attacks Over the Next Three Years

    An overwhelming 98% of chief information security officers (CISOs) expect a surge in cyber attacks over the next three years as organizations face an increasingly complex and artificial intelligence (AI)-driven digital threat landscape. This is according to new research conducted among 300 CISOs, chief information officers (CIOs), and senior IT professionals by CSC1, the leading provider of enterprise-class domain and domain name system (DNS) security. Read Now

  • ASIS International Introduces New ANSI-Approved Investigations Standard

    • Guard Services
  • Cloud Security Alliance Brings AI-Assisted Auditing to Cloud Computing

    The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today introduced an innovative addition to its suite of Security, Trust, Assurance and Risk (STAR) Registry assessments with the launch of Valid-AI-ted, an AI-powered, automated validation system. The new tool provides an automated quality check of assurance information of STAR Level 1 self-assessments using state-of-the-art LLM technology. Read Now

  • Report: Nearly 1 in 5 Healthcare Leaders Say Cyberattacks Have Impacted Patient Care

    Omega Systems, a provider of managed IT and security services, today released new research that reveals the growing impact of cybersecurity challenges on leading healthcare organizations and patient safety. According to the 2025 Healthcare IT Landscape Report, 19% of healthcare leaders say a cyberattack has already disrupted patient care, and more than half (52%) believe a fatal cyber-related incident is inevitable within the next five years. Read Now

New Products

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file.