Criminals Exploit the Death of Pope Francis to Launch Scams

Stu Sjouwerman | Apr 29, 2025

Extent of Social EngineeringScammers are exploiting the death of Pope Francis to launch social engineering attacks, according to researchers at Check Point.

The researchers note that threat actors often take advantage of high-profile tragedies and crises to exploit victims’ emotions.

“They typically begin with disinformation campaigns on social media platforms like Instagram, TikTok, or Facebook, uploading fake images generated by AI,” the researchers write.

“These campaigns are designed to capture user attention, prompting them to search for more information via search engines or click on links embedded within the images or posts. Once engaged, users may be redirected to fraudulent websites that serve various malicious purposes, from data theft to financial scams.”

In this case, the crooks are using AI-generated images of the Pope to grab users’ attention and trick them into visiting a malicious website.

“The link was hidden in a website promoting potential fake news about Pope Francis,” the researchers write. “Once a user clicked on one of the links, it redirected them to a fake Google page promoting a gift card scam—a common tactic used to trick individuals into handing over sensitive information or making payments.”

Check Point concludes that users should follow security best practices and maintain a healthy sense of suspicion to avoid falling for these attacks.

“Be cautious with sensational headlines or viral content, especially on social media,” Check Point writes. “If the news seems shocking, cross-check it through reputable media outlets.” The researchers add, “Don’t click on links from unfamiliar sources, especially in emails or social posts related to breaking news. Instead, type official news website URLs directly into your browser.”

New-school security awareness training can give your organization an essential layer of defense against social engineering attacks. KnowBe4 empowers your workforce to make smarter security decisions every day. Over 70,000 organizations worldwide trust the KnowBe4 platform to strengthen their security culture and reduce human risk.

Check Point has the story.

Stop Being a Target for Social Media Exploits

Social media is the new frontier for targeted spear phishing and credential theft. Use our Free Social Media Phishing Test to identify which users are likely to click malicious links or leak data on platforms like LinkedIn and X, and get your results in just 24 hours.

Get Your Free Test

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.