Gobierno de Venezuela
A Venezuelan state entity used to record incidents in which technical sources attribute DNS spoofing or manipulation to state-controlled infrastructure—particularly CANTV/Movilnet and CONATEL—targeting opposition platforms such as VoluntariosXVenezuela and Héroes de la Salud.
- Incidents
- 2
- High impact
- 2
- First seen
- Feb 12, 2019
- Latest seen
- Apr 26, 2020
Linked incidents
Maduro’s government carries out a phishing attack via CANTV against the Héroes de la Salud platform
Between late March and late April 2020, in the midst of the COVID-19 pandemic, the opposition platform Héroes de la Salud (heroesdesaludve.info)—created by Juan Guaidó’s interim government to provide financial aid to healthcare workers—was the target of a state-sponsored phishing campaign. CANTV, the main state-owned internet provider, manipulated DNS responses to redirect its users from the legitimate site to a malicious clone (heroesdesaludve.co) that captured national ID numbers, addresses, email addresses, places of work, and job titles, as well as images of official documents. The case was documented by VEsinfiltro, Efecto Cocuyo, and Freedom House.
The Venezuelan government carries out a phishing attack via CANTV against the VoluntariosXVenezuela platform and exposes registrants' data
In February 2019, the state-owned ISP CANTV (using infrastructure from Movilnet and CONATEL) manipulated DNS responses to redirect users of the opposition-backed humanitarian aid platform voluntariosxvenezuela.com to an almost identical phishing clone (voluntariovenezuela.com) that collected names, ID numbers, email addresses, and phone numbers. Days later, pro-government accounts published the personal data of those who had registered, which DFRLab cross-referenced with the CNE’s voter registry. Conservative estimates suggest there were tens of thousands of victims.