HomeSecurityBeware of PayPal's new Phishing campaign

Beware of PayPal's new Phishing campaign

PayPal's huge success has always attracted the interests of multiple cybercrime groups, who have often tried to obtain a user's account credentials through various means.

When hackers couldn't breach PayPal, which were protected by a plethora of enterprise cybersecurity solutions and leveled up through years of security best practices, more often than not, users became targets of a high number of phishing campaigns, one more sophisticated than the other.

One of the most recent of these phishing campaigns is one detected by Comodo's Antispam Lab, where hackers use carefully crafted emails to trick users into entering their PayPal email and password into a file attached to the email itself.

The email claims to be from PayPal 's support team and warns victim users about unusual activity on their account, urging them to update their profile to verify ownership.

The attached file is nothing more than an HTML file, crafted in such a way to look like the official PayPal website.

Beware of PayPal's new Phishing campaign

Users are tricked into entering not only PayPal email and password, but also other sensitive information, such as their credit card details, date of birth, full name, phone numbers, mother's maiden name, and more information like that.

Tip: Whenever you get such emails, you should always avoid clicking on anything inside the main message of the email and manually open a browser by typing “paypal.com” yourself and do an authentication check using the window to see if everything is okay with your account.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS