Phishing Advancing To The Next Level
Should you be nervous if someone tells you people from Poland or Romania are peeking at your bank account? Not if you receive the news via email. And here is why.
Below is a screen capture of the mail I received today. At the first look, PayPal is warning me that someone from East Europe expressed interest in my online account. One will almost believe this because the exact date and IP address of attack were provided.
However, as a phishing-sensitive online user, one has to raise questions about the validity of the mail. The best way to make sure you are not fooled is to verify if the links provided in the mail are pointing to the right web sites. The screenshot explained what I did: I moved my mouse pointer on top of the link, and the exact URL was revealed. Instead of pointing me to http://www.paypal.com, the mail is actually linking to http://paypal.com.web-scr.us, a completely irrelevant site. The judgment: this is yet another phishing mail. Forget about it!
I decided to play the phishing site a bit more, so I followed the (fake) link and see what I will get. As expected, I was asked to provide my PayPal email address and password -- I obeyed using a pair of fake address and fake password. It did not surprise me that no "incorrect password" message appeared, but hey, the next screen went one step further by requesting your credit card/debit account information (screenshot below) as "identity verification" procedure. Apparently, someone's greed is spinning out of control :-)

Congratulations, you have a fabulous credit score, and you can certainly benefit from it the next time you refinance or apply for a car loan. But how vigorously you will defend your high score? I have been referring some amazing credit card offers to my ... Read
I'm a regular reader of CardWeb's CardTrak, a daily column of bank payment card news for consumers. Bank payment card is one of my favorite topics at PFBlog. Along in my journey, we've known that card issuers can sometimes be very generous, other times be ... Read
This week, the Bureau of the Public Debt announced a set of new rates for savings bonds. The Series I Savings Bonds to be issued in the next six months will earn a fixed 1.2% above prevailing inflation levels, making the effective rate for the ... Read
Sorry for the relative quietness at my blog recently. Between April and May, all Microsoft finance professionals, myself included, are celebrating the annual ritual of budgeting by working tremedous amount of overtime. Believe me, the process is excruciating. After all, Microsoft will become a $40-billion-plus ... Read
From the second screenshot:
"...we apologize for any incontinence it may cause."
A dozen bad jokes spring to mind.
Sharp eye!
LOL... incontinence from eating phish! :P
I got the same message as well -- two days after I had actually signed up for PayPal. The tip that it was a fake -- they sent the "you have a problem" email to my home email while I signed up to PayPal with my work email address -- a sure sign they were just phishing. :-)
I love getting these things and making up credit card numbers and social security numbers. Give it a try in these phishing scams! :)
