Almost fell for PayPal phishing email...

Caporegime
Joined
4 Jul 2004
Posts
30,781
I honestly can't remember the last time a phishing email made its way through Gmail's filters, so I just automatically assumed this was real like the many other PayPal emails that I had received in the past day. Except I didn't make this payment...

CMM8eAQ.png


vb0tnDB.jpg.png


Without thinking I clicked manage/cancel transaction, and it was only thanks to the fact that my password manager didn't input my details that I suddenly clicked.
2017 and nearly getting stung by one of these still. Stay safe. :o
 
I always double check any kind of payment emails that get through but that one does like incredibly authentic.
 
I keep getting the account summary ones that get through filters and look really realistic - most people won't have a reason to login via the button on the email but I bet some do. Its rather well done as well as the domains and everything at first glance appear to be legit not something silly like paypal.adsadas0005.host.random-domain.com it is only by diving in the headers and looking at the X forwarding chain it becomes obvious it isn't legit.
 
I've always gone by the rule of going straight to the site ignoring any links in emails.

I'm constantly getting "paypal" ones these days.

My current favorite is the "I recorded you watching porn. Send 250 bitcon dollars to address now or I send to all your contacts. Reply proof and I'll send to 3 of your contacts as proof". I wonder how many poor sods fall for it :(.
 
iTunes and PayPal are the most realistic ones I get through.

I always just go straight to the site to double check, and delete if nothing looks dodgy.
 
I've always gone by the rule of going straight to the site ignoring any links in emails.

This.
How much time does it actually save you by clicking the link in an email rather than going direct to the url yourself? A couple of seconds?
 
What is with all the photo corrupted spam lately, your photo has been approved and the likes? Or is it just me?
 
What is with all the photo corrupted spam lately, your photo has been approved and the likes? Or is it just me?

Not just you - but your email is probably in one of the compromised mailing list/dumps recently for a related social/media service.
 
Do you ever click anything in emails - email readers (eg tbird) alway seem the least protected tool compared to the browser with script blockers, if the link had actually been an augmented re-named pdf file, say.

This video Ransomware - Anatomy of an Attack caught my attention after current windows forum discussion on educating users 'Malware prevention tips, what would you cover?'

EDITED
 
Last edited:
Maybe they need to remove "links" in emails and unhide the "real" url behind the scenes. This way people can see the URL properly before clicking it. OR just remove links all together.

What is with all the photo corrupted spam lately, your photo has been approved and the likes? Or is it just me?

Mine has increased but they all go into the spam folder. Apple email.
 
Back
Top Bottom