I am getting a number of bogus emails, purporting to be from PayPal. The email address looks credible (service@paypal.com). There are a number of links in it, including “report this Invoice” and “learn to identify phishing”. The “To:” address looks dodgy.
Have checked my account and there has been no activity for ages but have removed my credit card just in case.
[#]PayPal #Scam #Warning
=> More informations about this toot | More toots from TasDave@aus.social
@TasDave They’re not bypassing PayPal SPF/DKIM (I checked, their dmarc record is up and strict), they’re probably using a compromised user account to send the invoices which means PayPal is treating it as legitimate and it’s coming from the real PayPal, just a hacked account. 2FA saves
Forward to phishing(at)paypal.com and move on?
May be worth checking https://haveibeenpwned.com
=> More informations about this toot | More toots from be_far@treehouse.systems
@be_far
Thanks for that. Will do.
=> More informations about this toot | More toots from TasDave@aus.social
@be_far@treehouse.
I forgot that I had erased the emails. I checked with haveibeenpawned and their was only old stuff that I was aware of. I use a combination of a VPN, Dashlane (and their monitoring services) and DuckDuckGo, and don’t often get anything except broadcast phishing emails. I will forward any more to Paypal but there haven’t been any log ins for months.
Thanks again.
=> More informations about this toot | More toots from TasDave@aus.social This content has been proxied by September (ba2dc).Proxy Information
text/gemini