emmuzka: (Default)
emmuzka ([personal profile] emmuzka) wrote2007-02-18 08:43 pm
Entry tags:

Phishing for Attention

This morning there was this typical, well made phishing mail in my inbox: Dear Paypal customer of name we don't know, we have red-flagged your account and would you please go to this fake page via this link and tell us your password, visa card number, social security numer, you ATM pin code and your mother's maiden name. Thanks!

Yesh, right. I copied the fake page's url and informed it to the real Pay Pal. And what was waiting for me in when I got home tonight?

Dear (my real name here),

You have successfully submitted a claim of "Unauthorized Use of My PayPal Account." For your protection, your account access may be limited and all reported transactions pended.

PayPal will begin an investigation into the account, including contact with recipient accounts, corresponding sellers, and/or other victims. If the case is decided in your favor, you will receive a full refund of any reported transactions, as well as any related PayPal fees once the investigation is complete.

Sincerely,
PayPal, an eBay Company


Yeah. Thanks for that.
ext_141: (Default)

[identity profile] emmuzka.livejournal.com 2007-02-18 08:10 pm (UTC)(link)
Yep. They probably have to assume by default that the people reporting the sites like these *already* gave their account info. And now when I went and did the good deed of reporting the page, I ended up in the list of customers with potentially corrupted accounts. Lovely, indeed. A good thing that I don't have any money transmission going on in there at the moment.