Bank of America pishing pages in Spanish detected

Threat Analysis: Bank of America Phishing – Email Credential & Card Data Harvesting This phishing campaign impersonates Bank of America, targeting Spanish-speaking customers. The scam uses a multi-page flow to capture: By compromising both the email account and the payment card, attackers can gain persistent access to sensitive communications and conduct unauthorized transactions. How it …

Massachusetts Unemployment Insurance phishing page detected

Threat Analysis: Massachusetts Unemployment Insurance Phishing – SSN & Account Takeover Scam This phishing campaign impersonates the Massachusetts Unemployment Insurance (UI) Online Application portal, used by the state’s Department of Unemployment Assistance (DUA). The scam targets unemployment claimants, aiming to steal their Social Security Number (SSN), password, and email verification code—the credentials needed to access …

Credit Agricole Bank phishing page detected

Threat Analysis: CrĂ©dit Agricole Phishing – Multi‑Stage SĂ©curiPass & Credential Theft This phishing campaign impersonates CrĂ©dit Agricole. The scam uses a long, multi‑page flow to capture: By harvesting both the SMS and email codes, attackers can bypass multiple security layers and gain full account access. How it works:The victim receives a phishing email claiming they …

BAC Credomatic phishing page detected

Threat Analysis: BAC Credomatic Phishing – Fake “Banca en LĂ­nea” Login Page This phishing campaign impersonates BAC Credomatic, one of the largest banks in Central America. The page mimics the bank’s “Banca en LĂ­nea” (Online Banking) login interface to steal customers’ username and password. It also includes a “Usar Token” option, suggesting the attacker may …

BanReservas phishing page detected (Banco de Reservas de la RepĂșblica Dominicana)

Thank you for sharing these three screenshots. They show a multi-step phishing campaign impersonating Banreservas (Banco de Reservas de la RepĂșblica Dominicana) , the largest bank in the Dominican Republic. The scam is designed to capture the victim’s online banking username, password, and then their email credentials along with the numeric code from their “tarjeta …

Banco Agromercantil phishing pages detected

Threat Analysis: Bam (Banco AgrĂ­cola) Phishing – Username Harvesting (First Stage) This phishing campaign targets customers of Bam – Banco AgrĂ­cola, a major bank in Central America (particularly El Salvador). The page mimics the bank’s “Bamvirtual Personas” login interface. It only asks for a username at this stage, but the captured username will be used …

Google phishing page with fake BG Vapes authorization detected

Then user will be redirected to the true Vapes.bg website: These three screenshots show a Google account phishing attack combined with a post‑phishing redirection to a Bulgarian vape shop page. The attacker uses a fake Google sign‑in flow to steal the victim’s email and password, then redirects to a legitimate‑looking online store to reduce suspicion. …

PayPal phishing page in French detected

These four screenshots show a multi‑step phishing campaign targeting French users, likely impersonating a payment service or online marketplace. The scam uses a fake “pending payment” lure to harvest the victim’s login credentials, full personal details, and credit card information. Threat Analysis: Fake Payment Pending Phishing – Credential, Personal & Card Data Harvesting This phishing …

Nets fake page in Danish detected

These two screenshots show a phishing campaign impersonating Nets, a major Danish payment service provider. The scam uses a fake “refund” pretext to trick victims into providing their email address, full name, phone number, and full credit/debit card details. Threat Analysis: Nets Refund Phishing – Card & Personal Data Harvesting This phishing campaign impersonates Nets, …

Netflix fake page detected

These four screenshots show a multi‑step Netflix phishing campaign designed to harvest full payment card details, personal information, and the SMS verification code (two‑factor authentication) needed to authorize fraudulent charges or take over an account. Threat Analysis: Netflix Phishing – Complete Card & 2FA Code Harvesting This phishing campaign impersonates Netflix’s subscription sign‑up process. The …