First National Bank (FNB) phishing page detected

FNB Online Banking Phishing – Credential Harvesting Page This phishing campaign impersonates FNB (First National Bank) , a major bank in South Africa. The page is designed to steal customers’ online banking credentials—specifically the Username and Password used to access FNB’s online banking platform. How it works:The victim receives a phishing email, SMS, or other …

M&T Bank phishing page revealed

M&T Bank Online Banking Phishing – Credential Harvesting Page This phishing campaign impersonates M&T Bank, a well-known bank in the United States, particularly active in the Northeast and Mid-Atlantic regions. The page is designed to steal customers’ online banking credentials—specifically the User ID and Passcode (password) used to access M&T Bank’s online banking platform. How …

Bank of America phishing page revealed

Bank of America Phishing – Fake “Preventive Unlock” Scam (Spanish Variant) This phishing campaign impersonates Bank of America (BoA) , one of the largest banks in the United States, and targets Spanish-speaking customers. The page uses a fake security alert—claiming the account requires a “preventive unlock”—to create urgency and direct victims to a credential harvesting …

FNB (FirstRand Bank Limited) phishing page detected

FNB Online Banking Phishing – Credential Harvesting Page This phishing campaign impersonates FNB (First National Bank) , a major bank in South Africa. The page is designed to steal customers’ online banking credentials—specifically the Username and Password used to access FNB’s online banking platform. How it works:The victim receives a phishing email, SMS, or other …

ING Home’Bank (Romania) phishing page revealed

ING Bank Phishing – Fake Home’Bank Login Page (Romanian Variant) This phishing campaign impersonates ING Bank, a major European financial institution with a large customer base in Romania. The page mimics ING’s Home’Bank online banking interface to steal customers’ login credentials. How it works:The victim receives a phishing email, SMS, or other message claiming a …

Banco Regional S.A.E.C.A. phishing page revealed

Threat Analysis: Banco Regional Phishing – Multi-Step Credential & 2FA Code Harvesting This phishing campaign impersonates Banco Regional, a financial institution operating in Paraguay and other South American countries. The scam uses a multi-page flow to capture the victim’s document number, access password, email credentials, and the transactional PIN (two-factor authentication code) sent via SMS …

Banco República (Uruguay) phishing page detected

Threat Analysis: Banco República (BROU) Phishing – Credential & Digital Key Harvesting This phishing campaign impersonates Banco República (BROU) , the largest and state-owned bank in Uruguay. The scam uses a multi-step process to capture the victim’s document number, password, and the “Llave Digital” (Digital Key)—a one-time code used for transaction authorization—allowing attackers to bypass …

Scotiabank phishing page revealed

Scotiabank Phishing – Fake Login Page Stealing DNI and Password This phishing campaign impersonates Scotiabank, a major international bank with operations across Latin America (including Mexico, Peru, Chile, Colombia, and other countries). The page is designed to steal customers’ online banking credentials—specifically the DNI (national identification number) and password. How it works:The victim receives a …

Société Générale pishing pages detected

Threat Analysis: Société Générale Phishing – Fake “Pass Sécurité” & Credential Harvesting This phishing campaign impersonates Société Générale, one of the largest banks in France. The scam uses a two-step approach: first presenting a page about the bank’s legitimate “Pass Sécurité” security feature to build trust, then directing the victim to a fake login page …

Banrural bank phishing page in Spanish detected

Threat Analysis: Banrural Phishing – Full Account Takeover with SMS Code Harvesting This phishing campaign impersonates Banrural (Banco de Desarrollo Rural), one of the largest banks in Guatemala. The scam uses a multi-step process to capture the victim’s username, password, and the SMS verification code (two-factor authentication), allowing attackers to bypass security measures and take …