アクティブトレンド
High Risk
75%

PayPal Phishing Scam

Credential-harvesting pages impersonating PayPal login and dispute flows.

#phishing#financial#email

脅威の概要

PayPal phishing remains one of the most reported financial lures. Attackers clone login pages, send fake payment alerts, and capture credentials plus MFA tokens through reverse-proxy kits.

攻撃の挙動

  • Spoofed payment notification emails
  • Fake dispute resolution portals
  • Real-time credential relay to attackers

感染経路

  • Email links
  • SMS smishing
  • Malvertising on search results

症状と指標

  • Unexpected PayPal security alerts
  • Login failures after visiting email links
  • Unauthorized transactions

即時の緩和策

  • Do not enter credentials from email links
  • Report messages to PayPal and your email provider
  • Change password from official app only

削除ガイド

  • Revoke active sessions in PayPal settings
  • Enable hardware MFA
  • Monitor linked bank accounts

予防方法

  • Use web protection and phishing modules
  • Bookmark official login URLs
  • Verify sender domains carefully

テレメトリ指標

  • Typosquat domains with paypal substring
  • Newly registered SSL certs on lookalike hosts

Log in directly at paypal.com—never through email links. Legitimate messages appear in your PayPal message center when logged in.

AntiMatter AV — Enterprise Cybersecurity Platform